B4X
B4X
Create JWS with Multiple Signatures using the General JSON Serialization Format
See more JSON Web Signatures (JWS) Examples
Creates a JSON Web Signature (JWS) containing 3 signatures and output using the general JSON serialization format.Chilkat supports all of the following JWS algorithms:
+--------------+-------------------------------+--------------------+ | "alg" Param | Digital Signature or MAC | Implementation | | Value | Algorithm | Requirements | +--------------+-------------------------------+--------------------+ | HS256 | HMAC using SHA-256 | Required | | HS384 | HMAC using SHA-384 | Optional | | HS512 | HMAC using SHA-512 | Optional | | RS256 | RSASSA-PKCS1-v1_5 using | Recommended | | | SHA-256 | | | RS384 | RSASSA-PKCS1-v1_5 using | Optional | | | SHA-384 | | | RS512 | RSASSA-PKCS1-v1_5 using | Optional | | | SHA-512 | | | ES256 | ECDSA using P-256 and SHA-256 | Recommended+ | | ES384 | ECDSA using P-384 and SHA-384 | Optional | | ES512 | ECDSA using P-521 and SHA-512 | Optional | | PS256 | RSASSA-PSS using SHA-256 and | Optional | | | MGF1 with SHA-256 | | | PS384 | RSASSA-PSS using SHA-384 and | Optional | | | MGF1 with SHA-384 | | | PS512 | RSASSA-PSS using SHA-512 and | Optional | | | MGF1 with SHA-512 | | +--------------+-------------------------------+--------------------+
Note: This example requires Chilkat v9.5.0.66 or greater.
Chilkat B4X Downloads
Dim success As Boolean = False
' This requires the Chilkat API to have been previously unlocked.
' See Global Unlock Sample for sample code.
' Note: This example requires Chilkat v9.5.0.66 or greater.
' The JWS to be created will contain three signatures.
' The 1st will use an ECC key, the 2nd an RSA key, and the 3rd an HMAC key.
' Prepare each key..
' ---------------------------------------------------
' Use the following RSA key loaded from JWK format.
Dim sbRsaJwk As ChilkatStringBuilder
sbRsaJwk.Initialize
sbRsaJwk.Append("{" & Chr(34) & "kty" & Chr(34) & ":" & Chr(34) & "RSA" & Chr(34) & ",")
sbRsaJwk.Append(Chr(34) & "n" & Chr(34) & ":" & Chr(34) & "ofgWCuLjybRlzo0tZWJjNiuSfb4p4fAkd_wWJcyQoTbji9k0l8W26mPddx")
sbRsaJwk.Append("HmfHQp-Vaw-4qPCJrcS2mJPMEzP1Pt0Bm4d4QlL-yRT-SFd2lZS-pCgNMs")
sbRsaJwk.Append("D1W_YpRPEwOWvG6b32690r2jZ47soMZo9wGzjb_7OMg0LOL-bSf63kpaSH")
sbRsaJwk.Append("SXndS5z5rexMdbBYUsLA9e-KXBdQOS-UTo7WTBEMa2R2CapHg665xsmtdV")
sbRsaJwk.Append("MTBQY4uDZlxvb3qCo5ZwKh9kG4LT6_I5IhlJH7aGhyxXFvUK-DWNmoudF8")
sbRsaJwk.Append("NAco9_h9iaGNj8q2ethFkMLs91kzk2PAcDTW9gb54h4FRWyuXpoQ" & Chr(34) & ",")
sbRsaJwk.Append(Chr(34) & "e" & Chr(34) & ":" & Chr(34) & "AQAB" & Chr(34) & ",")
sbRsaJwk.Append(Chr(34) & "d" & Chr(34) & ":" & Chr(34) & "Eq5xpGnNCivDflJsRQBXHx1hdR1k6Ulwe2JZD50LpXyWPEAeP88vLNO97I")
sbRsaJwk.Append("jlA7_GQ5sLKMgvfTeXZx9SE-7YwVol2NXOoAJe46sui395IW_GO-pWJ1O0")
sbRsaJwk.Append("BkTGoVEn2bKVRUCgu-GjBVaYLU6f3l9kJfFNS3E0QbVdxzubSu3Mkqzjkn")
sbRsaJwk.Append("439X0M_V51gfpRLI9JYanrC4D4qAdGcopV_0ZHHzQlBjudU2QvXt4ehNYT")
sbRsaJwk.Append("CBr6XCLQUShb1juUO1ZdiYoFaFQT5Tw8bGUl_x_jTj3ccPDVZFD9pIuhLh")
sbRsaJwk.Append("BOneufuBiB4cS98l2SR_RQyGWSeWjnczT0QU91p1DhOVRuOopznQ" & Chr(34) & ",")
