Sample code for 30+ languages & platforms
Go Requires Chilkat v10.1.2+

RSA Sign String using Private Key of Certificate Type A3 (smart card / token)

See more RSA Examples

Demonstrates RSA signing a string using the private key of a certificate type A3 (smart card, token).

Note: This is a Windows-only example.

Chilkat Go Downloads

Go
    success := false

    //  First get the A3 certificate that was installed on the Windows system.
    certStore := chilkat.NewCertStore()

    thumbprint := "12c1dd8015f3f03f7b1fa619dc24e2493ca8b4b2"

    //  This is specific to Windows because it is opening the Windows Current-User certificate store.
    bReadOnly := true
    success = certStore.OpenCurrentUserStore(bReadOnly)
    if success != true {
        fmt.Println(certStore.LastErrorText())
        certStore.DisposeCertStore()
        return
    }

    //  Find the certificate with the desired thumbprint
    //  (There are many ways to locate a certificate.  This example chooses to find by thumbprint.)
    json := chilkat.NewJsonObject()
    json.UpdateString("thumbprint",thumbprint)

    cert := chilkat.NewCert()
    success = certStore.FindCert(json,cert)
    if success == false {
        fmt.Println("Failed to find the certificate.")
        certStore.DisposeCertStore()
        json.DisposeJsonObject()
        cert.DisposeCert()
        return
    }

    fmt.Println("Found: ", cert.SubjectCN())

    rsa := chilkat.NewRsa()

    //  Provide the cert's private key
    bUsePrivateKey := true
    success = rsa.SetX509Cert(cert,bUsePrivateKey)
    if success != true {
        fmt.Println(rsa.LastErrorText())
        certStore.DisposeCertStore()
        json.DisposeJsonObject()
        cert.DisposeCert()
        rsa.DisposeRsa()
        return
    }

    //  Return the RSA signature in base64 encoded form.
    rsa.SetEncodingMode("base64")

    //  Sign the utf-8 byte representation of the string.
    rsa.SetCharset("utf-8")

    //  You can also choose other hash algorithms, such as SHA-1.
    sigBase64 := rsa.SignStringENC("text to sign","SHA-256")
    if rsa.LastMethodSuccess() != true {
        fmt.Println(rsa.LastErrorText())
        certStore.DisposeCertStore()
        json.DisposeJsonObject()
        cert.DisposeCert()
        rsa.DisposeRsa()
        return
    }

    fmt.Println("Base64 signature: ", *sigBase64)

    certStore.DisposeCertStore()
    json.DisposeJsonObject()
    cert.DisposeCert()
    rsa.DisposeRsa()