Sample code for 30+ languages & platforms
CkPython

Decrypt a JWE with a Private Key

See more JSON Web Encryption (JWE) Examples

Demonstrates Jwe.SetPrivateKey, which sets the private key used to decrypt a recipient of a loaded JWE.

The file path is relative to the application's current working directory. An absolute path may also be used. Supply the path appropriate to your own environment.

Background. The private key unwraps the content-encryption key that was wrapped with the corresponding public key during encryption.

Chilkat CkPython Downloads

CkPython
import sys
import chilkat

success = False

jwe = chilkat.CkJwe()

#  Load the JWE compact serialization to be decrypted.
jweCompact = "eyJhbGciOiJBMjU2S1ciLCJlbmMiOiJBMjU2R0NNIn0.<...>.<iv>.<ciphertext>.<tag>"
success = jwe.LoadJwe(jweCompact)
if (success == False):
    print(jwe.lastErrorText())
    sys.exit()

#  The file path is relative to the application's current working directory.  An absolute path
#  may also be used.  Supply the path appropriate to your own environment.
#  Load the recipient's private key.
privKey = chilkat.CkPrivateKey()
success = privKey.LoadPemFile("qa_data/recipient_privkey.pem")
if (success == False):
    print(privKey.lastErrorText())
    sys.exit()

#  Set the private key used to decrypt recipient 0.
success = jwe.SetPrivateKey(0,privKey)
if (success == False):
    print(jwe.lastErrorText())
    sys.exit()

content = jwe.decrypt(0,"utf-8")
if (jwe.get_LastMethodSuccess() == False):
    print(jwe.lastErrorText())
    sys.exit()

print(content)