Java
Java
RSA SHA256 Signature using Private Key from Java Keystore
See more RSA Examples
Signs plaintext using RSA SHA256 using a key from a Java keystore.Duplicatest this code:
KeyStore keystore; // key repository for keys containing signature certificate
String alias; // alias for the certificate in the key repository
String password; // password for the certificate's private key
String plaintext; // text being signed
Signature signature = Signature.getInstance("SHA256withRSA");
signature.initSign((PrivateKey) keystore.getKey(alias, password.toCharArray()));
signature.update(plaintext.getBytes("UTF-8"));
byte[] rsa_text= signature.sign();
Chilkat Java Downloads
import com.chilkatsoft.*;
public class ChilkatExample {
static {
try {
System.loadLibrary("chilkat");
} catch (UnsatisfiedLinkError e) {
System.err.println("Native code library failed to load.\n" + e);
System.exit(1);
}
}
public static void main(String argv[])
{
boolean success = false;
// This requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
CkJavaKeyStore jks = new CkJavaKeyStore();
String jksPassword = "secret";
// Load the Java keystore from a file. The JKS file password is used
// to verify the keyed digest that is found at the very end of the keystore.
// It verifies that the keystore has not been modified.
success = jks.LoadFile(jksPassword,"qa_data/jks/sample_secret.jks");
if (success == false) {
System.out.println(jks.lastErrorText());
return;
}
// Get the private key from the JKS.
// The private key password may be different than the file password.
String privKeyPassword = "secret";
boolean caseSensitive = false;
CkPrivateKey privKey = new CkPrivateKey();
success = jks.PrivateKeyOf(privKeyPassword,"some.alias",caseSensitive,privKey);
if (success == false) {
System.out.println(jks.lastErrorText());
return;
}
// Establish the RSA object and tell it to use the private key..
CkRsa rsa = new CkRsa();
success = rsa.UsePrivateKey(privKey);
if (success == false) {
System.out.println(rsa.lastErrorText());
return;
}
// Indicate we'll be signing the utf-8 byte representation of the string..
rsa.put_Charset("utf-8");
// Sign some plaintext using RSA-SHA256
CkByteData binarySignature = new CkByteData();
String plaintext = "this is the text to be signed";
success = rsa.SignString(plaintext,"SHA256",binarySignature);
if (rsa.get_LastMethodSuccess() == false) {
System.out.println(rsa.lastErrorText());
return;
}
// Alternatively, if the signature is desired in some encoded string form,
// such as base64, base64-url, hex, etc.
rsa.put_EncodingMode("base64-url");
String signatureStr = rsa.signStringENC(plaintext,"SHA256");
System.out.println("base64-url RSA signature: " + signatureStr);
}
}