Sample code for 30+ languages & platforms
Java

Verify the Timestamp Server Token (if any) while Validating a CMS Signature

Demonstrates how to also validate the timestamp server token (if any) while validating a CMS signature.

Chilkat Java Downloads

Java
import com.chilkatsoft.*;

public class ChilkatExample {

  static {
    try {
        System.loadLibrary("chilkat");
    } catch (UnsatisfiedLinkError e) {
      System.err.println("Native code library failed to load.\n" + e);
      System.exit(1);
    }
  }

  public static void main(String argv[])
  {
    boolean success = false;

    CkCrypt2 crypt = new CkCrypt2();

    //  Tell Chilkat to also validate the timestamp token if a timestamp exists in the CMS message's unauthenticated attributes.
    CkJsonObject cmsOptions = new CkJsonObject();
    cmsOptions.UpdateBool("ValidateTimestampTokens",true);
    crypt.put_CmsOptions(cmsOptions.emit());

    String outputFile = "qa_output/original.xml";
    String inFile = "qa_data/p7m/fattura_signature.xml.p7m";

    //  Verify the signature and extract the contained file, which in this case is XML.
    success = crypt.VerifyP7M(inFile,outputFile);
    if (success == false) {
        System.out.println(crypt.lastErrorText());
        return;
        }

    System.out.println("Signature validated.");
  }
}