Tcl
Tcl
Duplicate OpensSSL Command that Decrypts Binary DER
See more OpenSSL Examples
This example duplicates the following:openssl smime -decrypt -in INPUT_FILE -inform der -binary -out OUTPUT_FILE -recip PEM_CERT_AND_KEY -passin pass:PRIVKEY_PASSWORD
Note: Although "smime" is the OpenSSL command, we're not really dealing with S/MIME. The arguments "-inform der -binary" indicate that the input is simply the binary DER (i.e. the PKCS7 binary encrypted object). The output can be any type of file (whatever was encrypted).
Chilkat Tcl Downloads
load ./chilkat.dll
set success 0
# This example requires the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.
set crypt [new_CkCrypt2]
CkCrypt2_put_CryptAlgorithm $crypt "pki"
set pem [new_CkPem]
set success [CkPem_LoadPemFile $pem "qa_data/pem/myPem.pem" "password"]
if {$success == 0} then {
puts [CkPem_lastErrorText $pem]
delete_CkCrypt2 $crypt
delete_CkPem $pem
exit
}
set privkey [new_CkPrivateKey]
set success [CkPem_PrivateKeyAt $pem 0 $privkey]
if {$success == 0} then {
puts [CkPem_lastErrorText $pem]
delete_CkCrypt2 $crypt
delete_CkPem $pem
delete_CkPrivateKey $privkey
exit
}
set cert [new_CkCert]
set success [CkPem_CertAt $pem 0 $cert]
if {$success == 0} then {
puts [CkPem_lastErrorText $pem]
delete_CkCrypt2 $crypt
delete_CkPem $pem
delete_CkPrivateKey $privkey
delete_CkCert $cert
exit
}
set success [CkCrypt2_SetDecryptCert2 $crypt $cert $privkey]
if {$success == 0} then {
puts [CkCrypt2_lastErrorText $crypt]
delete_CkCrypt2 $crypt
delete_CkPem $pem
delete_CkPrivateKey $privkey
delete_CkCert $cert
exit
}
set success [CkCrypt2_CkDecryptFile $crypt "qa_data/infile.enc" "qa_output/outfile.dat"]
if {$success == 0} then {
puts [CkCrypt2_lastErrorText $crypt]
delete_CkCrypt2 $crypt
delete_CkPem $pem
delete_CkPrivateKey $privkey
delete_CkCert $cert
exit
}
puts "Success."
delete_CkCrypt2 $crypt
delete_CkPem $pem
delete_CkPrivateKey $privkey
delete_CkCert $cert