Ssh Tcl Reference Documentation
Ssh
Current Version: 9.5.0.99
A client-side SSH2 implementation for executing commands and shell sessions on Unix/Windows SSH servers.
Object Creation
set mySsh [new CkSsh]
Properties
AbortCurrent
set boolVal [CkSsh_get_AbortCurrent $mySsh]
CkSsh_put_AbortCurrent $mySsh $boolVal
When set to 1, causes the currently running method to abort. Methods that always finish quickly (i.e.have no length file operations or network communications) are not affected. If no method is running, then this property is automatically reset to 0 when the next method is called. When the abort occurs, this property is reset to 0. Both synchronous and asynchronous method calls can be aborted. (A synchronous method call could be aborted by setting this property from a separate thread.)
topAuthFailReason
set intVal [CkSsh_get_AuthFailReason $mySsh]
Set to one of the following values if a call to AuthenticatePw, AuthenticatePk, or AuthenticatePwPk returns a failed status.
- 1: Transport failure. This is a failure to communicate with the server (i.e. the connection was lost, or a read or write failed or timed out).
- 2: Invalid key for public key authentication. The key was not a valid format, not a valid key, not a private key, or not the right type of key.
- 3: No matching authentication methods were available.
- 4: SSH authentication protocol error - an unexpected or invalid message was received.
- 5: The incorrect password or private key was provided.
- 6: Already authenticated. The SSH session is already authenticated.
- 7: Password change request: The server requires the password to be changed.
CaretControl
set boolVal [CkSsh_get_CaretControl $mySsh]
CkSsh_put_CaretControl $mySsh $boolVal
Controls whether the caret character '^' is interpreted as indicating a control character. The default value of this property is 0. If set to 1, then the following sequences are interpreted as control characters in any string passed to SendReqExec or ChannelSendString.
^@ 00 00 NUL Null ^A 01 01 SOH Start of Heading ^B 02 02 STX Start of Text ^C 03 03 ETX End of Text ^D 04 04 EOT End of Transmission ^E 05 05 ENQ Enquiry ^F 06 06 ACK Acknowledge ^G 07 07 BEL Bell ^H 08 08 BS Backspace ^I 09 09 HT Character Tabulation, Horizontal Tabulation ^J 10 0A LF Line Feed ^K 11 0B VT Line Tabulation, Vertical Tabulation ^L 12 0C FF Form Feed ^M 13 0D CR Carriage Return ^N 14 0E SO Shift Out ^O 15 0F SI Shift In ^P 16 10 DLE Data Link Escape ^Q 17 11 DC1 Device Control One (XON) ^R 18 12 DC2 Device Control Two ^S 19 13 DC3 Device Control Three (XOFF) ^T 20 14 DC4 Device Control Four ^U 21 15 NAK Negative Acknowledge ^V 22 16 SYN Synchronous Idle ^W 23 17 ETB End of Transmission Block ^X 24 18 CAN Cancel ^Y 25 19 EM End of medium ^Z 26 1A SUB Substitute ^[ 27 1B ESC Escape ^\ 28 1C FS File Separator ^] 29 1D GS Group Separator ^^ 30 1E RS Record Separator ^_ 31 1F US Unit Separator ^? 127 7F DEL Deletetop
ChannelOpenFailCode
set intVal [CkSsh_get_ChannelOpenFailCode $mySsh]
If a request to open a channel fails, this property contains a code that identifies the reason for failure. The reason codes are defined in RFC 4254 and are reproduced here:
Symbolic name reason code ------------- ----------- SSH_OPEN_ADMINISTRATIVELY_PROHIBITED 1 SSH_OPEN_CONNECT_FAILED 2 SSH_OPEN_UNKNOWN_CHANNEL_TYPE 3 SSH_OPEN_RESOURCE_SHORTAGE 4top
ChannelOpenFailReason
# ckStr is a CkString
CkSsh_get_ChannelOpenFailReason $mySsh $ckStr
set strVal [CkSsh_get_channelOpenFailReason $mySsh]
The descriptive text corresponding to the ChannelOpenFailCode property.
topClientIdentifier
# ckStr is a CkString
CkSsh_get_ClientIdentifier $mySsh $ckStr
set strVal [CkSsh_get_clientIdentifier $mySsh]
CkSsh_put_ClientIdentifier $mySsh $strVal
The client-identifier string to be used when connecting to an SSH/SFTP server. Starting in Chilkat v9.5.0.99, the default is "SSH-2.0-Chilkat_" + the Chilkat version number, such as "SSH-2.0-Chilkat_9.5.0.99".
Note: The client identifier should always begin with "SSH-2.0-". SSH servers may disconnect if it does not.
topClientIpAddress
# ckStr is a CkString
CkSsh_get_ClientIpAddress $mySsh $ckStr
set strVal [CkSsh_get_clientIpAddress $mySsh]
CkSsh_put_ClientIpAddress $mySsh $strVal
The IP address to use for computers with multiple network interfaces or IP addresses. For computers with a single network interface (i.e. most computers), this property should not be set. For multihoming computers, the default IP address is automatically used if this property is not set.
The IP address is a string such as in dotted notation using numbers, not domain names, such as "165.164.55.124".
topClientPort
set intVal [CkSsh_get_ClientPort $mySsh]
CkSsh_put_ClientPort $mySsh $intVal
Normally left at the default value of 0, in which case a unique port is assigned with a value between 1024 and 5000. This property would only be changed if it is specifically required. For example, one customer's requirements are as follows:
"I have to connect to a Siemens PLC IP server on a technical network. This machine expects that I connect to its server from a specific IP address using a specific port otherwise the build in security disconnect the IP connection."top
ConnectTimeoutMs
set intVal [CkSsh_get_ConnectTimeoutMs $mySsh]
CkSsh_put_ConnectTimeoutMs $mySsh $intVal
Maximum number of milliseconds to wait when connecting to an SSH server.
topDebugLogFilePath
# ckStr is a CkString
CkSsh_get_DebugLogFilePath $mySsh $ckStr
set strVal [CkSsh_get_debugLogFilePath $mySsh]
CkSsh_put_DebugLogFilePath $mySsh $strVal
If set to a file path, causes each Chilkat method or property call to automatically append it's LastErrorText to the specified log file. The information is appended such that if a hang or crash occurs, it is possible to see the context in which the problem occurred, as well as a history of all Chilkat calls up to the point of the problem. The VerboseLogging property can be set to provide more detailed information.
This property is typically used for debugging the rare cases where a Chilkat method call hangs or generates an exception that halts program execution (i.e. crashes). A hang or crash should generally never happen. The typical causes of a hang are:
- a timeout related property was set to 0 to explicitly indicate that an infinite timeout is desired,
- the hang is actually a hang within an event callback (i.e. it is a hang within the application code), or
- there is an internal problem (bug) in the Chilkat code that causes the hang.
DisconnectCode
set intVal [CkSsh_get_DisconnectCode $mySsh]
If the SSH server sent a DISCONNECT message when closing the connection, this property contains the "reason code" as specified in RFC 4253:
Symbolic name reason code ------------- ----------- SSH_DISCONNECT_HOST_NOT_ALLOWED_TO_CONNECT 1 SSH_DISCONNECT_PROTOCOL_ERROR 2 SSH_DISCONNECT_KEY_EXCHANGE_FAILED 3 SSH_DISCONNECT_RESERVED 4 SSH_DISCONNECT_MAC_ERROR 5 SSH_DISCONNECT_COMPRESSION_ERROR 6 SSH_DISCONNECT_SERVICE_NOT_AVAILABLE 7 SSH_DISCONNECT_PROTOCOL_VERSION_NOT_SUPPORTED 8 SSH_DISCONNECT_HOST_KEY_NOT_VERIFIABLE 9 SSH_DISCONNECT_CONNECTION_LOST 10 SSH_DISCONNECT_BY_APPLICATION 11 SSH_DISCONNECT_TOO_MANY_CONNECTIONS 12 SSH_DISCONNECT_AUTH_CANCELLED_BY_USER 13 SSH_DISCONNECT_NO_MORE_AUTH_METHODS_AVAILABLE 14 SSH_DISCONNECT_ILLEGAL_USER_NAME 15top
DisconnectReason
# ckStr is a CkString
CkSsh_get_DisconnectReason $mySsh $ckStr
set strVal [CkSsh_get_disconnectReason $mySsh]
If the SSH/ server sent a DISCONNECT message when closing the connection, this property contains a descriptive string for the "reason code" as specified in RFC 4253.
topEnableCompression
set boolVal [CkSsh_get_EnableCompression $mySsh]
CkSsh_put_EnableCompression $mySsh $boolVal
Enables or disables the use of compression w/ the SSH connection. The default value is 1, meaning that compression is used if the server supports it.
