Secure Shell (SSH) is a network protocol for secure remote login to another system over the internet by connecting an SSH client to an SSH server. SSH provides a mechanism for establishing a secure connection between the client and the remote server, which authenticate each other and exchange messages. It employs different forms of symmetrical encryption, asymmetrical encryption, and hashing. The SSH client initiates a connection and uses public key cryptography to verify the identity of the SSH server.
This page demonstrates how to connect a Delphi application to Oracle with UniDAC using SSH as the encryption method.
You need an SSH client and an SSH server to replicate the steps on this page. You can create them using SecureBridge, a solution provided by Devart. It enables you to embed the SSH client functionality into your Delphi application and, if needed, configure an SSH server. For more information, see the SecureBridge tutorial on configuring an SSH server.
You can also build the SSHServer demo project, which is distributed with SecureBridge.
Connect Using SecureBridge
Prerequisites:
- Install SecureBridge.
- Install the TCRSSHIOHandler component in RAD Studio to bind UniDAC with SecureBridge. For instructions, see
Readme.html—by default, it is located in C:\Users\<user>\Documents\Devart\UniDAC for RAD Studio XX\Demos\TechnologySpecific\SecureBridge.
- In RAD Studio, select File > New > Windows VCL Application - Delphi.

- Place the following components from the Palette on the form:
- TDBGrid
- TButton
- TCRSSHIOHandler
- TOracleUniProvider
- TUniConnection
- TUniDataSource
- TUniQuery
- TScFileStorage
- TScSSHClient

- Select the TCRSSHIOHandler component and set the Client property to the instance of TScSSHClient (ScSSHClient1).

- Select the TDBGrid component and, in the Object Inspector, set the DataSource property to the instance of TUniDataSource (UniDataSource1).

- Select the TUniDataSource component and set the DataSet property to the instance of TUniQuery (UniQuery1).

- Select the TScFileStorage component and, in the Path property, specify the directory where information about keys and users is stored.

- Select the TScSSHClient component and assign values to the following properties:
- Authentication – Select the value depending on the authentication method applicable for your SSH server: atPassword or atPublicKey.
- HostKeyName – For public key authentication, specify the filename of the SSH server public key.
- Hostname – Enter the host name or IP address of the SSH server.
- KeyStorage – Set the property to the instance of TScFileStorage (ScFileStorage1).
- Password – For password authentication, enter the password for the account on the SSH server.
- Port – Specify the SSH port.
- PrivateKeyName – For public key authentication, specify the filename of the client private key.
- User – Enter the username for the account on the SSH server.
If you are connecting to Oracle Cloud, leave the Password and HostKeyName properties empty—only specify PrivateKeyName and User (the default username is opc).

- Select the TUniConnection component and set the IOHandler property to the instance of TCRSSHIOHandler (CRSSHIOHandler1).

- Double-click the TUniConnection component.
- On the Options tab, fill out the fields:
- Provider – Select Oracle.
- Direct – Select True.

- On the Connect tab, fill out the fields:
- Provider – Select Oracle.
- Server – Enter the host name or IP address of the Oracle server, port, and service name.
- Username – Enter the username for the account on the Oracle server.
- Password – Enter the password for the account on the Oracle server.
- Click Connect to test the connection to the Oracle server, then click OK to close the dialog.

- Select the TUniQuery component and set the Connection property to the instance of TUniConnection (UniConnection1).
- Double-click the TUniQuery component, enter a SQL query to be run against the Oracle database, and click OK.

- Double-click the TButton component and add code to call the Open method on the TUniQuery component instance to activate the dataset when the button is clicked.

- Press F9 to compile and run the application.
- In the form that appears, click Button1 to run the query. Data appears in the grid.

Connect Using Any Third-Party SSH Tunnel
It is not mandatory to use SecureBridge and its components—you can use any other server that implements the SSH protocol.