Sample code for 30+ languages & platforms
AutoIt

ScMinidriver - Import a Certificate to IDPrime MD T=0 Smart Card

See more ScMinidriver Examples

Demonstrates how to import a certificate and its private key to a key container on an ID Prime MD T=0 smartcard.

Note: Requires Chilkat v9.5.0.88 or later. This example only runs on Windows because ScMinidriver is a Windows-only class.

Chilkat AutoIt Downloads

AutoIt
Local $bSuccess = False

; This example requires the Chilkat API to have been previously unlocked.
; See Global Unlock Sample for sample code.

$oScmd = ObjCreate("Chilkat.ScMinidriver")

; Reader names (smart card readers or USB tokens) can be discovered
; via List Readers or Find Smart Cards
Local $sReaderName = "SCM Microsystems Inc. SCR33x USB Smart Card Reader 0"
$bSuccess = $oScmd.AcquireContext($sReaderName)
If ($bSuccess = False) Then
    ConsoleWrite($oScmd.LastErrorText & @CRLF)
    Exit
EndIf

; If successful, the name of the currently inserted smart card is available:
ConsoleWrite("Card name: " & $oScmd.CardName & @CRLF)

; The IDPRime MD smart card has 4 different PIN roles:
; "user" -- Primary Card PIN
; "admin" -- Administrator PIN
; "3" -- Digital Signature PIN
; "4" -- Unblock only PIN (PUK)
; To import a certificate to the "IDPrime MD T=0" smart card, we must first PIN authenticate using "user", and then also PIN authenticate using "3" (the Digital Signature PIN)
Local $sPinId = "user"
; (Of course, use your PIN which may be different than "0000")
Local $iRetval = $oScmd.PinAuthenticate($sPinId,"0000")
If ($iRetval <> 0) Then
    ConsoleWrite("PIN Authentication failed." & @CRLF)
    $oScmd.DeleteContext()
    Exit
EndIf

$oCert = ObjCreate("Chilkat.Cert")

; Load the cert + private key from a .p12/.pfx
; We got this .p12 from https://badssl.com/download/
Local $sPassword = "badssl.com"
$bSuccess = $oCert.LoadPfxFile("qa_data/pfx/badssl.com-client.p12",$sPassword)
If ($bSuccess = False) Then
    ConsoleWrite($oCert.LastErrorText & @CRLF)
    $oScmd.DeleteContext()
    Exit
EndIf

; Also authenticate using "3", the digital signature PIN.
; (Of course, use your PIN which may be different than "12345678")
$iRetval = $oScmd.PinAuthenticate("3","12345678")
If ($iRetval <> 0) Then
    ConsoleWrite("PIN Authentication failed." & @CRLF)
    $oScmd.DeleteContext()
    Exit
EndIf

; Let's import this certificate as the "signature" key/cert in key container #6.
Local $iContainerIndex = 6
Local $sKeySpec = "sig"
; Note the last argument (the pin ID) is "3".  This is the required PIN ID for the IDPrime MD T=0 smart card.
$bSuccess = $oScmd.ImportCert($oCert,$iContainerIndex,$sKeySpec,"3")
If ($bSuccess = False) Then
    ConsoleWrite($oScmd.LastErrorText & @CRLF)
Else
    ConsoleWrite("Successfully imported the cert + private key onto the smart card." & @CRLF)
EndIf

; Delete the context when finished with the card.
$bSuccess = $oScmd.DeleteContext()
If ($bSuccess = False) Then
    ConsoleWrite($oScmd.LastErrorText & @CRLF)
EndIf