Sample code for 30+ languages & platforms
Chilkat2-Python

Require SSL Server Certificate Domain Match

See more HTTP Examples

Demonstrates how to require that the SSL server certificate's domain matches the intended domain.

Chilkat Chilkat2-Python Downloads

Chilkat2-Python
import chilkat2

success = False

# This example assumes the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.

http = chilkat2.Http()

# Call SetSslCertRequirement to require that the SSL server certificate's domain
# matches only the domain we are intending to communicate with.

# In this example we will test with the URL https://wrong.host.badssl.com/
# which intentionally has an SSL certificate that does not match "wrong.host.badssl.com"

http.SetSslCertRequirement("SAN","wrong.host.badssl.com")

# Also validate the server cert..
http.RequireSslCertVerify = True

# Try sending the request.  It should fail within the SSL/TLS handshake
# because the server's certificate does not match the domain "wrong.host.badssl.com"
html = http.QuickGetStr("https://wrong.host.badssl.com/")
if (http.LastMethodSuccess == False):
    print(http.LastErrorText)
else:
    print("Unexpected success.")