Dart
Dart
Set the Shared JWE Unprotected Header
See more JSON Web Encryption (JWE) Examples
Demonstrates Jwe.SetUnprotectedHeader, which sets the shared JWE unprotected header from a JsonObject.
Background. The unprotected header is shared by all recipients but, unlike the protected header, is not integrity-protected. It is carried in the JSON serialization forms of a JWE.
Chilkat Dart Downloads
import 'package:chilkat/chilkat.dart';
void main() {
final jwe = CkJwe();
// Protected header: AES key-wrap with AES-256-GCM content encryption.
final header = CkJsonObject();
header.updateString('alg', 'A256KW');
header.updateString('enc', 'A256GCM');
try {
jwe.setProtectedHeader(header);
} on ChilkatException catch (e) {
print(e.lastErrorText);
return;
}
// The 256-bit key-wrapping key (base64) for recipient index 0. In production, obtain the key from a
// secure source rather than hard-coding it.
final base64Key = 'YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU=';
try {
jwe.setWrappingKey(0, base64Key, 'base64');
} on ChilkatException catch (e) {
print(e.lastErrorText);
return;
}
// Set the shared JWE unprotected header. It is shared by all recipients but, unlike the protected
// header, is not integrity-protected.
final unprotected = CkJsonObject();
unprotected.updateString('cty', 'text/plain');
try {
jwe.setUnprotectedHeader(unprotected);
} on ChilkatException catch (e) {
print(e.lastErrorText);
return;
}
final sbContent = CkStringBuilder();
sbContent.append('This is the secret content.');
final sbJwe = CkStringBuilder();
try {
jwe.encryptSb(sbContent, 'utf-8', sbJwe);
} on ChilkatException catch (e) {
print(e.lastErrorText);
return;
}
print(sbJwe.getAsString());
}