Sample code for 30+ languages & platforms
PHP Extension

Encrypt a JWE with a Password (PBES2)

See more JSON Web Encryption (JWE) Examples

Demonstrates Jwe.SetPassword, which sets the PBES2 password for a recipient. The example uses PBES2-HS256+A128KW key management with AES-128-GCM content encryption.

Background. PBES2 derives a key-wrapping key from a password using a salt and iteration count, allowing password-based JWE encryption. The password should come from a secure source.

Chilkat PHP Extension Downloads

PHP Extension
<?php

include("chilkat.php");

$success = false;

$jwe = new CkJwe();

//  Protected header: PBES2 password-based key management with AES-128-GCM content encryption.
$header = new CkJsonObject();
$header->UpdateString('alg','PBES2-HS256+A128KW');
$header->UpdateString('enc','A128GCM');
$success = $jwe->SetProtectedHeader($header);
if ($success == false) {
    print $jwe->lastErrorText() . "\n";
    exit;
}

//  Set the PBES2 password for recipient 0.  The password should come from a secure source rather than
//  being hard-coded.
$password = 'myPassword';
$success = $jwe->SetPassword(0,$password);
if ($success == false) {
    print $jwe->lastErrorText() . "\n";
    exit;
}

$jweCompact = $jwe->encrypt('This is the secret content.','utf-8');
if ($jwe->get_LastMethodSuccess() == false) {
    print $jwe->lastErrorText() . "\n";
    exit;
}

print $jweCompact . "\n";

?>