Some older SSH servers have been found that claim to support compression, but actually fail when compression is used. PuTTY does not enable compression by default. If trouble is encountered where the SSH server disconnects immediately after the connection is seemingly established (i.e. during authentication), then check to see if disabling compression resolves the problem.
topForceCipher
# ckStr is a CkString
CkSsh_get_ForceCipher $mySsh $ckStr
set strVal [CkSsh_get_forceCipher $mySsh]
CkSsh_put_ForceCipher $mySsh $strVal
Allows for the application to specify an encryption algorithm (cipher) or a comma-separated list of algorithms that are acceptable. If this property is set, then the SSH connection will use one of the specified ciphers.
Possible algorithms are:
- chacha20-poly1305@openssh.com
- aes128-ctr
- aes256-ctr
- aes192-ctr
- aes128-cbc
- aes256-cbc
- aes192-cbc
- aes128-gcm@openssh.com
- aes256-gcm@openssh.com
- twofish256-cbc
- twofish128-cbc
- blowfish-cbc
- 3des-cbc
- arcfour128
- arcfour256
This property is empty by default, which means the encryption chosen will be the 1st on the above list (in the order listed above) that is also implemented by the server.
Note: The cipher(s) must be specified using the exact spelling in lowercase as shown above.
Important: If this is property is set and the server does NOT support then encryption algorithm, then the Connect will fail.
topHostKeyAlg
# ckStr is a CkString
CkSsh_get_HostKeyAlg $mySsh $ckStr
set strVal [CkSsh_get_hostKeyAlg $mySsh]
CkSsh_put_HostKeyAlg $mySsh $strVal
Indicates the preferred host key algorithm to be used in establishing the SSH secure connection. The default is "DSS". It may be changed to "RSA" if needed. Chilkat recommends not changing this unless a problem warrants the change.
topHostKeyFingerprint
# ckStr is a CkString
CkSsh_get_HostKeyFingerprint $mySsh $ckStr
set strVal [CkSsh_get_hostKeyFingerprint $mySsh]
Set after connecting to an SSH server. The format of the fingerprint looks like this: "ssh-rsa 1024 68:ff:d1:4e:6c:ff:d7:b0:d6:58:73:85:07:bc:2e:d5"
HttpProxyAuthMethod
# ckStr is a CkString
CkSsh_get_HttpProxyAuthMethod $mySsh $ckStr
set strVal [CkSsh_get_httpProxyAuthMethod $mySsh]
CkSsh_put_HttpProxyAuthMethod $mySsh $strVal
If an HTTP proxy requiring authentication is to be used, set this property to the HTTP proxy authentication method name. Valid choices are "Basic" or "NTLM".
topHttpProxyDomain
# ckStr is a CkString
CkSsh_get_HttpProxyDomain $mySsh $ckStr
set strVal [CkSsh_get_httpProxyDomain $mySsh]
CkSsh_put_HttpProxyDomain $mySsh $strVal
The NTLM authentication domain (optional) if NTLM authentication is used w/ the HTTP proxy.
topHttpProxyHostname
# ckStr is a CkString
CkSsh_get_HttpProxyHostname $mySsh $ckStr
set strVal [CkSsh_get_httpProxyHostname $mySsh]
CkSsh_put_HttpProxyHostname $mySsh $strVal
If an HTTP proxy is to be used, set this property to the HTTP proxy hostname or IPv4 address (in dotted decimal notation).
HttpProxyPassword
# ckStr is a CkString
CkSsh_get_HttpProxyPassword $mySsh $ckStr
set strVal [CkSsh_get_httpProxyPassword $mySsh]
CkSsh_put_HttpProxyPassword $mySsh $strVal
If an HTTP proxy requiring authentication is to be used, set this property to the HTTP proxy password.
topHttpProxyPort
set intVal [CkSsh_get_HttpProxyPort $mySsh]
CkSsh_put_HttpProxyPort $mySsh $intVal
If an HTTP proxy is to be used, set this property to the HTTP proxy port number. (Two commonly used HTTP proxy ports are 8080 and 3128.)
topHttpProxyUsername
# ckStr is a CkString
CkSsh_get_HttpProxyUsername $mySsh $ckStr
set strVal [CkSsh_get_httpProxyUsername $mySsh]
CkSsh_put_HttpProxyUsername $mySsh $strVal
If an HTTP proxy requiring authentication is to be used, set this property to the HTTP proxy login name.
IdleTimeoutMs
set intVal [CkSsh_get_IdleTimeoutMs $mySsh]
CkSsh_put_IdleTimeoutMs $mySsh $intVal
Causes SSH operations to fail when progress for sending or receiving data halts for more than this number of milliseconds. Setting IdleTimeoutMs = 0 (the default) allows the application to wait indefinitely.
topIsConnected
set boolVal [CkSsh_get_IsConnected $mySsh]
Returns 1 if the last known state of the connection with the SSH server is "connected".
Note: The IsConnected property is set to 1 after successfully completing the Connect method call. The IsConnected property will only be set to 0 by calling Disconnect, or by the failure of another method call such that the disconnection is detected.
If the last communications with the SSH server was successful and then a long time passes with no communications, and the server disconnects because of inactivity, then IsConnected will still indicate 1. A better way of testing the connection is to call SendIgnore after checking to see if IsConnected is 1. (If IsConnected is 0, then there is surely no connection.)
KeepSessionLog
set boolVal [CkSsh_get_KeepSessionLog $mySsh]
CkSsh_put_KeepSessionLog $mySsh $boolVal
Controls whether communications to/from the SSH server are saved to the SessionLog property. The default value is 0. If this property is set to 1, the contents of the SessionLog property will continuously grow as SSH activity transpires. The purpose of the KeepSessionLog / SessionLog properties is to help in debugging any future problems that may arise.
topLastErrorHtml
# ckStr is a CkString
CkSsh_get_LastErrorHtml $mySsh $ckStr
set strVal [CkSsh_get_lastErrorHtml $mySsh]
Provides information in HTML format about the last method/property called. If a method call returns a value indicating failure, or behaves unexpectedly, examine this property to get more information.
topLastErrorText
# ckStr is a CkString
CkSsh_get_LastErrorText $mySsh $ckStr
set strVal [CkSsh_get_lastErrorText $mySsh]
Provides information in plain-text format about the last method/property called. If a method call returns a value indicating failure, or behaves unexpectedly, examine this property to get more information.
LastErrorXml
# ckStr is a CkString
CkSsh_get_LastErrorXml $mySsh $ckStr
set strVal [CkSsh_get_lastErrorXml $mySsh]
Provides information in XML format about the last method/property called. If a method call returns a value indicating failure, or behaves unexpectedly, examine this property to get more information.
topLastMethodSuccess
set boolVal [CkSsh_get_LastMethodSuccess $mySsh]
CkSsh_put_LastMethodSuccess $mySsh $boolVal
Indicate whether the last method call succeeded or failed. A value of 1 indicates success, a value of 0 indicates failure. This property is automatically set for method calls. It is not modified by property accesses. The property is automatically set to indicate success for the following types of method calls:
- Any method that returns a string.
- Any method returning a Chilkat object, binary bytes, or a date/time.
- Any method returning a standard boolean status value where success = 1 and failure = 0.
- Any method returning an integer where failure is defined by a return value less than zero.
Note: Methods that do not fit the above requirements will always set this property equal to 1. For example, a method that returns no value (such as a "void" in C++) will technically always succeed.
topMaxPacketSize
set intVal [CkSsh_get_MaxPacketSize $mySsh]
CkSsh_put_MaxPacketSize $mySsh $intVal
The maximum packet length to be used in the SSH transport protocol. The default value is 8192.