sbRsaJwk.Append(Chr(34) & "p" & Chr(34) & ":" & Chr(34) & "4BzEEOtIpmVdVEZNCqS7baC4crd0pqnRH_5IB3jw3bcxGn6QLvnEtfdUdi")
sbRsaJwk.Append("YrqBdss1l58BQ3KhooKeQTa9AB0Hw_Py5PJdTJNPY8cQn7ouZ2KKDcmnPG")
sbRsaJwk.Append("BY5t7yLc1QlQ5xHdwW1VhvKn-nXqhJTBgIPgtldC-KDV5z-y2XDwGUc" & Chr(34) & ",")
sbRsaJwk.Append(Chr(34) & "q" & Chr(34) & ":" & Chr(34) & "uQPEfgmVtjL0Uyyx88GZFF1fOunH3-7cepKmtH4pxhtCoHqpWmT8YAmZxa")
sbRsaJwk.Append("ewHgHAjLYsp1ZSe7zFYHj7C6ul7TjeLQeZD_YwD66t62wDmpe_HlB-TnBA")
sbRsaJwk.Append("-njbglfIsRLtXlnDzQkv5dTltRJ11BKBBypeeF6689rjcJIDEz9RWdc" & Chr(34) & ",")
sbRsaJwk.Append(Chr(34) & "dp" & Chr(34) & ":" & Chr(34) & "BwKfV3Akq5_MFZDFZCnW-wzl-CCo83WoZvnLQwCTeDv8uzluRSnm71I3Q")
sbRsaJwk.Append("CLdhrqE2e9YkxvuxdBfpT_PI7Yz-FOKnu1R6HsJeDCjn12Sk3vmAktV2zb")
sbRsaJwk.Append("34MCdy7cpdTh_YVr7tss2u6vneTwrA86rZtu5Mbr1C1XsmvkxHQAdYo0" & Chr(34) & ",")
sbRsaJwk.Append(Chr(34) & "dq" & Chr(34) & ":" & Chr(34) & "h_96-mK1R_7glhsum81dZxjTnYynPbZpHziZjeeHcXYsXaaMwkOlODsWa")
sbRsaJwk.Append("7I9xXDoRwbKgB719rrmI2oKr6N3Do9U0ajaHF-NKJnwgjMd2w9cjz3_-ky")
sbRsaJwk.Append("NlxAr2v4IKhGNpmM5iIgOS1VZnOZ68m6_pbLBSp3nssTdlqvd0tIiTHU" & Chr(34) & ",")
sbRsaJwk.Append(Chr(34) & "qi" & Chr(34) & ":" & Chr(34) & "IYd7DHOhrWvxkwPQsRM2tOgrjbcrfvtQJipd-DlcxyVuuM9sQLdgjVk2o")
sbRsaJwk.Append("y26F0EmpScGLq2MowX7fhd_QJQ3ydy5cY7YIBi87w93IKLEdfnbJtoOPLU")
sbRsaJwk.Append("W0ITrJReOgo1cq9SbsxYawBgfp_gh6A5603k2-ZQwVK0JKSHuLFkuQ3U" & Chr(34))
sbRsaJwk.Append("}")
Dim rsaKey As ChilkatPrivateKey
rsaKey.Initialize("rsaKey")
' Note: This example loads the RSA key from JWK format. Any format can be loaded
' into the private key object. (See the online reference documentation..)
success = rsaKey.LoadJwk(sbRsaJwk.GetAsString)
If success <> True Then
Log(rsaKey.LastErrorText)
Return
End If
' ---------------------------------------------------
' Use the following ECC key loaded from JWK format.
Dim sbEccJwk As ChilkatStringBuilder
sbEccJwk.Initialize
sbEccJwk.Append("{" & Chr(34) & "kty" & Chr(34) & ":" & Chr(34) & "EC" & Chr(34) & ",")
sbEccJwk.Append(Chr(34) & "crv" & Chr(34) & ":" & Chr(34) & "P-256" & Chr(34) & ",")
sbEccJwk.Append(Chr(34) & "x" & Chr(34) & ":" & Chr(34) & "f83OJ3D2xF1Bg8vub9tLe1gHMzV76e8Tus9uPHvRVEU" & Chr(34) & ",")
sbEccJwk.Append(Chr(34) & "y" & Chr(34) & ":" & Chr(34) & "x_FEzRu9m36HLN_tue659LNpXW6pCyStikYjKIWI5a0" & Chr(34) & ",")
sbEccJwk.Append(Chr(34) & "d" & Chr(34) & ":" & Chr(34) & "jpsQnnGQmL-YBIffH1136cspYG6-0iY7X1fCE9-E9LI" & Chr(34))
sbEccJwk.Append("}")
Dim eccKey As ChilkatPrivateKey
eccKey.Initialize("eccKey")
' Note: This example loads the ECDSA key from JWK format. Any format can be loaded
' into the private key object. (See the online reference documentation..)
success = eccKey.LoadJwk(sbEccJwk.GetAsString)
If success <> True Then
Log(eccKey.LastErrorText)
Return
End If
' ---------------------------------------------------
' The HMAC key (in base64url format)
Dim hmacKey As String = "AyM1SysPpbyDfgZld3umj1qzKObwVMkoqQ-EstJQLr_T-1qS0gZH75aKtMN3Yj0iPS4hcgUuTwjAzZr1Z9CAow"
' ---------------------------------------------------
' Prepare the headers..
