Lianja
Lianja
Encrypt a JWE with a Password (PBES2)
See more JSON Web Encryption (JWE) Examples
Demonstrates Jwe.SetPassword, which sets the PBES2 password for a recipient. The example uses PBES2-HS256+A128KW key management with AES-128-GCM content encryption.
Background. PBES2 derives a key-wrapping key from a password using a salt and iteration count, allowing password-based JWE encryption. The password should come from a secure source.
Chilkat Lianja Downloads
llSuccess = .F.
loJwe = createobject("CkJwe")
// Protected header: PBES2 password-based key management with AES-128-GCM content encryption.
loHeader = createobject("CkJsonObject")
loHeader.UpdateString("alg","PBES2-HS256+A128KW")
loHeader.UpdateString("enc","A128GCM")
llSuccess = loJwe.SetProtectedHeader(loHeader)
if (llSuccess = .F.) then
? loJwe.LastErrorText
release loJwe
release loHeader
return
endif
// Set the PBES2 password for recipient 0. The password should come from a secure source rather than
// being hard-coded.
lcPassword = "myPassword"
llSuccess = loJwe.SetPassword(0,lcPassword)
if (llSuccess = .F.) then
? loJwe.LastErrorText
release loJwe
release loHeader
return
endif
lcJweCompact = loJwe.Encrypt("This is the secret content.","utf-8")
if (loJwe.LastMethodSuccess = .F.) then
? loJwe.LastErrorText
release loJwe
release loHeader
return
endif
? lcJweCompact
release loJwe
release loHeader