Sample code for 30+ languages & platforms
Unicode C

ScMinidriver - Import a Certificate to IDPrime MD T=0 Smart Card

See more ScMinidriver Examples

Demonstrates how to import a certificate and its private key to a key container on an ID Prime MD T=0 smartcard.

Note: Requires Chilkat v9.5.0.88 or later. This example only runs on Windows because ScMinidriver is a Windows-only class.

Chilkat Unicode C Downloads

Unicode C
#include <C_CkScMinidriverW.h>
#include <C_CkCertW.h>

void ChilkatSample(void)
    {
    BOOL success;
    HCkScMinidriverW scmd;
    const wchar_t *readerName;
    const wchar_t *pinId;
    int retval;
    HCkCertW cert;
    const wchar_t *password;
    int containerIndex;
    const wchar_t *keySpec;

    success = FALSE;

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    scmd = CkScMinidriverW_Create();

    // Reader names (smart card readers or USB tokens) can be discovered
    // via List Readers or Find Smart Cards
    readerName = L"SCM Microsystems Inc. SCR33x USB Smart Card Reader 0";
    success = CkScMinidriverW_AcquireContext(scmd,readerName);
    if (success == FALSE) {
        wprintf(L"%s\n",CkScMinidriverW_lastErrorText(scmd));
        CkScMinidriverW_Dispose(scmd);
        return;
    }

    // If successful, the name of the currently inserted smart card is available:
    wprintf(L"Card name: %s\n",CkScMinidriverW_cardName(scmd));

    // The IDPRime MD smart card has 4 different PIN roles:
    // "user" -- Primary Card PIN
    // "admin" -- Administrator PIN
    // "3" -- Digital Signature PIN
    // "4" -- Unblock only PIN (PUK)
    // To import a certificate to the "IDPrime MD T=0" smart card, we must first PIN authenticate using "user", and then also PIN authenticate using "3" (the Digital Signature PIN)
    pinId = L"user";
    // (Of course, use your PIN which may be different than "0000")
    retval = CkScMinidriverW_PinAuthenticate(scmd,pinId,L"0000");
    if (retval != 0) {
        wprintf(L"PIN Authentication failed.\n");
        CkScMinidriverW_DeleteContext(scmd);
        CkScMinidriverW_Dispose(scmd);
        return;
    }

    cert = CkCertW_Create();

    // Load the cert + private key from a .p12/.pfx
    // We got this .p12 from https://badssl.com/download/
    password = L"badssl.com";
    success = CkCertW_LoadPfxFile(cert,L"qa_data/pfx/badssl.com-client.p12",password);
    if (success == FALSE) {
        wprintf(L"%s\n",CkCertW_lastErrorText(cert));
        CkScMinidriverW_DeleteContext(scmd);
        CkScMinidriverW_Dispose(scmd);
        CkCertW_Dispose(cert);
        return;
    }

    // Also authenticate using "3", the digital signature PIN.
    // (Of course, use your PIN which may be different than "12345678")
    retval = CkScMinidriverW_PinAuthenticate(scmd,L"3",L"12345678");
    if (retval != 0) {
        wprintf(L"PIN Authentication failed.\n");
        CkScMinidriverW_DeleteContext(scmd);
        CkScMinidriverW_Dispose(scmd);
        CkCertW_Dispose(cert);
        return;
    }

    // Let's import this certificate as the "signature" key/cert in key container #6.
    containerIndex = 6;
    keySpec = L"sig";
    // Note the last argument (the pin ID) is "3".  This is the required PIN ID for the IDPrime MD T=0 smart card.
    success = CkScMinidriverW_ImportCert(scmd,cert,containerIndex,keySpec,L"3");
    if (success == FALSE) {
        wprintf(L"%s\n",CkScMinidriverW_lastErrorText(scmd));
    }
    else {
        wprintf(L"Successfully imported the cert + private key onto the smart card.\n");
    }

    // Delete the context when finished with the card.
    success = CkScMinidriverW_DeleteContext(scmd);
    if (success == FALSE) {
        wprintf(L"%s\n",CkScMinidriverW_lastErrorText(scmd));
    }



    CkScMinidriverW_Dispose(scmd);
    CkCertW_Dispose(cert);

    }