Tcl
Tcl
PKCS11 Set PIN for Currently Logged On User
See more PKCS11 Examples
Demonstrates how to change the PIN for the currently logged on user. (The currently logged on user can be the Security Officer, the Normal User, or Context Specific.)Note: Requires Chilkat v9.5.0.89 or greater.
Chilkat Tcl Downloads
load ./chilkat.dll
set success 0
# This example requires the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.
# Note: Chilkat's PKCS11 implementation runs on Windows, Linux, Mac OS X, and other supported operating systems.
set pkcs11 [new_CkPkcs11]
# See PKCS11 Find Driver Library Path for information about how to find the
# PKCS11 driver file (if not explicitly known) for the plugged-in token or smart card in reader.
CkPkcs11_put_SharedLibPath $pkcs11 "IDPrimePKCS1164.dll"
set success [CkPkcs11_Initialize $pkcs11]
if {$success == 0} then {
puts [CkPkcs11_lastErrorText $pkcs11]
delete_CkPkcs11 $pkcs11
exit
}
# Pass -1 for the slotID to open a session on the first non-empty slot.
set slotID -1
# Open a session.
set readWrite 1
set success [CkPkcs11_OpenSession $pkcs11 $slotID $readWrite]
if {$success == 0} then {
puts [CkPkcs11_lastErrorText $pkcs11]
delete_CkPkcs11 $pkcs11
exit
}
# Make it an authenticated session by calling Login.
# The smart card PIN is passed to the Login method.
# The user type can be one of three choices:
# 0 - Security Officer
# 1 - Normal User
# 2 - Context Specific.
set userType 1
set pin "0000"
set success [CkPkcs11_Login $pkcs11 $userType $pin]
if {$success == 0} then {
puts [CkPkcs11_lastErrorText $pkcs11]
set success [CkPkcs11_CloseSession $pkcs11]
delete_CkPkcs11 $pkcs11
exit
}
# Change the PIN from 0000 to 1234
# This changes the PIN for the user type that is logged in.
set success [CkPkcs11_SetPin $pkcs11 $pin "1234"]
if {$success == 0} then {
puts [CkPkcs11_lastErrorText $pkcs11]
set success [CkPkcs11_CloseSession $pkcs11]
delete_CkPkcs11 $pkcs11
exit
}
# Revert to an unauthenticated session by calling Logout.
set success [CkPkcs11_Logout $pkcs11]
if {$success == 0} then {
puts [CkPkcs11_lastErrorText $pkcs11]
set success [CkPkcs11_CloseSession $pkcs11]
delete_CkPkcs11 $pkcs11
exit
}
# When finished, close the session.
# It is important to close the session (memory leaks will occur if the session is not properly closed).
set success [CkPkcs11_CloseSession $pkcs11]
if {$success == 0} then {
puts [CkPkcs11_lastErrorText $pkcs11]
delete_CkPkcs11 $pkcs11
exit
}
puts "Successfully changed PIN from 0000 to 1234"
delete_CkPkcs11 $pkcs11