Note: If a large amount of data is to be flowing to/from the SSH server, then setting the MaxPacketSize equal to 32768 may improve performance. For those familiar with the inner workings of the SSH protocol, this is the "maximum packet size" value that is sent in the SSH_MSG_CHANNEL_OPEN message as defined in RFC 4254.
topNumOpenChannels
set intVal [CkSsh_get_NumOpenChannels $mySsh]
The number of currently open channels.
topPasswordChangeRequested
set boolVal [CkSsh_get_PasswordChangeRequested $mySsh]
Set by the AuthenticatePw and AuthenticatePwPk methods. If the authenticate method returns a failed status, and this property is set to 1, then it indicates the server requested a password change. In this case, re-call the authenticate method, but provide both the old and new passwords in the following format, where vertical bar characters encapsulate the old and new passwords:
|oldPassword|newPassword|top
PreferIpv6
set boolVal [CkSsh_get_PreferIpv6 $mySsh]
CkSsh_put_PreferIpv6 $mySsh $boolVal
If 1, then use IPv6 over IPv4 when both are supported for a particular domain. The default value of this property is 0, which will choose IPv4 over IPv6.
topReadTimeoutMs
set intVal [CkSsh_get_ReadTimeoutMs $mySsh]
CkSsh_put_ReadTimeoutMs $mySsh $intVal
The maximum amount of time to allow for reading messages/data from the SSH server. This is different from the IdleTimeoutMs property. The IdleTimeoutMs is the maximum amount of time to wait while no incoming data is arriving. The ReadTimeoutMs is the maximum amount of time to allow for reading data even if data is continuing to arrive. The default value of 0 indicates an infinite timeout value.
topReqExecCharset
# ckStr is a CkString
CkSsh_get_ReqExecCharset $mySsh $ckStr
set strVal [CkSsh_get_reqExecCharset $mySsh]
CkSsh_put_ReqExecCharset $mySsh $strVal
Indicates the charset to be used for the command sent via the SendReqExec method. The default is "ANSI". A likely alternate value would be "utf-8".
topServerIdentifier
# ckStr is a CkString
CkSsh_get_ServerIdentifier $mySsh $ckStr
set strVal [CkSsh_get_serverIdentifier $mySsh]
The server-identifier string received from the server during connection establishment. For example, a typical value would be similar to "SSH-2.0-OpenSSH_7.2p2 Ubuntu-4ubuntu2.2".
topSessionLog
# ckStr is a CkString
CkSsh_get_SessionLog $mySsh $ckStr
set strVal [CkSsh_get_sessionLog $mySsh]
Contains a log of the messages sent to/from the SSH server. To enable session logging, set the KeepSessionLog property = 1. Note: This property is not a filename -- it is a string property that contains the session log data.
topSocksHostname
# ckStr is a CkString
CkSsh_get_SocksHostname $mySsh $ckStr
set strVal [CkSsh_get_socksHostname $mySsh]
CkSsh_put_SocksHostname $mySsh $strVal
The SOCKS4/SOCKS5 hostname or IPv4 address (in dotted decimal notation). This property is only used if the SocksVersion property is set to 4 or 5).
topSocksPassword
# ckStr is a CkString
CkSsh_get_SocksPassword $mySsh $ckStr
set strVal [CkSsh_get_socksPassword $mySsh]
CkSsh_put_SocksPassword $mySsh $strVal
The SOCKS5 password (if required). The SOCKS4 protocol does not include the use of a password, so this does not apply to SOCKS4.
topSocksPort
set intVal [CkSsh_get_SocksPort $mySsh]
CkSsh_put_SocksPort $mySsh $intVal
The SOCKS4/SOCKS5 proxy port. The default value is 1080. This property only applies if a SOCKS proxy is used (if the SocksVersion property is set to 4 or 5).
topSocksUsername
# ckStr is a CkString
CkSsh_get_SocksUsername $mySsh $ckStr
set strVal [CkSsh_get_socksUsername $mySsh]
CkSsh_put_SocksUsername $mySsh $strVal
The SOCKS4/SOCKS5 proxy username. This property is only used if the SocksVersion property is set to 4 or 5).
topSocksVersion
set intVal [CkSsh_get_SocksVersion $mySsh]
CkSsh_put_SocksVersion $mySsh $intVal
SocksVersion May be set to one of the following integer values:
0 - No SOCKS proxy is used. This is the default.
4 - Connect via a SOCKS4 proxy.
5 - Connect via a SOCKS5 proxy.
SoRcvBuf
set intVal [CkSsh_get_SoRcvBuf $mySsh]
CkSsh_put_SoRcvBuf $mySsh $intVal
Sets the receive buffer size socket option. Normally, this property should be left unchanged. The default value is 4194304.
This property can be increased if download performance seems slow. It is recommended to be a multiple of 4096.
SoSndBuf
set intVal [CkSsh_get_SoSndBuf $mySsh]
CkSsh_put_SoSndBuf $mySsh $intVal
Sets the send buffer size socket option. Normally, this property should be left unchanged. The default value is 262144.
This property can be increased if upload performance seems slow. It is recommended to be a multiple of 4096. Testing with sizes such as 512K and 1MB is reasonable.
StderrToStdout
set boolVal [CkSsh_get_StderrToStdout $mySsh]
CkSsh_put_StderrToStdout $mySsh $boolVal
If 1, then stderr is redirected to stdout. In this case, channel output for both stdout and stderr is combined and retrievable via the following methods: GetReceivedData, GetReceivedDataN, GetReceivedText, GetReceivedTextS. If this property is 0, then stderr is available separately via the GetReceivedStderr method.
The default value of this property is 1.
Note: Most SSH servers do not send stderr output as "extended data" packets as specified in RFC 4254. The SessionLog may be examined to see if any CHANNEL_EXTENDED_DATA messages exist. If not, then all of the output (stdout + stderr) was sent via CHANNEL_DATA messages, and therefore it is not possible to differentiate stderr output from stdout. In summary: This feature will not work for most SSH servers.
topStripColorCodes
set boolVal [CkSsh_get_StripColorCodes $mySsh]
CkSsh_put_StripColorCodes $mySsh $boolVal
If 1, then terminal color codes are stripped from the received text. The default value of this property is 1. (Color codes are non-printable escape sequences that provide information about color for text in a terminal.)
topTcpNoDelay
set boolVal [CkSsh_get_TcpNoDelay $mySsh]
CkSsh_put_TcpNoDelay $mySsh $boolVal
Controls whether the TCP_NODELAY socket option is used for the underlying TCP/IP socket. The default value is 1. This disables the Nagle algorithm and allows for better performance when small amounts of data are sent to/from the SSH server.
topUncommonOptions
# ckStr is a CkString
CkSsh_get_UncommonOptions $mySsh $ckStr
set strVal [CkSsh_get_uncommonOptions $mySsh]
CkSsh_put_UncommonOptions $mySsh $strVal
This is a catch-all property to be used for uncommon needs. This property defaults to the empty string, and should typically remain empty.
Can be set to a list of the following comma separated keywords:
- ForceUserAuthRsaSha1 - Introduced in v9.5.0.98. When doing public-key authentication, forces rsa-sha1 to be used for the userauth algorithm even if the server supports rsa-sha2-256, rsa-sha2-512, but still requires SHA1 for the userauth algorithm. Make sure to set this option before connecting to the server.
- no-weak-mac-algs - Introduced in v9.5.0.98. Removes all weaker MAC algorithms from the list offered to the SSH server when negotiating the connection parameters during a Connect. Specifically, removes hmac-sha1-96, hmac-sha1, hmac-md5, and hmac-ripemd160. Note: Stronger algorithms such as hmac-sha2-256, hmac-sha2-512, etc., will already be automatically chosen because they are given higher preference. The only way a weaker algorithm is chosen is if the SSH server ONLY supports weaker algorithms. This option would only be set if you explicitly want to avoid connecting to older SSH servers, or servers configured in some unusual way where only weaker algorithms are supported on the server (which is rare).
- ProtectFromVpn - Introduced in v9.5.0.80. On Android systems, will bypass any VPN that may be installed or active.
- +ssh-hmac-etm - Introduced in v9.5.0.97. Version 9.5.0.97 disabled the *-etm MAC algorithms to mitigate the Terrapin attack. Use this keyword to include the etm MAC algorithms.
- +chacha20-poly1305@openssh.com - Introduced in v9.5.0.97. To mitigate the Terrapin attack, chacha20-poly1305@openssh.com is no longer included by default. It can be re-added by adding this keyword.
