Perl
Perl
Get Certificate CRL Distribution Points
See more Certificates Examples
Demonstrates how to get a certificate's CRL Distribution Points extension data (assuming it exists). In the vast majority of cases, there will be one CRL Distribution Point.Note: This example requires Chilkat v9.5.0.76 or greater.
Chilkat Perl Downloads
use chilkat();
$success = 0;
$cert = chilkat::CkCert->new();
$success = $cert->LoadFromFile("qa_data/certs/test_haswdt.cer");
if ($success != 1) {
print $cert->lastErrorText() . "\r\n";
exit;
}
# Get the CRL Distribution Points extension, which is at OID 2.5.29.31
$extensionXmlStr = $cert->getExtensionAsXml("2.5.29.31");
if ($cert->get_LastMethodSuccess() == 0) {
print "Certificate does not have the CDP extension." . "\r\n";
exit;
}
$xml = chilkat::CkXml->new();
$xml->LoadXml($extensionXmlStr);
# See what we have..
print $xml->getXml() . "\r\n";
# We should get XML like this:
# <?xml version="1.0" encoding="utf-8" ?>
# <sequence>
# <sequence>
# <contextSpecific tag="0" constructed="1">
# <contextSpecific tag="0" constructed="1">
# <contextSpecific tag="6" constructed="0">aHR0cDovL2NybC5jb21vZG9jYS5jb20vQ09NT0RPUlNBQ2xpZW50QXV0aGVudGljYXRpb25hbmRTZWN1
# cmVFbWFpbENBLmNybA==</contextSpecific>
# </contextSpecific>
# </contextSpecific>
# </sequence>
# </sequence>
#
# Assuming there is one CRL Distribution Point...
$sbDistPoint = chilkat::CkStringBuilder->new();
$success = $xml->GetChildContentSb("sequence|contextSpecific|contextSpecific|contextSpecific",$sbDistPoint);
if ($success == 1) {
$sbDistPoint->Decode("base64","utf-8");
print "CRL Distribution Point: " . $sbDistPoint->getAsString() . "\r\n";
}
# Sample output:
# CRL Distribution Point: http://crl.comodoca.com/COMODORSAClientAuthenticationandSecureEmailCA.crl