Sample code for 30+ languages & platforms
Lianja Requires Chilkat v11.0.0+

Examine SSL/TLS Server Certificate

See more Socket/SSL/TLS Examples

Demonstrates how an application can examine and check a server's SSL/TLS certificate.

Chilkat Lianja Downloads

Lianja
llSuccess = .F.

//  This example assumes the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

loSocket = createobject("CkSocket")

//  Connect to a server.
llUseTls = .T.
lnMaxWaitMs = 2000
llSuccess = loSocket.Connect("www.intel.com",443,llUseTls,lnMaxWaitMs)
if (llSuccess = .F.) then
    ? loSocket.LastErrorText
    release loSocket
    return
endif

//  If we get here, the TLS connection ws made..
//  In any SSL/TLS handshake, the server sends its certificate in a TLS handshake message.
//  Chilkat will keep it cached within the object that made the connection.
//  Get the server's cert and examine a few things.
loCert = createobject("CkCert")
loSocket.GetServerCert(loCert)

? "Distinguished Name: " + loCert.SubjectDN
? "Common Name: " + loCert.SubjectCN
? "Issuer Distinguished Name: " + loCert.IssuerDN
? "Issuer Common Name: " + loCert.IssuerCN

? "Expired: " + str(loCert.Expired)
? "Revoked: " + str(loCert.Revoked)
? "Signature Verified: " + str(loCert.SignatureVerified)
? "Trusted Root: " + str(loCert.TrustedRoot)

//  Sample output:

//  Distinguished Name: C=US, ST=California, O=Intel Corporation, CN=*.intel.com
//  Common Name: *.intel.com
//  Issuer Distinguished Name: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
//  Issuer Common Name: Sectigo RSA Organization Validation Secure Server CA
//  Expired: False
//  Revoked: False
//  Signature Verified: True
//  Trusted Root: True


release loSocket
release loCert