' RSASSA-PKCS1-v1_5 SHA-256
Dim jwsProtHdr0 As ChilkatJsonObject
jwsProtHdr0.Initialize
jwsProtHdr0.AppendString("alg", "RS256")
Dim jwsUnprotHdr0 As ChilkatJsonObject
jwsUnprotHdr0.Initialize
jwsUnprotHdr0.AppendString("kid", "myRsaKey")
' ECDSA using P-256 and SHA-256
Dim jwsProtHdr1 As ChilkatJsonObject
jwsProtHdr1.Initialize
jwsProtHdr1.AppendString("alg", "ES256")
Dim jwsUnprotHdr1 As ChilkatJsonObject
jwsUnprotHdr1.Initialize
jwsUnprotHdr1.AppendString("kid", "myEcKey")
' HMAC using SHA-256
Dim jwsProtHdr2 As ChilkatJsonObject
jwsProtHdr2.Initialize
jwsProtHdr2.AppendString("alg", "HS256")
Dim jwsUnprotHdr2 As ChilkatJsonObject
jwsUnprotHdr2.Initialize
jwsUnprotHdr2.AppendString("kid", "myMacKey")
' ---------------------------------------------------
' First set the JWS headers, keys, and payload, then we'll create the JWS...
Dim jws As ChilkatJws
jws.Initialize
jws.SetProtectedHeader(0, jwsProtHdr0)
jws.SetUnprotectedHeader(0, jwsUnprotHdr0)
jws.SetProtectedHeader(1, jwsProtHdr1)
jws.SetUnprotectedHeader(1, jwsUnprotHdr1)
jws.SetProtectedHeader(2, jwsProtHdr2)
jws.SetUnprotectedHeader(2, jwsUnprotHdr2)
jws.SetPrivateKey(0, rsaKey)
jws.SetPrivateKey(1, eccKey)
jws.SetMacKey(2, hmacKey, "base64url")
Dim bIncludeBom As Boolean = False
Dim payloadStr As String = "In our village, folks say God crumbles up the old moon into stars."
jws.SetPayload(payloadStr, "utf-8", bIncludeBom)
' ---------------------------------------------------
' Create the JWS.
' Givent that multiple signatures will exist, only the general JSON serialization
' format is possible, and that is what will be produced.
Dim jwsStr As String = jws.CreateJws
If jws.LastMethodSuccess <> True Then
Log(jws.LastErrorText)
Return
End If
' The jwsStr is contains JSON in the smallest possible size, which is a single line.
' To get in human-readable format, load into a Chilkat JSON object and emit..
Dim json As ChilkatJsonObject
json.Initialize
json.Load(jwsStr)
json.EmitCompact = False
Log(json.Emit)
' Sample output:
' {
' "payload": "SW4gb3VyIHZpbGxhZ2UsIGZvbGtzIHNheSBHb2QgY3J1bWJsZXMgdXAgdGhlIG9sZCBtb29uIGludG8gc3RhcnMu",
' "signatures": [
' {
' "protected": "eyJhbGciOiJSUzI1NiJ9",
' "header": {
' "kid": "myRsaKey"
' },
' "signature": "B04c24gSnpVm1Z-_bemfyNMCpZm6Knj1yB-yzaIOvijsWfDgoF_mSJccTIbzapNgwJudnobr5iDOfZWiRR9iqCyDJLe5M1S40vFF7MFEI3JecYRgrRc6n1lTkYLMRyVq48BwbQlmKgPqmK9drun3agklsr0FmgNx65pfmcnlYdXsgwxf8WbgppefrlrMImp-98-dNtBcUL8ce1aOjbcyVFjGMCzpm3JerQqIzWQvEwBstnMEQle73KHcyx_nsTmlzY70CaydbRTsciOATL7WfiMwuX1q9Y2NIpTg3CbOTWKdwjh7iyfiAKQxNBaF2mApnqj9hjpf8GwR-CfxAzJtPg"
' },
' {
' "protected": "eyJhbGciOiJFUzI1NiJ9",
' "header": {
' "kid": "myEcKey"
' },
' "signature": "2cbugKq0ERaQMh01n2B-86EZFYleeMf8bsccaQMxzOxAg14PxfjR3IImvodTJYqkmfBJYW203etz2-7ZtJUOGw"
' },
' {
' "protected": "eyJhbGciOiJIUzI1NiJ9",
' "header": {
' "kid": "myMacKey"
' },
' "signature": "e7R9gjx0RsUNa3c7qd8k9mQGEhtcG8vsN1W7jbLb2MA"
' }
' ]
' }