Sample code for 30+ languages & platforms
PHP ActiveX Requires Chilkat v11.0.0+

Examine SSL/TLS Server Certificate

See more Socket/SSL/TLS Examples

Demonstrates how an application can examine and check a server's SSL/TLS certificate.

Chilkat PHP ActiveX Downloads

PHP ActiveX
<?php

$success = 0;

//  This example assumes the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

$socket = new COM("Chilkat.Socket");

//  Connect to a server.
$useTls = 1;
$maxWaitMs = 2000;
$success = $socket->Connect('www.intel.com',443,$useTls,$maxWaitMs);
if ($success == 0) {
    print $socket->LastErrorText . "\n";
    exit;
}

//  If we get here, the TLS connection ws made..
//  In any SSL/TLS handshake, the server sends its certificate in a TLS handshake message.
//  Chilkat will keep it cached within the object that made the connection.
//  Get the server's cert and examine a few things.
$cert = new COM("Chilkat.Cert");
$socket->GetServerCert($cert);

print 'Distinguished Name: ' . $cert->SubjectDN . "\n";
print 'Common Name: ' . $cert->SubjectCN . "\n";
print 'Issuer Distinguished Name: ' . $cert->IssuerDN . "\n";
print 'Issuer Common Name: ' . $cert->IssuerCN . "\n";

print 'Expired: ' . $cert->Expired . "\n";
print 'Revoked: ' . $cert->Revoked . "\n";
print 'Signature Verified: ' . $cert->SignatureVerified . "\n";
print 'Trusted Root: ' . $cert->TrustedRoot . "\n";

//  Sample output:

//  Distinguished Name: C=US, ST=California, O=Intel Corporation, CN=*.intel.com
//  Common Name: *.intel.com
//  Issuer Distinguished Name: C=GB, ST=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Organization Validation Secure Server CA
//  Issuer Common Name: Sectigo RSA Organization Validation Secure Server CA
//  Expired: False
//  Revoked: False
//  Signature Verified: True
//  Trusted Root: True

?>