Sample code for 30+ languages & platforms
Tcl

PKCS11 Initialize Normal User PIN

See more PKCS11 Examples

Initializes the Normal User PIN from the Security Officer's logged-on session. This provides a way to reset the user PIN if it has been forgotten.

Note: Requires Chilkat v9.5.0.89 or greater.

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

set success 0

# This example requires the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.

# Note: Chilkat's PKCS11 implementation runs on Windows, Linux, Mac OS X, and other supported operating systems.

set pkcs11 [new_CkPkcs11]

# See PKCS11 Find Driver Library Path for information about how to find the 
# PKCS11 driver file (if not explicitly known) for the plugged-in token or smart card in reader.
CkPkcs11_put_SharedLibPath $pkcs11 "IDPrimePKCS1164.dll"

set success [CkPkcs11_Initialize $pkcs11]
if {$success == 0} then {
    puts [CkPkcs11_lastErrorText $pkcs11]
    delete_CkPkcs11 $pkcs11
    exit
}

# Pass -1 for the slotID to open a session on the first non-empty slot.
set slotID -1

# Open a session.
set readWrite 1
set success [CkPkcs11_OpenSession $pkcs11 $slotID $readWrite]
if {$success == 0} then {
    puts [CkPkcs11_lastErrorText $pkcs11]
    delete_CkPkcs11 $pkcs11
    exit
}

# Login as the security officer.
# The smart card PIN is passed to the Login method.
# The user type can be one of three choices:
# 0 - Security Officer
# 1 - Normal User
# 2 - Context Specific.
set userType 0
set pin "AA0000000000000000000000000000000000000000000000"
set success [CkPkcs11_Login $pkcs11 $userType $pin]
if {$success == 0} then {
    puts [CkPkcs11_lastErrorText $pkcs11]
    set success [CkPkcs11_CloseSession $pkcs11]
    delete_CkPkcs11 $pkcs11
    exit
}

# Reset the user PIN to 1234
set success [CkPkcs11_InitPin $pkcs11 "1234"]
if {$success == 0} then {
    puts [CkPkcs11_lastErrorText $pkcs11]
    set success [CkPkcs11_CloseSession $pkcs11]
    delete_CkPkcs11 $pkcs11
    exit
}

# Revert to an unauthenticated session by calling Logout.
set success [CkPkcs11_Logout $pkcs11]
if {$success == 0} then {
    puts [CkPkcs11_lastErrorText $pkcs11]
    set success [CkPkcs11_CloseSession $pkcs11]
    delete_CkPkcs11 $pkcs11
    exit
}

# When finished, close the session.
# It is important to close the session (memory leaks will occur if the session is not properly closed).
set success [CkPkcs11_CloseSession $pkcs11]
if {$success == 0} then {
    puts [CkPkcs11_lastErrorText $pkcs11]
    delete_CkPkcs11 $pkcs11
    exit
}

puts "Successfully reset user PIN to 1234"

delete_CkPkcs11 $pkcs11