UserAuthBanner
# ckStr is a CkString
CkSsh_get_UserAuthBanner $mySsh $ckStr
set strVal [CkSsh_get_userAuthBanner $mySsh]
CkSsh_put_UserAuthBanner $mySsh $strVal
If a user authentication banner message is received during authentication, it will be made available here. An application can check to see if this property contains a banner string after calling StartKeyboardAuth. It is only possible for an application to display this message if it is doing keyboard-interactive authentication via the StartKeyboardAuth and ContinueKeyboardAuth methods.
topUtf8
set boolVal [CkSsh_get_Utf8 $mySsh]
CkSsh_put_Utf8 $mySsh $boolVal
When set to 1, all "const char *" arguments are interpreted as utf-8 strings. If set to 0 (the default), then "const char *" arguments are interpreted as ANSI strings. Also, when set to 1, and Chilkat method returning a "const char *" is returning the utf-8 representation. If set to 0, all "const char *" return values are ANSI strings.
topVerboseLogging
set boolVal [CkSsh_get_VerboseLogging $mySsh]
CkSsh_put_VerboseLogging $mySsh $boolVal
If set to 1, then the contents of LastErrorText (or LastErrorXml, or LastErrorHtml) may contain more verbose information. The default value is 0. Verbose logging should only be used for debugging. The potentially large quantity of logged information may adversely affect peformance.
topVersion
Methods
AuthenticatePk
# privateKey is a CkSshKey
set status [CkSsh_AuthenticatePk $username $privateKey]
Authenticates with the SSH server using public-key authentication. The corresponding public key must have been installed on the SSH server for the username. Authentication will succeed if the matching privateKey is provided.
Important: When reporting problems, please send the full contents of the LastErrorText property to support@chilkatsoft.com.
Returns 1 for success, 0 for failure.
AuthenticatePkAsync (1)
# username is a string
# privateKey is a CkSshKey
set ret_task [CkSsh_AuthenticatePkAsync $username $privateKey]
Creates an asynchronous task to call the AuthenticatePk method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topAuthenticatePw
# password is a string
set status [CkSsh_AuthenticatePw $login $password]
Authenticates with the SSH server using a login and password.
An SSH session always begins by first calling Connect to connect to the SSH server, and then calling either AuthenticatePw or AuthenticatePk to login.
Important: When reporting problems, please send the full contents of the LastErrorText property to support@chilkatsoft.com.
Note: To learn about how to handle password change requests, see the PasswordChangeRequested property (above).
Returns 1 for success, 0 for failure.
AuthenticatePwAsync (1)
# login is a string
# password is a string
set ret_task [CkSsh_AuthenticatePwAsync $login $password]
Creates an asynchronous task to call the AuthenticatePw method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topAuthenticatePwPk
# password is a string
# privateKey is a CkSshKey
set status [CkSsh_AuthenticatePwPk $username $password $privateKey]
Authentication for SSH servers that require both a password and private key. (Most SSH servers are configured to require one or the other, but not both.)
Important: When reporting problems, please send the full contents of the LastErrorText property to support@chilkatsoft.com.
Returns 1 for success, 0 for failure.
AuthenticatePwPkAsync (1)
# username is a string
# password is a string
# privateKey is a CkSshKey
set ret_task [CkSsh_AuthenticatePwPkAsync $username $password $privateKey]
Creates an asynchronous task to call the AuthenticatePwPk method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topAuthenticateSecPw
# password is a CkSecureString
set status [CkSsh_AuthenticateSecPw $login $password]
The same as AuthenticatePw, except the login and passwords strings are passed in secure string objects.
Returns 1 for success, 0 for failure.
AuthenticateSecPwAsync (1)
# login is a CkSecureString
# password is a CkSecureString
set ret_task [CkSsh_AuthenticateSecPwAsync $login $password]
Creates an asynchronous task to call the AuthenticateSecPw method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topAuthenticateSecPwPk
# password is a CkSecureString
# privateKey is a CkSshKey
set status [CkSsh_AuthenticateSecPwPk $username $password $privateKey]
The same as AuthenticatePwPk, except the login and passwords strings are passed in secure string objects.
Returns 1 for success, 0 for failure.
topAuthenticateSecPwPkAsync (1)
# username is a CkSecureString
# password is a CkSecureString
# privateKey is a CkSshKey
set ret_task [CkSsh_AuthenticateSecPwPkAsync $username $password $privateKey]
Creates an asynchronous task to call the AuthenticateSecPwPk method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelIsOpen
set retBool [CkSsh_ChannelIsOpen $channelNum]
Returns 1 if the channel indicated by channelNum is open. Otherwise returns 0.
topChannelPoll
# pollTimeoutMs is an integer
set retInt [CkSsh_ChannelPoll $channelNum $pollTimeoutMs]
Polls for incoming data on an open channel. This method will read a channel, waiting at most pollTimeoutMs milliseconds for data to arrive. Return values are as follows:
-1 -- Error. Check the IsConnected property to see if the connection to the SSH server is still valid. Also, call ChannelIsOpen to see if the channel remains open. The LastErrorText property will contain more detailed information regarding the error.
-2 -- No additional data was received prior to the poll timeout.
>0 -- Additional data was received and the return value indicates how many bytes are available to be "picked up". Methods that read data on a channel do not return the received data directly. Instead, they return an integer to indicate how many bytes are available to be "picked up". An application picks up the available data by calling GetReceivedData or GetReceivedText.
=0 -- A zero can be returned if the channel EOF has already been received, or if the channel had already been closed.
topChannelPollAsync (1)
# channelNum is an integer
# pollTimeoutMs is an integer
set ret_task [CkSsh_ChannelPollAsync $channelNum $pollTimeoutMs]
Creates an asynchronous task to call the ChannelPoll method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelRead
set retInt [CkSsh_ChannelRead $channelNum]
Reads incoming data on an open channel. This method will read a channel, waiting at most IdleTimeoutMs milliseconds for data to arrive. Return values are as follows:
-1 -- Error. Check the IsConnected property to see if the connection to the SSH server is still valid. Also, call ChannelIsOpen to see if the channel remains open. The LastErrorText property will contain more detailed information regarding the error.
-2 -- No additional data was received prior to the IdleTimeoutMs timeout.
>0 -- Additional data was received and the return value indicates how many bytes are available to be "picked up". Methods that read data on a channel do not return the received data directly. Instead, they return an integer to indicate how many bytes are available to be "picked up". An application picks up the available data by calling GetReceivedData or GetReceivedText.
=0 -- A zero can be returned if the channel EOF has already been received, or if the channel had already been closed.
topChannelReadAsync (1)
# channelNum is an integer
set ret_task [CkSsh_ChannelReadAsync $channelNum]
Creates an asynchronous task to call the ChannelRead method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelReadAndPoll
# pollTimeoutMs is an integer
set retInt [CkSsh_ChannelReadAndPoll $channelNum $pollTimeoutMs]
Reads incoming data on an open channel and continues reading until no data arrives for pollTimeoutMs milliseconds. The first read will wait a max of IdleTimeoutMs milliseconds before timing out. Subsequent reads wait a max of pollTimeoutMs milliseconds before timing out.
The idea behind ChannelReadAndPoll is to capture the output of a shell command. One might imagine the typical sequence of events when executing a shell command to be like this: (1) client sends command to server, (2) server executes the command (i.e. it's computing...), potentially taking some amount of time, (3) output is streamed back to the client. It makes sense for the client to wait a longer period of time for the first data to arrive, but once it begins arriving, the timeout can be shortened. This is exactly what ChannelReadAndPoll does -- the first timeout is controlled by the IdleTimeoutMs property, while the subsequent reads (once output starts flowing) is controlled by pollTimeoutMs.
Return values are as follows:
-1 -- Error. Check the IsConnected property to see if the connection to the SSH server is still valid.
Also, call ChannelIsOpen to see if the channel remains open. The LastErrorText property will contain
more detailed information regarding the error.
-2 -- No additional data was received prior to the IdleTimeoutMs timeout.
>0 -- Additional data was received and the return value indicates how many bytes are available to be "picked up". Methods that read data on a channel do not return the received data directly. Instead, they return an integer to indicate how many bytes are available to be "picked up". An application picks up the available data by calling GetReceivedData or GetReceivedText.
