Sample code for 30+ languages & platforms
Lazarus Pascal

Set JWE Additional Authenticated Data from BinData

See more JSON Web Encryption (JWE) Examples

Demonstrates Jwe.SetAadBd, which sets external Additional Authenticated Data (AAD) to the exact bytes held in a BinData.

Background. AAD is integrity-protected but not encrypted. Passing an empty BinData clears any previously configured AAD.

Chilkat Lazarus Pascal Downloads

Lazarus Pascal
program ChilkatDemo;

// Demonstrates using the Chilkat Pascal wrapper via the C bridge DLL.
// Builds as a console application under Lazarus (FPC) or Delphi.

{$IFDEF FPC}
  {$MODE DELPHI}
{$ENDIF}
{$APPTYPE CONSOLE}

uses
  {$IFDEF UNIX}
  cthreads,
  {$ENDIF}
  SysUtils,
  CkDllLoader,
  Chilkat.Jwe,
  Chilkat.BinData,
  Chilkat.StringBuilder,
  Chilkat.JsonObject;

// ---------------------------------------------------------------------------

procedure RunDemo;
var
  success: Boolean;
  jwe: TJwe;
  header: TJsonObject;
  base64Key: string;
  bdAad: TBinData;
  sbContent: TStringBuilder;
  sbJwe: TStringBuilder;

begin
  success := False;

  jwe := TJwe.Create;

  //  Protected header: AES key-wrap with AES-256-GCM content encryption.
  header := TJsonObject.Create;
  header.UpdateString('alg','A256KW');
  header.UpdateString('enc','A256GCM');
  success := jwe.SetProtectedHeader(header);
  if (success = False) then
    begin
      WriteLn(jwe.LastErrorText);
      Exit;
    end;

  //  The 256-bit key-wrapping key (base64) for recipient index 0.  In production, obtain the key from a
  //  secure source rather than hard-coding it.
  base64Key := 'YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU=';
  success := jwe.SetWrappingKey(0,base64Key,'base64');
  if (success = False) then
    begin
      WriteLn(jwe.LastErrorText);
      Exit;
    end;

  //  Set external Additional Authenticated Data (AAD) to the exact bytes in a BinData.  Passing an empty
  //  BinData clears any previously configured AAD.
  bdAad := TBinData.Create;
  bdAad.AppendString('context-info-v1','utf-8');
  success := jwe.SetAadBd(bdAad);
  if (success = False) then
    begin
      WriteLn(jwe.LastErrorText);
      Exit;
    end;

  sbContent := TStringBuilder.Create;
  sbContent.Append('This is the secret content.');
  sbJwe := TStringBuilder.Create;
  success := jwe.EncryptSb(sbContent,'utf-8',sbJwe);
  if (success = False) then
    begin
      WriteLn(jwe.LastErrorText);
      Exit;
    end;
  WriteLn(sbJwe.GetAsString());


  jwe.Free;
  header.Free;
  bdAad.Free;
  sbContent.Free;
  sbJwe.Free;

end;

// ---------------------------------------------------------------------------

begin

  try
    RunDemo;
  except
    on E: Exception do
      WriteLn('Unhandled exception: ', E.ClassName, ': ', E.Message);
  end;

  WriteLn;
  {$IFDEF MSWINDOWS}
  WriteLn('Press Enter to exit...');
  ReadLn;
  {$ENDIF}
end.