Sample code for 30+ languages & platforms
Android™

Sign JSON to Create CAdES P7S Bytes

See more CAdES Examples

Demonstrates how to sign JSON using a certificate + private key from a .p12/.pfx to create a CAdES P7S byte array.

Chilkat Android™ Downloads

Android™
// Important: Don't forget to include the call to System.loadLibrary
// as shown at the bottom of this code sample.
package com.test;

import android.app.Activity;
import com.chilkatsoft.*;

import android.widget.TextView;
import android.os.Bundle;

public class SimpleActivity extends Activity {

  private static final String TAG = "Chilkat";

  // Called when the activity is first created.
  @Override
  public void onCreate(Bundle savedInstanceState) {
    super.onCreate(savedInstanceState);

    boolean success = false;

    //  This example assumes the Chilkat API to have been previously unlocked.
    //  See Global Unlock Sample for sample code.

    CkCrypt2 crypt = new CkCrypt2();

    CkCert cert = new CkCert();
    success = cert.LoadPfxFile("qa_data/pfx/cert_test123.pfx","test123");
    if (success != true) {
        Log.i(TAG, cert.lastErrorText());
        return;
        }

    //  Tell the crypt component to use this cert.
    success = crypt.SetSigningCert(cert);
    if (success != true) {
        Log.i(TAG, crypt.lastErrorText());
        return;
        }

    //  The CadesEnabled property applies to all methods that create PKCS7 signatures. 
    //  To create a CAdES-BES signature, set this property equal to true. 
    crypt.put_CadesEnabled(true);

    crypt.put_HashAlgorithm("sha256");

    CkJsonObject jsonSigningAttrs = new CkJsonObject();
    jsonSigningAttrs.UpdateInt("contentType",1);
    jsonSigningAttrs.UpdateInt("signingTime",1);
    jsonSigningAttrs.UpdateInt("messageDigest",1);
    jsonSigningAttrs.UpdateInt("signingCertificateV2",1);
    crypt.put_SigningAttributes(jsonSigningAttrs.emit());

    //  By default, all the certs in the chain of authentication are included in the signature.
    //  If desired, we can choose to only include the signing certificate:
    crypt.put_IncludeCertChain(false);

    //  Create the CAdES-BES attached signature, which contains the original data.
    crypt.put_Charset("utf-8");
    CkByteData cadesP7s = new CkByteData();
    success = crypt.OpaqueSignString("{ \"abc\": 123}",cadesP7s);
    if (crypt.get_LastMethodSuccess() == false) {
        Log.i(TAG, crypt.lastErrorText());
        return;
        }

    //  Verify the signature and extract the original JSON:
    String originalJson = crypt.opaqueVerifyString(cadesP7s);
    if (crypt.get_LastMethodSuccess() == false) {
        Log.i(TAG, crypt.lastErrorText());
        return;
        }

    Log.i(TAG, "Original JSON: " + originalJson);

    Log.i(TAG, "Success!");

  }

  static {
      System.loadLibrary("chilkat");

      // Note: If the incorrect library name is passed to System.loadLibrary,
      // then you will see the following error message at application startup:
      //"The application <your-application-name> has stopped unexpectedly. Please try again."
  }
}