=0 -- A zero can be returned if the channel EOF has already been received, or if the channel had already been closed.
topChannelReadAndPollAsync (1)
# channelNum is an integer
# pollTimeoutMs is an integer
set ret_task [CkSsh_ChannelReadAndPollAsync $channelNum $pollTimeoutMs]
Creates an asynchronous task to call the ChannelReadAndPoll method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelReadAndPoll2
# pollTimeoutMs is an integer
# maxNumBytes is an integer
set retInt [CkSsh_ChannelReadAndPoll2 $channelNum $pollTimeoutMs $maxNumBytes]
The same as ChannelReadAndPoll, except this method will return as soon as maxNumBytes is exceeded.
topChannelReadAndPoll2Async (1)
# channelNum is an integer
# pollTimeoutMs is an integer
# maxNumBytes is an integer
set ret_task [CkSsh_ChannelReadAndPoll2Async $channelNum $pollTimeoutMs $maxNumBytes]
Creates an asynchronous task to call the ChannelReadAndPoll2 method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelReceivedClose
set retBool [CkSsh_ChannelReceivedClose $channelNum]
1 if a CLOSE message has been received on the channel indicated by channelNum. When a CLOSE is received, no subsequent data should be sent in either direction -- the channel is closed in both directions.
topChannelReceivedEof
set retBool [CkSsh_ChannelReceivedEof $channelNum]
1 if an EOF message has been received on the channel indicated by channelNum. When an EOF is received, no more data will be forthcoming on the channel. However, data may still be sent in the opposite direction.
topChannelReceivedExitStatus
set retBool [CkSsh_ChannelReceivedExitStatus $channelNum]
1 if an exit status code was received on the channel. Otherwise 0.
topChannelReceiveToClose
set status [CkSsh_ChannelReceiveToClose $channelNum]
Reads incoming data on an open channel until the channel is closed by the server. If successful, the number of bytes available to be "picked up" can be determined by calling GetReceivedNumBytes. The received data may be retrieved by calling GetReceivedData or GetReceivedText.
Returns 1 for success, 0 for failure.
topChannelReceiveToCloseAsync (1)
# channelNum is an integer
set ret_task [CkSsh_ChannelReceiveToCloseAsync $channelNum]
Creates an asynchronous task to call the ChannelReceiveToClose method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelReceiveUntilMatch
# matchPattern is a string
# charset is a string
# caseSensitive is a boolean
set status [CkSsh_ChannelReceiveUntilMatch $channelNum $matchPattern $charset $caseSensitive]
Reads incoming text data on an open channel until the received data matches the matchPattern. For example, to receive data until the string "Hello World" arrives, set matchPattern equal to "*Hello World*". charset indicates the character encoding of the text being received ("iso-8859-1" for example). caseSensitive may be set to 1 for case sensitive matching, or 0 for case insensitive matching.
Returns 1 if text data matching matchPattern was received and is available to be picked up by calling GetReceivedText (or GetReceivedTextS). IMPORTANT: This method may read beyond the matching text. Call GetReceivedTextS to extract only the data up-to and including the matching text.
Important Notes:
- It's wise to set the ReadTimeoutMs property to a non-zero value to prevent an infinite wait if the matchPattern never arrives.
- If using a shell session and SendReqPty was called, set the termType = "dumb". If terminal control codes get mixed into the output stream, it could disrupt matching.
- Be aware of the StderrToStdout property setting. The default value is true, which means that stderr is mixed with stdout in the output stream. This could disrupt matching. Set StderrToStdout to false to prevent this possibility.
Returns 1 for success, 0 for failure.
topChannelReceiveUntilMatchAsync (1)
# channelNum is an integer
# matchPattern is a string
# charset is a string
# caseSensitive is a boolean
set ret_task [CkSsh_ChannelReceiveUntilMatchAsync $channelNum $matchPattern $charset $caseSensitive]
Creates an asynchronous task to call the ChannelReceiveUntilMatch method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelReceiveUntilMatchN
# matchPatterns is a CkStringArray
# charset is a string
# caseSensitive is a boolean
set status [CkSsh_ChannelReceiveUntilMatchN $channelNum $matchPatterns $charset $caseSensitive]
The same as ChannelReceiveUntilMatch except that the method returns when any one of the match patterns specified in matchPatterns are received on the channel.
Important: It's wise to set the ReadTimeoutMs property to a non-zero value to prevent an infinite wait if of the matchPatterns ever arrives.
Returns 1 for success, 0 for failure.
ChannelReceiveUntilMatchNAsync (1)
# channelNum is an integer
# matchPatterns is a CkStringArray
# charset is a string
# caseSensitive is a boolean
set ret_task [CkSsh_ChannelReceiveUntilMatchNAsync $channelNum $matchPatterns $charset $caseSensitive]
Creates an asynchronous task to call the ChannelReceiveUntilMatchN method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelRelease
CkSsh_ChannelRelease $channelNum
Releases the internal memory resources for a channel previously opened by OpenSessionChannel, OpenCustomChannel, or OpenDirectTcpIpChannel. It is not absolutely necessary to call this method because the internal memory resources for all channels are automatically released when the SSH object instance is deleted/disposed. This method becomes necessary only when an extremely large number of channels within the same SSH object instance are opened, used, and closed over a long period of time.
topChannelSendClose
set status [CkSsh_ChannelSendClose $channelNum]
Sends a CLOSE message to the server for the channel indicated by channelNum. This closes both directions of the bidirectional channel.
Returns 1 for success, 0 for failure.
topChannelSendCloseAsync (1)
# channelNum is an integer
set ret_task [CkSsh_ChannelSendCloseAsync $channelNum]
Creates an asynchronous task to call the ChannelSendClose method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelSendData
# byteData is a CkByteData
set status [CkSsh_ChannelSendData $channelNum $byteData]
ChannelSendDataAsync (1)
# channelNum is an integer
# byteData is a CkByteData
set ret_task [CkSsh_ChannelSendDataAsync $channelNum $byteData]
Creates an asynchronous task to call the ChannelSendData method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelSendEof
set status [CkSsh_ChannelSendEof $channelNum]
Sends an EOF for the channel indicated by channelNum. Once an EOF is sent, no additional data may be sent on the channel. However, the channel remains open and additional data may still be received from the server.
Returns 1 for success, 0 for failure.
topChannelSendEofAsync (1)
# channelNum is an integer
set ret_task [CkSsh_ChannelSendEofAsync $channelNum]
Creates an asynchronous task to call the ChannelSendEof method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topChannelSendString
# textData is a string
# charset is a string
set status [CkSsh_ChannelSendString $channelNum $textData $charset]
Sends character data on the channel indicated by channelNum. The text is converted to the charset indicated by charset prior to being sent. A list of supported charset values may be found on this page: Supported Charsets.
Returns 1 for success, 0 for failure.
topChannelSendStringAsync (1)
# channelNum is an integer
# textData is a string
# charset is a string
set ret_task [CkSsh_ChannelSendStringAsync $channelNum $textData $charset]
Creates an asynchronous task to call the ChannelSendString method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topCheckConnection
Returns 1 if the underlying TCP socket is connected to the SSH server.
topClearTtyModes
Clears the collection of TTY modes that are sent with the SendReqPty method.
topConnect
# port is an integer
set status [CkSsh_Connect $domainName $port]
Connects to the SSH server at domainName:port
The domainName may be a domain name or an IPv4 or IPv6 address in string format.
Internally, the following SSH connection protocol algorithms are supported:
- Hostkey:
- ssh-ed25519
- rsa-sha2-256
- rsa-sha2-512
- ecdsa-sha2-nistp256
- ecdsa-sha2-nistp384
- ecdsa-sha2-nistp521
- ssh-rsa
- ssh-dss
- Key Exchange:
- curve25519-sha256
- curve25519-sha256@libssh.org
- ecdh-sha2-nistp256
- ecdh-sha2-nistp384
- ecdh-sha2-nistp521
- diffie-hellman-group14-sha256
- diffie-hellman-group1-sha1
- diffie-hellman-group14-sha1
- diffie-hellman-group16-sha512
- diffie-hellman-group18-sha512
- diffie-hellman-group-exchange-sha256
- diffie-hellman-group-exchange-sha1
- Ciphers:
- aes128-ctr
- aes256-ctr
- aes192-ctr
- aes128-cbc
- aes256-cbc
- aes192-cbc
- aes128-gcm@openssh.com
- aes256-gcm@openssh.com
- twofish256-cbc
- twofish128-cbc
- blowfish-cbc
- (also chacha20-poly1305@openssh.com if explicitly allowed by the application)
- MAC Algorithms:
- hmac-sha2-256
- hmac-sha2-512
- hmac-sha1
- hmac-ripemd160
- hmac-sha1-96
- hmac-md5
- (also the following etm algorithms if explicitly allowed)
- hmac-sha1-etm@openssh.com
- hmac-sha2-256-etm@openssh.com
- hmac-sha2-512-etm@openssh.com
- Compression:
- none
- zlib
- zlib@openssh.com
Important: All TCP-based Internet communications, regardless of the protocol (such as HTTP, FTP, SSH, IMAP, POP3, SMTP, etc.), and regardless of SSL/TLS, begin with establishing a TCP connection to a remote host:port. External security-related infrastructure such as software firewalls (Windows Firewall), hardware firewalls, anti-virus, at either source or destination (or both) can block the connection. If the connection fails, make sure to check all potential external causes of blockage.
