Xbase++
Xbase++
Download and Trust the DigiCert Global Root CA
See more Certificates Examples
Demonstrates how to download a root certificate and trust it.Chilkat Xbase++ Downloads
LOCAL nSuccess
LOCAL cCertUrl
LOCAL oHttp
LOCAL oBdCert
LOCAL oCert
LOCAL cCertPath
LOCAL oTroots
nSuccess := 0
// This requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
// In this example, the URLs for the DigiCert root CA certs are available at this web page:
// https://www.digicert.com/digicert-root-certificates.htm
// This example downloads the "DigiCert Global Root G3"
// Valid until: 15/Jan/2038
// Serial #: 05:55:56:BC:F2:5E:A4:35:35:C3:A4:0F:D5:AB:45:72
// Thumbprint: 7E04DE896A3E666D00E687D33FFAD93BE83D349E
cCertUrl := "https://dl.cacerts.digicert.com/DigiCertGlobalRootG3.crt"
oHttp := CreateObject("Chilkat.Http")
oBdCert := CreateObject("Chilkat.BinData")
nSuccess := oHttp:DownloadBd(cCertUrl, oBdCert)
IF (nSuccess == 0)
? oHttp:LastErrorText
oHttp:destroy()
oBdCert:destroy()
RETURN
ENDIF
// Load it into a Chilkat cert object.
oCert := CreateObject("Chilkat.Cert")
nSuccess := oCert:LoadFromBd(oBdCert)
IF (nSuccess == 0)
? oCert:LastErrorText
oHttp:destroy()
oBdCert:destroy()
oCert:destroy()
RETURN
ENDIF
// Examine the common name,serial, and thumbprint:
? "CN: " + oCert:SubjectCN
? "Serial: " + oCert:SerialNumber
? "Thumbprint: " + oCert:Sha1Thumbprint
// Output from the above:
// CN: DigiCert Global Root G3
// Serial: 055556BCF25EA43535C3A40FD5AB4572
// Thumbprint: 7E04DE896A3E666D00E687D33FFAD93BE83D349E
// If desired, the certificate can be saved to a local file so it does not need
// to be downloaded from the website every time.
cCertPath := "qa_data/certs/DigiCertGlobalRootG3.crt"
nSuccess := oBdCert:WriteFile(cCertPath)
// To load the cert from a file...
nSuccess := oCert:LoadFromFile(cCertPath)
// Do the following to add the cert to the collection of trusted roots
// for this application. (Note: The trust is not persisted. Each time the
// application runs, it should load the cert (from whatever source, whether it is
// a file, a database,etc.) and do the following:
oTroots := CreateObject("Chilkat.TrustedRoots")
oTroots:AddCert(oCert)
oTroots:Activate()
? oCert:SubjectCN + " is now trusted for this run of this application."
oHttp:destroy()
oBdCert:destroy()
oCert:destroy()
oTroots:destroy()