Sample code for 30+ languages & platforms
C++

ScMinidriver - Import a Certificate and Private Key to a Smart Card or USB Token

See more ScMinidriver Examples

Demonstrates how to import a certificate and its private key to a key container on a smart card or USB token.

Note: This functionality was introduced in Chilkat v9.5.0.87.

Note: The ScMinidriver functionality is for Windows-only because ScMinidriver DLLs only exist on Windows.

Chilkat C++ Downloads

C++
#include <CkScMinidriver.h>
#include <CkCert.h>

void ChilkatSample(void)
    {
    bool success = false;

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    CkScMinidriver scmd;

    // Reader names (smart card readers or USB tokens) can be discovered
    // via List Readers or Find Smart Cards
    const char *readerName = "SCM Microsystems Inc. SCR33x USB Smart Card Reader 0";
    success = scmd.AcquireContext(readerName);
    if (success == false) {
        std::cout << scmd.lastErrorText() << "\r\n";
        return;
    }

    // If successful, the name of the currently inserted smart card is available:
    std::cout << "Card name: " << scmd.cardName() << "\r\n";

    // To import a cert + private key, we'll need to be PIN authenticated.
    // For more details about smart card PIN authentication, see the Smart Card PIN Authentication Example
    const char *pinId = "user";
    int retval = scmd.PinAuthenticate(pinId,"000000");
    if (retval != 0) {
        std::cout << "PIN Authentication failed." << "\r\n";
        scmd.DeleteContext();
        return;
    }

    CkCert cert;

    // Load the cert + private key from a .p12/.pfx
    // We got this .p12 from https://badssl.com/download/
    const char *password = "badssl.com";
    success = cert.LoadPfxFile("qa_data/pfx/badssl.com-client.p12",password);
    if (success == false) {
        std::cout << cert.lastErrorText() << "\r\n";
        scmd.DeleteContext();
        return;
    }

    // Let's import this certificate as the "signature" key/cert in key container #6.
    int containerIndex = 6;
    const char *keySpec = "sig";
    success = scmd.ImportCert(cert,containerIndex,keySpec,pinId);
    if (success == false) {
        std::cout << scmd.lastErrorText() << "\r\n";
    }
    else {
        std::cout << "Successfully imported the cert + private key onto the smart card." << "\r\n";
    }

    // When finished with operations that required authentication, you may if you wish, deauthenticate the session.
    success = scmd.PinDeauthenticate("user");
    if (success == false) {
        std::cout << scmd.lastErrorText() << "\r\n";
    }

    // Delete the context when finished with the card.
    success = scmd.DeleteContext();
    if (success == false) {
        std::cout << scmd.lastErrorText() << "\r\n";
    }
    }