Returns 1 for success, 0 for failure.
topConnectAsync (1)
# domainName is a string
# port is an integer
set ret_task [CkSsh_ConnectAsync $domainName $port]
Creates an asynchronous task to call the Connect method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topConnectThroughSsh
# hostname is a string
# port is an integer
set status [CkSsh_ConnectThroughSsh $ssh $hostname $port]
Connects to an SSH server through an existing SSH connection. The ssh is an existing connected and authenticated SSH object. The connection to hostname:port is made through the existing SSH connection via port-forwarding. If successful, the connection is as follows: application => ServerSSH1 => ServerSSH2. (where ServerSSH1 is the ssh and ServerSSH2 is the SSH server at hostname:port) Once connected in this way, all communications are routed through ServerSSH1 to ServerSSH2. This includes authentication -- which means the application must still call one of the Authenticate* methods to authenticate with ServerSSH2.
Returns 1 for success, 0 for failure.
ConnectThroughSshAsync (1)
# ssh is a CkSsh
# hostname is a string
# port is an integer
set ret_task [CkSsh_ConnectThroughSshAsync $ssh $hostname $port]
Creates an asynchronous task to call the ConnectThroughSsh method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topContinueKeyboardAuth
# outStr is a CkString (output)
set status [CkSsh_ContinueKeyboardAuth $response $outStr]
set retStr [CkSsh_continueKeyboardAuth $mySsh $response]
Continues keyboard-interactive authentication with the SSH server. The response is typically the password. If multiple responses are required (because there were multiple prompts in the infoRequest XML returned by StartKeyboardAuth), then the response should be formatted as XML (as shown below) otherwise the response simply contains the single response string.
<response> <response1>response to first prompt</response1> <response2>response to second prompt</response2> ... <responseN>response to Nth prompt</responseN> </response>
If the interactive authentication completed with success or failure, the XML response will be:
<success>success_message</success> or <error>error_message</error>If additional steps are required to complete the interactive authentication, then an XML string that provides the name, instruction, and prompts is returned. The XML has the following format:
<infoRequest numPrompts="N"> <name>name_string</name> <instruction>instruction_string</instruction> <prompt1 echo="1_or_0">prompt_string</prompt1> ... <promptN echo="1_or_0">prompt_string</promptN> </infoRequest>
Returns 1 for success, 0 for failure.
ContinueKeyboardAuthAsync (1)
# response is a string
set ret_task [CkSsh_ContinueKeyboardAuthAsync $response]
Creates an asynchronous task to call the ContinueKeyboardAuth method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topDisconnect
Disconnects from the SSH server.
topGetAuthMethods
set status [CkSsh_GetAuthMethods $outStr]
set retStr [CkSsh_getAuthMethods $mySsh]
Queries the SSH server to find out which authentication methods it supports. Returns a string such as "publickey,password,keyboard-interactive".
This method should be called after connecting, but prior to authenticating. The method intentionally disconnects from the server after getting the authentication methods. An application may then connect again and authentication with a chosen method. (In most cases, an application knows in advance the type of authentication to be used, and this method is never called.)
Returns 1 for success, 0 for failure.
GetAuthMethodsAsync (1)
set ret_task [CkSsh_GetAuthMethodsAsync]
Creates an asynchronous task to call the GetAuthMethods method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topGetChannelExitStatus
set retInt [CkSsh_GetChannelExitStatus $channelNum]
Returns the exit status code for a channel. This method should only be called if an exit status has been received. You may check to see if the exit status was received by calling ChannelReceivedExitStatus.
topGetChannelNumber
set retInt [CkSsh_GetChannelNumber $index]
Returns the channel number for the Nth open channel. Indexing begins at 0, and the number of currently open channels is indicated by the NumOpenChannels property. Returns -1 if the index is out of range.
topGetChannelType
# outStr is a CkString (output)
set status [CkSsh_GetChannelType $index $outStr]
set retStr [CkSsh_getChannelType $mySsh $index]
Returns a string describing the channel type for the Nth open channel. Channel types are: "session", "x11", "forwarded-tcpip", and "direct-tcpip".
Returns 1 for success, 0 for failure.
topGetHostKeyFP
# includeKeyType is a boolean
# includeHashName is a boolean
# outStr is a CkString (output)
set status [CkSsh_GetHostKeyFP $hashAlg $includeKeyType $includeHashName $outStr]
set retStr [CkSsh_getHostKeyFP $mySsh $hashAlg $includeKeyType $includeHashName]
Returns the host key fingerprint of the server, which is automatically set after connecting to an SSH/SFTP server. The hashAlg can be any hash algorithm supported by Chilkat, such as "SHA256", "SHA384", "SHA512", "SHA1", "MD5", "SHA3-224", "SHA3-256", "SHA3-384", "SHA3-512", etc.
If both includeKeyType and includeHashName are 1, then the fingerprint string is formatted like this:
ssh-rsa SHA256:L7sQgnpnoBwRoyIYXAFBs8SdSnwtyYmhXs1p/mQDK...If includeKeyType is 1 and includeHashName is 0:
ssh-rsa L7sQgnpnoBwRoyIYXAFBs8SdSnwtyYmhXs1p/mQDK...If includeKeyType is 0:and includeHashName is 1
SHA256:L7sQgnpnoBwRoyIYXAFBs8SdSnwtyYmhXs1p/mQDK...If includeKeyType is 0:and includeHashName is 0:and
L7sQgnpnoBwRoyIYXAFBs8SdSnwtyYmhXs1p/mQDK...
SSH host key types can be: ssh-rsa, ecdsa-*-* (such as ecdsa-sha2-nistp256), ssh-ed25519, and ssh-dss.
Returns 1 for success, 0 for failure.
GetReceivedData
# outBytes is a CkByteData (output)
set status [CkSsh_GetReceivedData $channelNum $outData]
Returns the accumulated data received on the channel indicated by channelNum and clears the channel's internal receive buffer.
Returns 1 for success, 0 for failure.
topGetReceivedDataN
# maxNumBytes is an integer
# outBytes is a CkByteData (output)
set status [CkSsh_GetReceivedDataN $channelNum $maxNumBytes $outData]
Same as GetReceivedData, but a maximum of maxNumBytes bytes is returned.
Returns 1 for success, 0 for failure.
topGetReceivedNumBytes
set retInt [CkSsh_GetReceivedNumBytes $channelNum]
Returns the number of bytes available in the internal receive buffer for the specified channelNum. The received data may be retrieved by calling GetReceivedData or GetReceivedText.
topGetReceivedStderr
# outBytes is a CkByteData (output)
set status [CkSsh_GetReceivedStderr $channelNum $outData]
Returns the accumulated stderr bytes received on the channel indicated by channelNum and clears the channel's internal stderr receive buffer.
Note: If the StderrToStdout property is set to 1, then stderr is automatically redirected to stdout. This is the default behavior. The following methods can be called to retrieve the channel's stdout: GetReceivedData, GetReceivedDataN, GetReceivedText, and GetReceivedTextS.
Returns 1 for success, 0 for failure.
topGetReceivedStderrText
# charset is a string
# outStr is a CkString (output)
set status [CkSsh_GetReceivedStderrText $channelNum $charset $outStr]
set retStr [CkSsh_getReceivedStderrText $mySsh $channelNum $charset]
Returns the accumulated stderr text received on the channel indicated by channelNum and clears the channel's internal receive buffer. The charset indicates the charset of the character data in the internal receive buffer. A list of supported charset values may be found on this page: Supported Charsets.
Returns 1 for success, 0 for failure.
topGetReceivedText
# charset is a string
# outStr is a CkString (output)
set status [CkSsh_GetReceivedText $channelNum $charset $outStr]
set retStr [CkSsh_getReceivedText $mySsh $channelNum $charset]
Returns the accumulated text received on the channel indicated by channelNum and clears the channel's internal receive buffer. The charset indicates the charset of the character data in the internal receive buffer. A list of supported charset values may be found on this page: Supported Charsets.
Returns 1 for success, 0 for failure.
topGetReceivedTextS
# substr is a string
# charset is a string
# outStr is a CkString (output)
set status [CkSsh_GetReceivedTextS $channelNum $substr $charset $outStr]
set retStr [CkSsh_getReceivedTextS $mySsh $channelNum $substr $charset]
The same as GetReceivedText, except only the text up to and including substr is returned. The text returned is removed from the internal receive buffer. If the substr was not found in the internal receive buffer, an empty string is returned and the internal receive buffer is not modified.
