Sample code for 30+ languages & platforms
C++

Examine SSL/TLS Server Certificate

See more Socket/SSL/TLS Examples

Demonstrates how an application can examine and check a server's SSL/TLS certificate.

Chilkat C++ Downloads

C++
#include <CkSocket.h>
#include <CkCert.h>

void ChilkatSample(void)
    {
    bool success = false;

    // This example assumes the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    CkSocket socket;

    // Connect to a server.
    bool useTls = true;
    int maxWaitMs = 2000;
    success = socket.Connect("www.intel.com",443,useTls,maxWaitMs);
    if (success == false) {
        std::cout << socket.lastErrorText() << "\r\n";
        return;
    }

    // If we get here, the TLS connection ws made..
    // In any SSL/TLS handshake, the server sends its certificate in a TLS handshake message.
    // Chilkat will keep it cached within the object that made the connection.
    // Get the server's cert and examine a few things.
    CkCert cert;
    socket.GetServerCert(cert);

    std::cout << "Distinguished Name: " << cert.subjectDN() << "\r\n";
    std::cout << "Common Name: " << cert.subjectCN() << "\r\n";
    std::cout << "Issuer Distinguished Name: " << cert.issuerDN() << "\r\n";
    std::cout << "Issuer Common Name: " << cert.issuerCN() << "\r\n";

    std::cout << "Expired: " << cert.get_Expired() << "\r\n";
    std::cout << "Revoked: " << cert.get_Revoked() << "\r\n";
    std::cout << "Signature Verified: " << cert.get_SignatureVerified() << "\r\n";
    std::cout << "Trusted Root: " << cert.get_TrustedRoot() << "\r\n";

    // Sample output:

    // Distinguished Name: C=US, ST=California, O=Intel Corporation, CN=*.intel.com
    // Common Name: *.intel.com
    // Issuer Distinguished Name: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
    // Issuer Common Name: Sectigo RSA Organization Validation Secure Server CA
    // Expired: False
    // Revoked: False
    // Signature Verified: True
    // Trusted Root: True
    }