Sample code for 30+ languages & platforms
Lianja Requires Chilkat v11.0.0+

SFTP use Cert's Private Key for Authentication (Windows)

See more SFTP Examples

Demonstrates how to use the private key of a pre-installed certificate (on Windows) for SFTP authentication. The certificate's private key must be marked as "exportable" when originally installed.

Chilkat Lianja Downloads

Lianja
llSuccess = .F.

//  This example assumes the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

loCert = createobject("CkCert")

//  Load the certificate from the Windows certificate store
llSuccess = loCert.LoadByCommonName("my_cert_common_name")
if (llSuccess = .F.) then
    ? loCert.LastErrorText
    release loCert
    return
endif

//  Get the private key.  
loPrivKey = createobject("CkPrivateKey")
llSuccess = loCert.GetPrivateKey(loPrivKey)
if (llSuccess = .F.) then
    ? loCert.LastErrorText
    release loCert
    release loPrivKey
    return
endif

lcPrivKeyPem = loPrivKey.GetPkcs8Pem()
if (loPrivKey.LastMethodSuccess = .F.) then
    ? loPrivKey.LastErrorText
    release loCert
    release loPrivKey
    return
endif

loSshKey = createobject("CkSshKey")
llSuccess = loSshKey.FromOpenSshPrivateKey(lcPrivKeyPem)
if (llSuccess = .F.) then
    ? loSshKey.LastErrorText
    release loCert
    release loPrivKey
    release loSshKey
    return
endif

//  Connect to an SSH/SFTP server
loSftp = createobject("CkSFtp")
llSuccess = loSftp.Connect("sftp.example.com",22)
if (llSuccess = .F.) then
    ? loSftp.LastErrorText
    release loCert
    release loPrivKey
    release loSshKey
    release loSftp
    return
endif

//  Authenticate with the SSH server using a username + private key.
//  (The private key serves as the password.  The username identifies
//  the SSH user account on the server.)
llSuccess = loSftp.AuthenticatePk("mySshLogin",loSshKey)
if (llSuccess = .F.) then
    ? loSftp.LastErrorText
    release loCert
    release loPrivKey
    release loSshKey
    release loSftp
    return
endif

? "OK, the connection and authentication with the SSH server is completed."

//  This example is only to show the connection + authentication using a private key associated with a certificate in the Windows certificate store...


release loCert
release loPrivKey
release loSshKey
release loSftp