Returns 1 for success, 0 for failure.
topLastJsonData
set ret_jsonObject [CkSsh_LastJsonData]
Provides information about what transpired in the last method called. For many methods, there is no information. For some methods, details about what transpired can be obtained via LastJsonData.
Returns NULL on failure
topLoadTaskCaller
set status [CkSsh_LoadTaskCaller $task]
OpenCustomChannel
set retInt [CkSsh_OpenCustomChannel $channelType]
Opens a custom channel with a custom server that uses the SSH protocol. The channelType is application-defined.
If successful, the channel number is returned. This is the number that should be passed to any method requiring a channel number. A -1 is returned upon failure.
topOpenCustomChannelAsync (1)
# channelType is a string
set ret_task [CkSsh_OpenCustomChannelAsync $channelType]
Creates an asynchronous task to call the OpenCustomChannel method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topOpenDirectTcpIpChannel
# targetPort is an integer
set retInt [CkSsh_OpenDirectTcpIpChannel $targetHostname $targetPort]
Open a direct-tcpip channel for port forwarding. Data sent on the channel via ChannelSend* methods is sent to the SSH server and then forwarded to targetHostname:targetPort. The SSH server automatically forwards data received from targetHostname:targetPort to the SSH client. Therefore, calling ChannelRead* and ChannelReceive* methods is equivalent to reading directly from targetHostname:targetPort.
If successful, the channel number is returned. This is the number that should be passed to any method requiring a channel number. A -1 is returned upon failure.
OpenDirectTcpIpChannelAsync (1)
# targetHostname is a string
# targetPort is an integer
set ret_task [CkSsh_OpenDirectTcpIpChannelAsync $targetHostname $targetPort]
Creates an asynchronous task to call the OpenDirectTcpIpChannel method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topOpenSessionChannel
Opens a new session channel. Almost everything you will do with the Chilkat SSH component will involve opening a session channel. The normal sequence of operation is typically this: 1) Connect to the SSH server. 2) Authenticate. 3) Open a session channel. 4) do something on the channel such as opening a shell, execute a command, etc.
If successful, the channel number is returned. This is the number that should be passed to any method requiring a channel number. A -1 is returned upon failure.
topOpenSessionChannelAsync (1)
set ret_task [CkSsh_OpenSessionChannelAsync]
Creates an asynchronous task to call the OpenSessionChannel method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topPeekReceivedText
# charset is a string
# outStr is a CkString (output)
set status [CkSsh_PeekReceivedText $channelNum $charset $outStr]
set retStr [CkSsh_peekReceivedText $mySsh $channelNum $charset]
This is the same as GetReceivedText, except the internal receive buffer is not cleared.
Returns 1 for success, 0 for failure.
topQuickCmdCheck
set retInt [CkSsh_QuickCmdCheck $pollTimeoutMs]
Returns a channel number for a completed command that was previously sent via QuickCmdSend. Returns -1 if no commands have yet completed. The pollTimeoutMs indicates how long to wait (in milliseconds) for any command in progress (on any channel) to complete before returning -1.
Returns -2 if an error occurred (for example, if the connection to the SSH server was lost while checking for responses).
QuickCmdCheckAsync (1)
# pollTimeoutMs is an integer
set ret_task [CkSsh_QuickCmdCheckAsync $pollTimeoutMs]
Creates an asynchronous task to call the QuickCmdCheck method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topQuickCmdSend
set retInt [CkSsh_QuickCmdSend $command]
Sends a command and returns the channel number for the command that has started. This is the equivalent of calling OpenSessionChannel, followed by SendReqExec. A value of -1 is returned on failure.
The ReqExecCharset property controls the charset used for the command that is sent.
Important: When reporting problems, please send the full contents of the LastErrorText property to support@chilkatsoft.com.
QuickCmdSendAsync (1)
# command is a string
set ret_task [CkSsh_QuickCmdSendAsync $command]
Creates an asynchronous task to call the QuickCmdSend method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topQuickCommand
# charset is a string
# outStr is a CkString (output)
set status [CkSsh_QuickCommand $command $charset $outStr]
set retStr [CkSsh_quickCommand $mySsh $command $charset]
Simplified method for executing a remote command and getting the complete output. This is the equivalent of calling OpenSessionChannel, followed by SendReqExec, then ChannelReceiveToClose, and finally GetReceivedText.
The charset indicates the charset of the command's output (such as "utf-8" or "ansi"). A list of supported charset values may be found on this page: Supported Charsets.
The ReqExecCharset property controls the charset used for the command that is sent.
Important: When reporting problems, please send the full contents of the LastErrorText property to support@chilkatsoft.com.
Returns 1 for success, 0 for failure.
QuickCommandAsync (1)
# command is a string
# charset is a string
set ret_task [CkSsh_QuickCommandAsync $command $charset]
Creates an asynchronous task to call the QuickCommand method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topQuickShell
Simplified method for starting a remote shell session. It is the equivalent of calling OpenSessionChannel, followed by SendReqPty, and finally SendReqShell.
Returns the SSH channel number for the session, or -1 if not successful.
Important: When reporting problems, please send the full contents of the LastErrorText property to support@chilkatsoft.com.
QuickShellAsync (1)
set ret_task [CkSsh_QuickShellAsync]
Creates an asynchronous task to call the QuickShell method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topReKey
Initiates a re-key with the SSH server. The ReKey method does not return until the key re-exchange is complete.
RFC 4253 (the SSH Transport Layer Protocol) recommends that keys be changed after each gigabyte of transmitted data or after each hour of connection time, whichever comes sooner. Key re-exchange is a public-key operation and requires a fair amount of processing power and should not be performed too often. Either side (client or server) may initiate a key re-exchange at any time.
In most cases, a server will automatically initiate key re-exchange whenever it deems necessary, and the Chilkat SSH component handles these transparently. For example, if the Chilkat SSH component receives a re-key message from the server while in the process of receiving data on a channel, it will automatically handle the key re-exchange and the application will not even realize that an underlying key re-exchange occurred.
Returns 1 for success, 0 for failure.
topReKeyAsync (1)
set ret_task [CkSsh_ReKeyAsync]
Creates an asynchronous task to call the ReKey method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendIgnore
Sends an IGNORE message to the SSH server. This is one way of verifying that the connection to the SSH server is open and valid. The SSH server does not respond to an IGNORE message. It simply ignores it. IGNORE messages are not associated with a channel (in other words, you do not need to first open a channel prior to sending an IGNORE message).
Returns 1 for success, 0 for failure.
SendIgnoreAsync (1)
set ret_task [CkSsh_SendIgnoreAsync]
Creates an asynchronous task to call the SendIgnore method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqExec
# commandLine is a string
set status [CkSsh_SendReqExec $channelNum $commandLine]
Initiates execution of a command on the channel specified by channelNum. The commandLine contains the full command line including any command-line parameters (just as you would type the command at a shell prompt).
This is the equivalent of running a command on a remote server via the "rexec" command. See rexec command. It is not a shell session.
Important: A channel only exists for a single request. You may not call SendReqExec multiple times on the same open channel. The reason is that the SSH server automatically closes the channel at the end of the exec. The solution is to call OpenSessionChannel to get a new channel, and then call SendReqExec using the new channel. It is OK to have more than one channel open simultaneously.
Charset: The ReqExecCharset property has been added in version 9.5.0.47. This can be set to control the character encoding of the command sent to the server. The default is ANSI. A likely alternative value is "utf-8".
Returns 1 for success, 0 for failure.
SendReqExecAsync (1)
# channelNum is an integer
# commandLine is a string
set ret_task [CkSsh_SendReqExecAsync $channelNum $commandLine]
Creates an asynchronous task to call the SendReqExec method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqPty
# termType is a string
# widthInChars is an integer
# heightInChars is an integer
# widthInPixels is an integer
# heightInPixels is an integer
set status [CkSsh_SendReqPty $channelNum $termType $widthInChars $heightInChars $widthInPixels $heightInPixels]
Requests a pseudo-terminal for a session channel. If the termType is a character oriented terminal ("vt100" for example), then widthInChars and heightInChars would be set to non-zero values, while widthInPixels and heightInPixels may be set to 0. If termType is pixel-oriented, such as "xterm", the reverse is true (i.e. set widthInPixels and heightInPixels, but set widthInChars and heightInChars equal to 0).
