Sample code for 30+ languages & platforms
PHP Extension

Examine SSL/TLS Server Certificate

See more Socket/SSL/TLS Examples

Demonstrates how an application can examine and check a server's SSL/TLS certificate.

Chilkat PHP Extension Downloads

PHP Extension
<?php

include("chilkat.php");

$success = false;

// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.

$socket = new CkSocket();

// Connect to a server.
$useTls = true;
$maxWaitMs = 2000;
$success = $socket->Connect('www.intel.com',443,$useTls,$maxWaitMs);
if ($success == false) {
    print $socket->lastErrorText() . "\n";
    exit;
}

// If we get here, the TLS connection ws made..
// In any SSL/TLS handshake, the server sends its certificate in a TLS handshake message.
// Chilkat will keep it cached within the object that made the connection.
// Get the server's cert and examine a few things.
$cert = new CkCert();
$socket->GetServerCert($cert);

print 'Distinguished Name: ' . $cert->subjectDN() . "\n";
print 'Common Name: ' . $cert->subjectCN() . "\n";
print 'Issuer Distinguished Name: ' . $cert->issuerDN() . "\n";
print 'Issuer Common Name: ' . $cert->issuerCN() . "\n";

print 'Expired: ' . $cert->get_Expired() . "\n";
print 'Revoked: ' . $cert->get_Revoked() . "\n";
print 'Signature Verified: ' . $cert->get_SignatureVerified() . "\n";
print 'Trusted Root: ' . $cert->get_TrustedRoot() . "\n";

// Sample output:

// Distinguished Name: C=US, ST=California, O=Intel Corporation, CN=*.intel.com
// Common Name: *.intel.com
// Issuer Distinguished Name: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
// Issuer Common Name: Sectigo RSA Organization Validation Secure Server CA
// Expired: False
// Revoked: False
// Signature Verified: True
// Trusted Root: True

?>