Chilkat2-Python
Chilkat2-Python
Require SSL Server Certificate Domain Match
See more HTTP Examples
Demonstrates how to require that the SSL server certificate's domain matches the intended domain.Chilkat Chilkat2-Python Downloads
import chilkat2
success = False
# This example assumes the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.
http = chilkat2.Http()
# Call SetSslCertRequirement to require that the SSL server certificate's domain
# matches only the domain we are intending to communicate with.
# In this example we will test with the URL https://wrong.host.badssl.com/
# which intentionally has an SSL certificate that does not match "wrong.host.badssl.com"
http.SetSslCertRequirement("SAN","wrong.host.badssl.com")
# Also validate the server cert..
http.RequireSslCertVerify = True
# Try sending the request. It should fail within the SSL/TLS handshake
# because the server's certificate does not match the domain "wrong.host.badssl.com"
html = http.QuickGetStr("https://wrong.host.badssl.com/")
if (http.LastMethodSuccess == False):
print(http.LastErrorText)
else:
print("Unexpected success.")