Sample code for 30+ languages & platforms
Xbase++ Requires Chilkat v10.1.2+

Secure FTP with Client Certificate

See more FTP Examples

Chilkat FTP2 provides the ability to use a client certificate with secure FTP (implicit or explicit SSL/TLS). This example demonstrates how to load a certificate from a .pfx and use it as the client-side SSL cert. Note: Client-side certificates are only needed in situations where the server demands one.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oFtp
LOCAL oCertStore
LOCAL cPassword
LOCAL oJsonCN
LOCAL oCert

nSuccess := 0

//  This example requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

oFtp := CreateObject("Chilkat.Ftp2")

oFtp:Hostname := "ftp.example.com"
oFtp:Port := 21
oFtp:Username := "test"
oFtp:Password := "test"

//  This example will use explict TLS/SSL.
//  Establish an explicit secure channel after connection
//  on the standard FTP port 21.
oFtp:AuthTls := 1

//  The Ssl property is for establishing an implicit SSL connection
//  on port 990.  Because this example uses explicit SSL, it 
//  should remain 0.
oFtp:Ssl := 0

//  Load a certificate from a .pfx
//  A PFX may contain several certs, including the certificates
//  in a chain of authority.
oCertStore := CreateObject("Chilkat.CertStore")

cPassword := "***"
//  Load the certs from a PFX into an in-memory certificate store:
nSuccess := oCertStore:LoadPfxFile("chilkat.pfx", cPassword)
IF (nSuccess != 1)
    ? oCertStore:LastErrorText
    oFtp:destroy()
    oCertStore:destroy()
    RETURN
ENDIF

//  Find the desired certificate.
oJsonCN := CreateObject("Chilkat.JsonObject")
oJsonCN:UpdateString("CN", "cert common name")

oCert := CreateObject("Chilkat.Cert")
nSuccess := oCertStore:FindCert(oJsonCN, oCert)
IF (nSuccess == 0)
    ? "Certificate not found!"
    oFtp:destroy()
    oCertStore:destroy()
    oJsonCN:destroy()
    oCert:destroy()
    RETURN
ENDIF

//  Use this certificate for our secure (SSL/TLS) connection:
nSuccess := oFtp:SetSslClientCert(oCert)

//  Connect and login to the FTP server.  The connection is 
//  made secure because of the AuthTls setting.
nSuccess := oFtp:Connect()
IF (nSuccess != 1)
    ? oFtp:LastErrorText
    oFtp:destroy()
    oCertStore:destroy()
    oJsonCN:destroy()
    oCert:destroy()
    RETURN
ELSE
    //  LastErrorText contains information even when
    //  successful. This allows you to visually verify
    //  that the secure connection actually occurred.
    ? oFtp:LastErrorText
ENDIF

? "Secure FTP Channel Established!"

//  Do whatever you're doing to do ...
//  upload files, download files, etc...

//  .....
//  .....

nSuccess := oFtp:Disconnect()

oFtp:destroy()
oCertStore:destroy()
oJsonCN:destroy()
oCert:destroy()