Sample code for 30+ languages & platforms
Xbase++ Requires Chilkat v10.1.2+

Using WS_FTP Self-signed Certificate file (.crt) and Private Key File. (.key)

See more FTP Examples

Demonstrates how to use a self-signed certificate created by WS_FTP with Chilkat FTP2.

Note: It is usually not necessary for the FTP client to use a client-side certificate. Most FTP servers using SSL and TLS connections (explicit or implicit) do not require client-side certs. In addition, some high-security FTP servers require "real" certificates -- meaning certificates issued by a real certificate authority with a chain of authentication that leads to a trusted root certificate. The certificates created by WS_FTP are self-signed and untrusted.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oFtp
LOCAL oCertStore
LOCAL oJsonCN
LOCAL oCert

nSuccess := 0

//  This example requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

//  Important:  Before running this program, convert your
//  .crt and .key files to a .p12 using OpenSSL:
//  The command is this:
//  openssl pkcs12 -export -in test.crt -inkey test.key -out test.p12
//  

oFtp := CreateObject("Chilkat.Ftp2")

oFtp:Hostname := "ftp.example.com"
oFtp:Port := 21
oFtp:Username := "testLogin"
oFtp:Password := "testPassword"

//  This example will use explict TLS/SSL.
//  Establish an explicit secure channel after connection
//  on the standard FTP port 21.
oFtp:AuthTls := 1

//  The Ssl property is for establishing an implicit SSL connection
//  on port 990.  Because this example uses explicit SSL, it 
//  should remain 0.
oFtp:Ssl := 0

//  Create an instance of a certificate store object, load a .p12 file,
//  locate the certificate we need, and use it for signing.
//  (a P12/PFX file may contain more than one certificate.)
oCertStore := CreateObject("Chilkat.CertStore")
//  The 1st argument is the filename, the 2nd arg is the 
//  .p12 file's password.  (OpenSSL will prompty you to set a password
//  when converting the .crt and .key into a .p12).
nSuccess := oCertStore:LoadPfxFile("test.p12", "secret")
IF (nSuccess != 1)
    ? oCertStore:LastErrorText
    oFtp:destroy()
    oCertStore:destroy()
    RETURN
ENDIF

oJsonCN := CreateObject("Chilkat.JsonObject")
oJsonCN:UpdateString("CN", "cert common name")

oCert := CreateObject("Chilkat.Cert")
nSuccess := oCertStore:FindCert(oJsonCN, oCert)
IF (nSuccess == 0)
    ? oCertStore:LastErrorText
    oFtp:destroy()
    oCertStore:destroy()
    oJsonCN:destroy()
    oCert:destroy()
    RETURN
ENDIF

nSuccess := oFtp:SetSslClientCert(oCert)

//  Connect and login to the FTP server.
nSuccess := oFtp:Connect()
IF (nSuccess != 1)
    ? oFtp:LastErrorText
    oFtp:destroy()
    oCertStore:destroy()
    oJsonCN:destroy()
    oCert:destroy()
    RETURN
ELSE
    //  LastErrorText contains information even when
    //  successful. This allows you to visually verify
    //  that the secure connection actually occurred.
    ? oFtp:LastErrorText
ENDIF

? "Secure FTP Channel Established!"
? oFtp:LastErrorText

//  Do whatever you're doing to do ...
//  upload files, download files, etc...

//  ...
//  ...

nSuccess := oFtp:Disconnect()

oFtp:destroy()
oCertStore:destroy()
oJsonCN:destroy()
oCert:destroy()