Sample code for 30+ languages & platforms
Tcl

Client Certificate in REST (USB Token or Smartcard)

See more REST Examples

Demonstrates how to use a client certificate with a REST connection where the certificate and private key are located on a USB token or smart card.

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

set success 0

# This example requires the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.

# This example shows how to use the Chilkat socket object's connection.
set rest [new_CkRest]

set socket [new_CkSocket]

# Set the certificate to be used for mutual TLS authentication
set cert [new_CkCert]

# If the smartcard or token requires a PIN...
CkCert_put_SmartCardPin $cert "000000"

set success [CkCert_LoadFromSmartcard $cert ""]
if {$success != 1} then {
    puts [CkCert_lastErrorText $cert]
    delete_CkRest $rest
    delete_CkSocket $socket
    delete_CkCert $cert
    exit
}

set success [CkSocket_SetSslClientCert $socket $cert]
if {$success != 1} then {
    puts [CkSocket_lastErrorText $socket]
    delete_CkRest $rest
    delete_CkSocket $socket
    delete_CkCert $cert
    exit
}

# Establish the connection using the socket object (with client certificate authentication).
set bTls 1
set port 443
set maxWaitMs 5000
set success [CkSocket_Connect $socket "www.example.com" $port $bTls $maxWaitMs]
if {$success != 1} then {
    puts "Connect Failure Error Code: [CkSocket_get_ConnectFailReason $socket]"
    puts [CkSocket_lastErrorText $socket]
    delete_CkRest $rest
    delete_CkSocket $socket
    delete_CkCert $cert
    exit
}

set bAutoReconnect 1

# Use the connection:
set success [CkRest_UseConnection $rest $socket $bAutoReconnect]
if {$success != 1} then {
    puts [CkRest_lastErrorText $rest]
    delete_CkRest $rest
    delete_CkSocket $socket
    delete_CkCert $cert
    exit
}

# At this point we are connected and can make REST calls...
# For example..
set responseJson [CkRest_fullRequestNoBody $rest "GET" "/someQuery"]
if {[CkRest_get_LastMethodSuccess $rest] != 1} then {
    puts [CkRest_lastErrorText $rest]
    delete_CkRest $rest
    delete_CkSocket $socket
    delete_CkCert $cert
    exit
}


delete_CkRest $rest
delete_CkSocket $socket
delete_CkCert $cert