Sample code for 30+ languages & platforms
Pascal (Lazarus/Delphi)

Set JWE Additional Authenticated Data

See more JSON Web Encryption (JWE) Examples

Demonstrates Jwe.SetAad, which sets external Additional Authenticated Data (AAD) for a JWE being encrypted, encoding the supplied text with the given charset.

Background. AAD is integrity-protected but not encrypted, binding external context to the ciphertext. The same AAD must be supplied again when decrypting.

Chilkat Pascal (Lazarus/Delphi) Downloads

Pascal (Lazarus/Delphi)
program ChilkatDemo;

// Demonstrates using the Chilkat Pascal wrapper via the C bridge DLL.
// Builds as a console application under Lazarus (FPC) or Delphi.

{$IFDEF FPC}
  {$MODE DELPHI}
{$ENDIF}
{$APPTYPE CONSOLE}

uses
  {$IFDEF UNIX}
  cthreads,
  {$ENDIF}
  SysUtils,
  CkDllLoader,
  Chilkat.Jwe,
  Chilkat.StringBuilder,
  Chilkat.JsonObject;

// ---------------------------------------------------------------------------

procedure RunDemo;
var
  success: Boolean;
  jwe: TJwe;
  header: TJsonObject;
  base64Key: string;
  sbContent: TStringBuilder;
  sbJwe: TStringBuilder;

begin
  success := False;

  jwe := TJwe.Create;

  //  Protected header: AES key-wrap with AES-256-GCM content encryption.
  header := TJsonObject.Create;
  header.UpdateString('alg','A256KW');
  header.UpdateString('enc','A256GCM');
  success := jwe.SetProtectedHeader(header);
  if (success = False) then
    begin
      WriteLn(jwe.LastErrorText);
      Exit;
    end;

  //  The 256-bit key-wrapping key (base64) for recipient index 0.  In production, obtain the key from a
  //  secure source rather than hard-coding it.
  base64Key := 'YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU=';
  success := jwe.SetWrappingKey(0,base64Key,'base64');
  if (success = False) then
    begin
      WriteLn(jwe.LastErrorText);
      Exit;
    end;

  //  Set external Additional Authenticated Data (AAD).  The AAD is integrity-protected but not
  //  encrypted, and must be supplied again when decrypting.
  success := jwe.SetAad('context-info-v1','utf-8');
  if (success = False) then
    begin
      WriteLn(jwe.LastErrorText);
      Exit;
    end;

  sbContent := TStringBuilder.Create;
  sbContent.Append('This is the secret content.');
  sbJwe := TStringBuilder.Create;
  success := jwe.EncryptSb(sbContent,'utf-8',sbJwe);
  if (success = False) then
    begin
      WriteLn(jwe.LastErrorText);
      Exit;
    end;
  WriteLn(sbJwe.GetAsString());


  jwe.Free;
  header.Free;
  sbContent.Free;
  sbJwe.Free;

end;

// ---------------------------------------------------------------------------

begin

  try
    RunDemo;
  except
    on E: Exception do
      WriteLn('Unhandled exception: ', E.ClassName, ': ', E.Message);
  end;

  WriteLn;
  {$IFDEF MSWINDOWS}
  WriteLn('Press Enter to exit...');
  ReadLn;
  {$ENDIF}
end.