Sample code for 30+ languages & platforms
Zig

ScMinidriver - Load Certificate from Smart Card or USB Token by Index

See more ScMinidriver Examples

Demonstrates how to load a certificate located on a smart card or USB token by key container index.

Chilkat Zig Downloads

Zig
const std = @import("std");
const chilkat = @import("chilkat");

pub fn main(init: std.process.Init) !void {
    const alloc = init.arena.allocator();

    var success: bool = false;

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.
    const scmd = try chilkat.ScMinidriver.init();
    defer scmd.deinit();

    // Reader names (smart card readers or USB tokens) can be discovered
    // via List Readers or Find Smart Cards
    const reader_name = "SCM Microsystems Inc. SCR33x USB Smart Card Reader 0";
    success = if (scmd.acquireContext(reader_name)) true else |_| false;
    if (!success) {
        std.debug.print("{s}\n", .{try scmd.getLastErrorText(alloc)});
        return;
    }

    // If successful, the name of the currently inserted smart card is available:
    std.debug.print("Card name: {s}\n", .{try scmd.getCardName(alloc)});

    // If desired, perform regular PIN authentication with the smartcard.
    // For more details about smart card PIN authentication, see the Smart Card PIN Authentication Example
    const retval = scmd.pinAuthenticate("user", "000000");
    if (retval != 0) {
        std.debug.print("PIN Authentication failed.\n", .{});
    }

    const cert = try chilkat.Cert.init();
    defer cert.deinit();
    // We can pass a specific key container index, or -1 to locate the 1st non-empty container containing a certificate and private key.
    const key_container_index = -1;
    // keySpec can be "kex" or "sig" to indicate the key-exchange or signature position within the container.
    // keySpec can also be "any" to accept either position, with preference given to the "sig" position if both are occupied.
    const key_spec = "any";
    success = if (scmd.getCert(key_container_index, key_spec, cert)) true else |_| false;
    if (!success) {
        std.debug.print("Failed to load the certificate.\n", .{});
    } else {
        std.debug.print("Successfully loaded the cert object from the smart card / USB token.\n", .{});

        // Note: When successful, the cert object is internally linked to the ScMinidriver object's authenticated session.
        // The cert object can now be used to sign or do other cryptographic operations that occur on the smart card / USB token.
        // If your application calls PinDeauthenticate or DeleteContext, the cert will no longer be able to sign on the smart card
        // because the smart card ScMinidriver session will no longer be authenticated or deleted.
    }

    // ...
    // ...
    // ...

    // When finished with operations that required authentication, you may if you wish, deauthenticate the session.
    scmd.pinDeauthenticate("user") catch {
        std.debug.print("{s}\n", .{try scmd.getLastErrorText(alloc)});
    };

    // Delete the context when finished with the card.
    scmd.deleteContext() catch {
        std.debug.print("{s}\n", .{try scmd.getLastErrorText(alloc)});
    };
}