In most cases, you probably don't even want terminal emulation. In that case, try setting termType = "dumb". Terminal emulation causes terminal escape sequences to be included with shell command output. A "dumb" terminal should have no escape sequences.
Some SSH servers allow a shell to be started (via the SendReqShell method) without the need to first request a pseudo-terminal. The normal sequence for starting a remote shell is as follows:
1) Connect 2) Authenticate 3) OpenSessionChannel 4) Request a PTY via this method if necessary. 5) Start a shell by calling SendReqShell
Returns 1 for success, 0 for failure.
SendReqPtyAsync (1)
# channelNum is an integer
# termType is a string
# widthInChars is an integer
# heightInChars is an integer
# widthInPixels is an integer
# heightInPixels is an integer
set ret_task [CkSsh_SendReqPtyAsync $channelNum $termType $widthInChars $heightInChars $widthInPixels $heightInPixels]
Creates an asynchronous task to call the SendReqPty method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqSetEnv
# name is a string
# value is a string
set status [CkSsh_SendReqSetEnv $channelNum $name $value]
SendReqSetEnvAsync (1)
# channelNum is an integer
# name is a string
# value is a string
set ret_task [CkSsh_SendReqSetEnvAsync $channelNum $name $value]
Creates an asynchronous task to call the SendReqSetEnv method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqShell
set status [CkSsh_SendReqShell $channelNum]
Starts a shell on an open session channel. Some SSH servers require that a PTY (pseudo-terminal) first be requested prior to starting a shell. In that case, call SendReqPty prior to calling this method. Once a shell is started, commands may be sent by calling ChannelSendString. (Don't forget to terminate commands with a CRLF).
Returns 1 for success, 0 for failure.
SendReqShellAsync (1)
# channelNum is an integer
set ret_task [CkSsh_SendReqShellAsync $channelNum]
Creates an asynchronous task to call the SendReqShell method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqSignal
# signalName is a string
set status [CkSsh_SendReqSignal $channelNum $signalName]
Delivers a signal to the remote process/service. signalName is one of the following: ABRT, ALRM, FPE, HUP, ILL, INT, KILL, PIPE, QUIT, SEGV, TERM, USR1, USR2. (Obviously, these are UNIX signals, so the remote SSH server would need to be a Unix/Linux system.)
Returns 1 for success, 0 for failure.
topSendReqSignalAsync (1)
# channelNum is an integer
# signalName is a string
set ret_task [CkSsh_SendReqSignalAsync $channelNum $signalName]
Creates an asynchronous task to call the SendReqSignal method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqSubsystem
# subsystemName is a string
set status [CkSsh_SendReqSubsystem $channelNum $subsystemName]
Executes a pre-defined subsystem. The SFTP protocol (Secure File Transfer Protocol) is started by the Chilkat SFTP component by starting the "sftp" subsystem.
Returns 1 for success, 0 for failure.
topSendReqSubsystemAsync (1)
# channelNum is an integer
# subsystemName is a string
set ret_task [CkSsh_SendReqSubsystemAsync $channelNum $subsystemName]
Creates an asynchronous task to call the SendReqSubsystem method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqWindowChange
# widthInChars is an integer
# heightInRows is an integer
# pixWidth is an integer
# pixHeight is an integer
set retBool [CkSsh_SendReqWindowChange $channelNum $widthInChars $heightInRows $pixWidth $pixHeight]
When the client-side window (terminal) size changes, this message may be sent to the server to inform it of the new size.
topSendReqWindowChangeAsync (1)
# channelNum is an integer
# widthInChars is an integer
# heightInRows is an integer
# pixWidth is an integer
# pixHeight is an integer
set ret_task [CkSsh_SendReqWindowChangeAsync $channelNum $widthInChars $heightInRows $pixWidth $pixHeight]
Creates an asynchronous task to call the SendReqWindowChange method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqX11Forwarding
# singleConnection is a boolean
# authProt is a string
# authCookie is a string
# screenNum is an integer
set retBool [CkSsh_SendReqX11Forwarding $channelNum $singleConnection $authProt $authCookie $screenNum]
Allows the client to send an X11 forwarding request to the server. Chilkat only provides this functionality because it is a message defined in the SSH connection protocol. Chilkat has no advice for when or why it would be needed.
topSendReqX11ForwardingAsync (1)
# channelNum is an integer
# singleConnection is a boolean
# authProt is a string
# authCookie is a string
# screenNum is an integer
set ret_task [CkSsh_SendReqX11ForwardingAsync $channelNum $singleConnection $authProt $authCookie $screenNum]
Creates an asynchronous task to call the SendReqX11Forwarding method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSendReqXonXoff
# clientCanDo is a boolean
set retBool [CkSsh_SendReqXonXoff $channelNum $clientCanDo]
This method should be ignored and not used.
topSendReqXonXoffAsync (1)
# channelNum is an integer
# clientCanDo is a boolean
set ret_task [CkSsh_SendReqXonXoffAsync $channelNum $clientCanDo]
Creates an asynchronous task to call the SendReqXonXoff method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topSetAllowedAlgorithms
set status [CkSsh_SetAllowedAlgorithms $json]
Provides a way to specific the exact set of algorithms allowed for the connection.
Returns 1 for success, 0 for failure.
SetTtyMode
# ttyValue is an integer
set retBool [CkSsh_SetTtyMode $ttyName $ttyValue]
Sets a TTY mode that is included in the SendReqPty method call. Most commonly, it is not necessary to call this method at all. Chilkat has no recommendations or expertise as to why or when a particular mode might be useful. This capability is provided because it is defined in the SSH connection protocol specification.
This method can be called multiple times to set many terminal mode flags (one per call).
The ttyValue is an integer, typically 0 or 1. Valid ttyName flag names include: VINTR, VQUIT, VERASE, VKILL, VEOF, VEOL, VEOL2, VSTART, VSTOP, VSUSP, VDSUSP, VREPRINT, VWERASE, VLNEXT, VFLUSH, VSWTCH, VSTATUS, VDISCARD, IGNPAR, PARMRK, INPCK, ISTRIP, INLCR, IGNCR, ICRNL, IUCLC, IXON, IXANY, IXOFF, IMAXBEL, ISIG, ICANON, XCASE, ECHO, ECHOE, ECHOK, ECHONL, NOFLSH, TOSTOP, IEXTEN, ECHOCTL, ECHOKE, PENDIN, OPOST, OLCUC, ONLCR, OCRNL, ONOCR, ONLRET, CS7, CS8, PARENB, PARODD, TTY_OP_ISPEED, TTY_OP_OSPEED
topStartKeyboardAuth
# outStr is a CkString (output)
set status [CkSsh_StartKeyboardAuth $login $outStr]
set retStr [CkSsh_startKeyboardAuth $mySsh $login]
Begins keyboard-interactive authentication with the SSH server. Returns an XML string providing the name, instruction, and prompts. The XML has the following format:
<infoRequest numPrompts="N"> <name>name_string</name> <instruction>instruction_string</instruction> <prompt1 echo="1_or_0">prompt_string</prompt1> ... <promptN echo="1_or_0">prompt_string</promptN> </infoRequest>
If the authentication immediately succeeds because no password is required, or immediately fails, the XML response can be:
<success>success_message</success> or <error>error_message</error>
Returns 1 for success, 0 for failure.
StartKeyboardAuthAsync (1)
# login is a string
set ret_task [CkSsh_StartKeyboardAuthAsync $login]
Creates an asynchronous task to call the StartKeyboardAuth method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
topWaitForChannelMessage
set retInt [CkSsh_WaitForChannelMessage $pollTimeoutMs]
The pollTimeoutMs is the number of milliseconds to wait. To poll, pass a value of 0 in pollTimeoutMs. Waits for an incoming message on any channel. This includes data, EOF, CLOSE, etc. If a message arrives in the alotted time, the channel number is returned. A value of -1 is returned for a timeout, and -2 for any other errors such as if the connection is lost.
Note: If a channel number is returned, the message must still be read by calling a method such as ChannelRead, ChannelReceiveUntilMatch, etc. Once the message is actually received, it may be collected by calling GetReceivedText, GetReceivedData, etc.
topWaitForChannelMessageAsync (1)
# pollTimeoutMs is an integer
set ret_task [CkSsh_WaitForChannelMessageAsync $pollTimeoutMs]
Creates an asynchronous task to call the WaitForChannelMessage method with the arguments provided. (Async methods are available starting in Chilkat v9.5.0.52.)
Returns NULL on failure
top