Tcl
Tcl
Oracle Cloud Secrets - Setup Bootstrap Secret in Local Manager
See more Secrets Examples
Accessing a cloud-based secrets manager requires authentication credentials, which cannot be stored in the manager itself. Instead, they must be securely stored locally.One solution is to store the authentication credentials as a secret in the Windows Credentials Manager or Apple Keychain. These credentials serve as the "bootstrap secret" for authenticating with the cloud-based secrets manager.
This example demonstrates how to setup a bootstrap secret for the Oracle Cloud Secrets.
Note: This example requires Chilkat v10.1.0 or later.
Chilkat Tcl Downloads
load ./chilkat.dll
set success 0
# This example requires the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.
set bootstrap [new_CkSecrets]
# We're going to store the bootstrap secret in the local manager.
# On Windows, this is the Windows Credentials Manager
# On MacOS/iOS, it is the Apple Keychain
CkSecrets_put_Location $bootstrap "local_manager"
# Specify the name of the bootstrap secret.
# service and username are required.
# appName and domain are optional.
# Note: The values are arbitrary and can be anything you want.
set json [new_CkJsonObject]
CkJsonObject_UpdateString $json "appName" "oracle_bs"
CkJsonObject_UpdateString $json "service" "Example"
CkJsonObject_UpdateString $json "username" "Joe"
# The bootstrap secret for Oracle Cloud Secrets is the PEM of your private key.
set sbPem [new_CkStringBuilder]
set success [CkStringBuilder_LoadFile $sbPem "qa_data/pem/oracle_cloud_privkey.pem" "utf-8"]
if {$success == 0} then {
puts "Failed to load the private key PEM file."
delete_CkSecrets $bootstrap
delete_CkJsonObject $json
delete_CkStringBuilder $sbPem
exit
}
# The bootstrap secret for the Oracle Cloud Secrets will contain
# the private key PEM, like this:
set success [CkSecrets_UpdateSecretSb $bootstrap $json $sbPem]
if {$success == 0} then {
puts [CkSecrets_lastErrorText $bootstrap]
delete_CkSecrets $bootstrap
delete_CkJsonObject $json
delete_CkStringBuilder $sbPem
exit
}
puts "The Oracle Cloud bootstrap secret has been stored."
delete_CkSecrets $bootstrap
delete_CkJsonObject $json
delete_CkStringBuilder $sbPem