Sample code for 30+ languages & platforms
PowerShell

Encrypt a JWE with a Symmetric Wrapping Key

See more JSON Web Encryption (JWE) Examples

Demonstrates Jwe.SetWrappingKey, which sets the symmetric key-wrapping key for a recipient. The key bytes are supplied in a named encoding such as hex or base64.

Background. AES key wrapping protects the content-encryption key with a shared symmetric key. Both parties must possess the same wrapping key.

Chilkat PowerShell Downloads

PowerShell
Add-Type -Path "C:\chilkat\ChilkatDotNet47-x64\ChilkatDotNet47.dll"

$success = $false

$jwe = New-Object Chilkat.Jwe

#  Protected header: AES key-wrap with AES-256-GCM content encryption.
$header = New-Object Chilkat.JsonObject
$header.UpdateString("alg","A256KW")
$header.UpdateString("enc","A256GCM")
$success = $jwe.SetProtectedHeader($header)
if ($success -eq $false) {
    $($jwe.LastErrorText)
    exit
}

#  Set the symmetric key-wrapping key for recipient 0.  The key bytes are provided in the named
#  encoding (here base64).  In production, obtain the key from a secure source rather than hard-coding
#  it.
$base64Key = "YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU="
$success = $jwe.SetWrappingKey(0,$base64Key,"base64")
if ($success -eq $false) {
    $($jwe.LastErrorText)
    exit
}

$jweCompact = $jwe.Encrypt("This is the secret content.","utf-8")
if ($jwe.LastMethodSuccess -eq $false) {
    $($jwe.LastErrorText)
    exit
}

$($jweCompact)