Rust
Rust
Set JWE Additional Authenticated Data from BinData
See more JSON Web Encryption (JWE) Examples
Demonstrates Jwe.SetAadBd, which sets external Additional Authenticated Data (AAD) to the exact bytes held in a BinData.
Background. AAD is integrity-protected but not encrypted. Passing an empty BinData clears any previously configured AAD.
Chilkat Rust Downloads
let jwe = chilkat::Jwe::new();
// Protected header: AES key-wrap with AES-256-GCM content encryption.
let header = chilkat::JsonObject::new();
let _ = header.update_string("alg", "A256KW");
let _ = header.update_string("enc", "A256GCM");
if jwe.set_protected_header(&header).is_err() {
println!("{}", jwe.last_error_text());
return;
}
// The 256-bit key-wrapping key (base64) for recipient index 0. In production, obtain the key from a
// secure source rather than hard-coding it.
let base64_key = "YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU=".to_string();
if jwe.set_wrapping_key(0, &base64_key, "base64").is_err() {
println!("{}", jwe.last_error_text());
return;
}
// Set external Additional Authenticated Data (AAD) to the exact bytes in a BinData. Passing an empty
// BinData clears any previously configured AAD.
let bd_aad = chilkat::BinData::new();
let _ = bd_aad.append_string("context-info-v1", "utf-8");
if jwe.set_aad_bd(&bd_aad).is_err() {
println!("{}", jwe.last_error_text());
return;
}
let sb_content = chilkat::StringBuilder::new();
let _ = sb_content.append("This is the secret content.");
let sb_jwe = chilkat::StringBuilder::new();
if jwe.encrypt_sb(&sb_content, "utf-8", &sb_jwe).is_err() {
println!("{}", jwe.last_error_text());
return;
}
println!("{}", sb_jwe.get_as_string().unwrap_or_default());