Sample code for 30+ languages & platforms
Lianja

Encrypt a JWE with a Password (PBES2)

See more JSON Web Encryption (JWE) Examples

Demonstrates Jwe.SetPassword, which sets the PBES2 password for a recipient. The example uses PBES2-HS256+A128KW key management with AES-128-GCM content encryption.

Background. PBES2 derives a key-wrapping key from a password using a salt and iteration count, allowing password-based JWE encryption. The password should come from a secure source.

Chilkat Lianja Downloads

Lianja
llSuccess = .F.

loJwe = createobject("CkJwe")

//  Protected header: PBES2 password-based key management with AES-128-GCM content encryption.
loHeader = createobject("CkJsonObject")
loHeader.UpdateString("alg","PBES2-HS256+A128KW")
loHeader.UpdateString("enc","A128GCM")
llSuccess = loJwe.SetProtectedHeader(loHeader)
if (llSuccess = .F.) then
    ? loJwe.LastErrorText
    release loJwe
    release loHeader
    return
endif

//  Set the PBES2 password for recipient 0.  The password should come from a secure source rather than
//  being hard-coded.
lcPassword = "myPassword"
llSuccess = loJwe.SetPassword(0,lcPassword)
if (llSuccess = .F.) then
    ? loJwe.LastErrorText
    release loJwe
    release loHeader
    return
endif

lcJweCompact = loJwe.Encrypt("This is the secret content.","utf-8")
if (loJwe.LastMethodSuccess = .F.) then
    ? loJwe.LastErrorText
    release loJwe
    release loHeader
    return
endif

? lcJweCompact


release loJwe
release loHeader