PowerBuilder
PowerBuilder
Sign String to create a CAdES-T Signature, using HTTP Proxy to Access Timestamp Server
This example will sign a string to create a CAdEST-T signature. It will use an HTTP proxy to access the timestamp server.Chilkat PowerBuilder Downloads
integer li_rc
integer li_Success
oleobject loo_Crypt
oleobject loo_Cert
oleobject loo_Attrs
string ls_StrToSign
oleobject loo_Bd
oleobject loo_Http
li_Success = 0
loo_Crypt = create oleobject
li_rc = loo_Crypt.ConnectToNewObject("Chilkat.Crypt2")
if li_rc < 0 then
destroy loo_Crypt
MessageBox("Error","Connecting to COM object failed")
return
end if
loo_Cert = create oleobject
li_rc = loo_Cert.ConnectToNewObject("Chilkat.Cert")
loo_Cert.SmartCardPin = "123456"
li_Success = loo_Cert.LoadFromSmartcard("")
if li_Success <> 1 then
Write-Debug loo_Cert.LastErrorText
destroy loo_Crypt
destroy loo_Cert
return
end if
li_Success = loo_Crypt.SetSigningCert(loo_Cert)
// Use SHA-256 rather than the default of SHA-1
loo_Crypt.HashAlgorithm = "sha256"
// Create JSON that tells Chilkat what signing attributes to include:
loo_Attrs = create oleobject
li_rc = loo_Attrs.ConnectToNewObject("Chilkat.JsonObject")
loo_Attrs.UpdateBool("contentType",1)
loo_Attrs.UpdateBool("signingTime",1)
loo_Attrs.UpdateBool("messageDigest",1)
loo_Attrs.UpdateBool("signingCertificateV2",1)
// A CAdES-T signature is one that includes a timestampToken created by an online TSA (time stamping authority).
// We must include the TSA's URL, as well as a few options to indicate what is desired.
// Except for the TSA URL, the options shown here are typically what you would need.
loo_Attrs.UpdateBool("timestampToken.enabled",1)
loo_Attrs.UpdateString("timestampToken.tsaUrl","https://freetsa.org/tsr")
loo_Attrs.UpdateBool("timestampToken.addNonce",0)
loo_Attrs.UpdateBool("timestampToken.requestTsaCert",1)
loo_Attrs.UpdateString("timestampToken.hashAlg","sha256")
loo_Crypt.SigningAttributes = loo_Attrs.Emit()
ls_StrToSign = "Hello World!"
loo_Bd = create oleobject
li_rc = loo_Bd.ConnectToNewObject("Chilkat.BinData")
loo_Bd.AppendString(ls_StrToSign,"utf-8")
// -------------------------------------------------------------------------
// The purpose of this example is to show how an HTTP object with custom
// settings can be used to access the Internet when signing.
// Access to the Internet is needed to communicate with the timestamp server.
loo_Http = create oleobject
li_rc = loo_Http.ConnectToNewObject("Chilkat.Http")
// This can be a domain name, hostname, or IP address.
loo_Http.ProxyDomain = "172.16.16.56"
loo_Http.ProxyPort = 808
loo_Http.ProxyLogin = "myProxyLogin"
loo_Http.ProxyPassword = "myProxyPassword"
loo_Crypt.SetTsaHttpObj(loo_Http)
// -------------------------------------------------------------------------
// This creates the CAdES-T signature. During the signature creation, it
// communicates with the TSA to get a timestampToken.
// The contents of bd are signed and replaced with the CAdES-T signature (which embeds the original content).
li_Success = loo_Crypt.OpaqueSignBd(loo_Bd)
if li_Success <> 1 then
Write-Debug loo_Crypt.LastErrorText
destroy loo_Crypt
destroy loo_Cert
destroy loo_Attrs
destroy loo_Bd
destroy loo_Http
return
end if
// Get the signature in base64 format:
Write-Debug loo_Bd.GetEncoded("base64_mime")
Write-Debug "Success."
destroy loo_Crypt
destroy loo_Cert
destroy loo_Attrs
destroy loo_Bd
destroy loo_Http