Sample code for 30+ languages & platforms
Xbase++

ScMinidriver - Import a Certificate to IDPrime MD T=0 Smart Card

See more ScMinidriver Examples

Demonstrates how to import a certificate and its private key to a key container on an ID Prime MD T=0 smartcard.

Note: Requires Chilkat v9.5.0.88 or later. This example only runs on Windows because ScMinidriver is a Windows-only class.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oScmd
LOCAL cReaderName
LOCAL cPinId
LOCAL nRetval
LOCAL oCert
LOCAL cPassword
LOCAL nContainerIndex
LOCAL cKeySpec

nSuccess := 0

//  This example requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

oScmd := CreateObject("Chilkat.ScMinidriver")

//  Reader names (smart card readers or USB tokens) can be discovered
//  via List Readers or Find Smart Cards
cReaderName := "SCM Microsystems Inc. SCR33x USB Smart Card Reader 0"
nSuccess := oScmd:AcquireContext(cReaderName)
IF (nSuccess == 0)
    ? oScmd:LastErrorText
    oScmd:destroy()
    RETURN
ENDIF

//  If successful, the name of the currently inserted smart card is available:
? "Card name: " + oScmd:CardName

//  The IDPRime MD smart card has 4 different PIN roles:
//  "user" -- Primary Card PIN
//  "admin" -- Administrator PIN
//  "3" -- Digital Signature PIN
//  "4" -- Unblock only PIN (PUK)
//  To import a certificate to the "IDPrime MD T=0" smart card, we must first PIN authenticate using "user", and then also PIN authenticate using "3" (the Digital Signature PIN)
cPinId := "user"
//  (Of course, use your PIN which may be different than "0000")
nRetval := oScmd:PinAuthenticate(cPinId, "0000")
IF (nRetval != 0)
    ? "PIN Authentication failed."
    oScmd:DeleteContext()
    oScmd:destroy()
    RETURN
ENDIF

oCert := CreateObject("Chilkat.Cert")

//  Load the cert + private key from a .p12/.pfx
//  We got this .p12 from https://badssl.com/download/
cPassword := "badssl.com"
nSuccess := oCert:LoadPfxFile("qa_data/pfx/badssl.com-client.p12", cPassword)
IF (nSuccess == 0)
    ? oCert:LastErrorText
    oScmd:DeleteContext()
    oScmd:destroy()
    oCert:destroy()
    RETURN
ENDIF

//  Also authenticate using "3", the digital signature PIN.
//  (Of course, use your PIN which may be different than "12345678")
nRetval := oScmd:PinAuthenticate("3", "12345678")
IF (nRetval != 0)
    ? "PIN Authentication failed."
    oScmd:DeleteContext()
    oScmd:destroy()
    oCert:destroy()
    RETURN
ENDIF

//  Let's import this certificate as the "signature" key/cert in key container #6.
nContainerIndex := 6
cKeySpec := "sig"
//  Note the last argument (the pin ID) is "3".  This is the required PIN ID for the IDPrime MD T=0 smart card.
nSuccess := oScmd:ImportCert(oCert, nContainerIndex, cKeySpec, "3")
IF (nSuccess == 0)
    ? oScmd:LastErrorText
ELSE
    ? "Successfully imported the cert + private key onto the smart card."
ENDIF

//  Delete the context when finished with the card.
nSuccess := oScmd:DeleteContext()
IF (nSuccess == 0)
    ? oScmd:LastErrorText
ENDIF

oScmd:destroy()
oCert:destroy()