Sample code for 30+ languages & platforms
Delphi ActiveX

ScMinidriver - Import a Certificate and Private Key to a Smart Card or USB Token

See more ScMinidriver Examples

Demonstrates how to import a certificate and its private key to a key container on a smart card or USB token.

Note: This functionality was introduced in Chilkat v9.5.0.87.

Note: The ScMinidriver functionality is for Windows-only because ScMinidriver DLLs only exist on Windows.

Chilkat Delphi ActiveX Downloads

Delphi ActiveX
uses
    Winapi.Windows, Winapi.Messages, System.SysUtils, System.Variants, System.Classes, Vcl.Graphics,
    Vcl.Controls, Vcl.Forms, Vcl.Dialogs, Vcl.StdCtrls, Chilkat_TLB;

...

procedure TForm1.Button1Click(Sender: TObject);
var
success: Integer;
scmd: TChilkatScMinidriver;
readerName: WideString;
pinId: WideString;
retval: Integer;
cert: TChilkatCert;
password: WideString;
containerIndex: Integer;
keySpec: WideString;

begin
success := 0;

// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.

scmd := TChilkatScMinidriver.Create(Self);

// Reader names (smart card readers or USB tokens) can be discovered
// via List Readers or Find Smart Cards
readerName := 'SCM Microsystems Inc. SCR33x USB Smart Card Reader 0';
success := scmd.AcquireContext(readerName);
if (success = 0) then
  begin
    Memo1.Lines.Add(scmd.LastErrorText);
    Exit;
  end;

// If successful, the name of the currently inserted smart card is available:
Memo1.Lines.Add('Card name: ' + scmd.CardName);

// To import a cert + private key, we'll need to be PIN authenticated.
// For more details about smart card PIN authentication, see the Smart Card PIN Authentication Example
pinId := 'user';
retval := scmd.PinAuthenticate(pinId,'000000');
if (retval <> 0) then
  begin
    Memo1.Lines.Add('PIN Authentication failed.');
    scmd.DeleteContext();
    Exit;
  end;

cert := TChilkatCert.Create(Self);

// Load the cert + private key from a .p12/.pfx
// We got this .p12 from https://badssl.com/download/
password := 'badssl.com';
success := cert.LoadPfxFile('qa_data/pfx/badssl.com-client.p12',password);
if (success = 0) then
  begin
    Memo1.Lines.Add(cert.LastErrorText);
    scmd.DeleteContext();
    Exit;
  end;

// Let's import this certificate as the "signature" key/cert in key container #6.
containerIndex := 6;
keySpec := 'sig';
success := scmd.ImportCert(cert.ControlInterface,containerIndex,keySpec,pinId);
if (success = 0) then
  begin
    Memo1.Lines.Add(scmd.LastErrorText);
  end
else
  begin
    Memo1.Lines.Add('Successfully imported the cert + private key onto the smart card.');
  end;

// When finished with operations that required authentication, you may if you wish, deauthenticate the session.
success := scmd.PinDeauthenticate('user');
if (success = 0) then
  begin
    Memo1.Lines.Add(scmd.LastErrorText);
  end;

// Delete the context when finished with the card.
success := scmd.DeleteContext();
if (success = 0) then
  begin
    Memo1.Lines.Add(scmd.LastErrorText);
  end;
end;