Sample code for 30+ languages & platforms
Unicode C++

Alliance Access LAU Sign Message (XML Signature using HMAC-SHA-256)

See more XML Digital Signatures Examples

Demonstrates how to sign XML according to the requirements for Alliance Access LAU (Local Authentication) using HMAC-SHA-256.

Chilkat Unicode C++ Downloads

Unicode C++
#include <CkXmlW.h>
#include <CkXmlDSigGenW.h>
#include <CkStringBuilderW.h>

void ChilkatSample(void)
    {
    bool success = false;

    //  This example requires the Chilkat API to have been previously unlocked.
    //  See Global Unlock Sample for sample code.

    //  We begin with this message:

    //  <?xml version="1.0" encoding="utf-8"?>
    //  <Saa:DataPDU xmlns:Saa="urn:swift:saa:xsd:saa.2.0" xmlns:Sw="urn:swift:snl:ns.Sw"
    //    xmlns:SwGbl="urn:swift:snl:ns.SwGbl" xmlns:SwInt="urn:swift:snl:ns:SwInt" xmlns:SwSec="url:swift:snl:ns.SwSec">
    //      <Saa:Revision>2.0.7</Saa:Revision>
    //      <Saa:Header>
    //          <Saa:Message>
    //  			<test>blah blah</test>
    //          </Saa:Message>
    //      </Saa:Header>
    //      <Saa:Body>...</Saa:Body>
    //      <Saa:LAU>
    //      </Saa:LAU>
    //  </Saa:DataPDU>

    //  And we want so sign to create this as the result:
    //  The signed XML we'll create will not be indented and pretty-printed like this.
    //  Instead, we'll use the "CompactSignedXml" behavior to produce compact single-line XML.

    //  <?xml version="1.0" encoding="utf-8"?>
    //  <Saa:DataPDU xmlns:Saa="urn:swift:saa:xsd:saa.2.0" xmlns:Sw="urn:swift:snl:ns.Sw"
    //    xmlns:SwGbl="urn:swift:snl:ns.SwGbl" xmlns:SwInt="urn:swift:snl:ns:SwInt" xmlns:SwSec="url:swift:snl:ns.SwSec">
    //      <Saa:Revision>2.0.7</Saa:Revision>
    //      <Saa:Header>
    //          <Saa:Message>
    //  			<test>blah blah</test>
    //          </Saa:Message>
    //      </Saa:Header>
    //      <Saa:Body>...</Saa:Body>
    //      <Saa:LAU>
    //          <ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
    //              <ds:SignedInfo>
    //                  <ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
    //                  <ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#hmac-sha256"/>
    //                  <ds:Reference URI="">
    //                      <ds:Transforms>
    //                          <ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
    //                          <ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
    //                      </ds:Transforms>
    //                      <ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
    //                      <ds:DigestValue>Y7oScHnYOUQvni/TSzZbDec+HR+mWIFH149GXpwj1Ws=</ds:DigestValue>
    //                  </ds:Reference>
    //              </ds:SignedInfo>
    //              <ds:SignatureValue>6ynF/FcwbPsHrtlj3h2agJigdnvpbO6hOzKSRGzqkw0=</ds:SignatureValue>
    //          </ds:Signature>
    //      </Saa:LAU>
    //  </Saa:DataPDU>

    success = true;

    //  Create the XML to be signed...

    //  (The XML does not need to be created this way.  It can be loaded from a file or a string.)
    //  Also, use this online tool to generate code from sample XML: 
    //  Generate Code to Create XML

    CkXmlW xmlToSign;
    xmlToSign.put_Tag(L"Saa:DataPDU");
    xmlToSign.AddAttribute(L"xmlns:Saa",L"urn:swift:saa:xsd:saa.2.0");
    xmlToSign.AddAttribute(L"xmlns:Sw",L"urn:swift:snl:ns.Sw");
    xmlToSign.AddAttribute(L"xmlns:SwGbl",L"urn:swift:snl:ns.SwGbl");
    xmlToSign.AddAttribute(L"xmlns:SwInt",L"urn:swift:snl:ns:SwInt");
    xmlToSign.AddAttribute(L"xmlns:SwSec",L"url:swift:snl:ns.SwSec");
    xmlToSign.UpdateChildContent(L"Saa:Revision",L"2.0.7");
    xmlToSign.UpdateChildContent(L"Saa:Header|Saa:Message|test",L"blah blah");
    xmlToSign.UpdateChildContent(L"Saa:Body",L"...");
    xmlToSign.UpdateChildContent(L"Saa:LAU",L"");

    CkXmlDSigGenW gen;

    gen.put_SigLocation(L"Saa:DataPDU|Saa:LAU");
    gen.put_SigLocationMod(0);
    gen.put_SigNamespacePrefix(L"ds");
    gen.put_SigNamespaceUri(L"http://www.w3.org/2000/09/xmldsig#");
    gen.put_SignedInfoCanonAlg(L"EXCL_C14N");
    gen.put_SignedInfoDigestMethod(L"sha256");

    //  You may alternatively choose "IndentedSignature" instead of "CompactSignedXml"
    gen.put_Behaviors(L"CompactSignedXml");

    gen.AddSameDocRef(L"",L"sha256",L"EXCL_C14N",L"",L"");

    //  Specify the HMAC key.
    //  For example, if the HMAC key is to be the us-ascii bytes of the string "secret",
    //  the HMAC key can be set in any of the following ways (and also more ways not shown here..)
    gen.SetHmacKey(L"secret",L"ascii");
    //  or
    gen.SetHmacKey(L"c2VjcmV0",L"base64");
    //  or
    gen.SetHmacKey(L"736563726574",L"hex");

    //  Sign the XML..
    CkStringBuilderW sbXml;
    xmlToSign.GetXmlSb(sbXml);
    success = gen.CreateXmlDSigSb(sbXml);
    if (success != true) {
        wprintf(L"%s\n",gen.lastErrorText());
        return;
    }

    //  Save the signed XML to a file.
    success = sbXml.WriteFile(L"qa_output/signedXml.xml",L"utf-8",false);

    //  Show the signed XML.
    wprintf(L"%s\n",sbXml.getAsString());
    }