Sample code for 30+ languages & platforms
Swift

REST Basic Auth with Secure Strings

Demonstrates how to do REST Basic authentication using secure strings.

This example requires Chilkat v9.5.0.71 or greater.

Chilkat Swift Downloads

Swift

func chilkatTest() {
    var success: Bool = false

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    // Imagine we've previously saved our encrypted login and password within a JSON config file
    // that contains this:

    // {
    //   "http_login": "mCrOmA7mBA7Au9RuJGb9hw==",
    //   "http_password": "jJtiI9TgErTTpqBz9JtHBw=="
    // }

    let json = CkoJsonObject()!
    json.loadFile(path: "qa_data/passwords/http.json")

    let crypt = CkoCrypt2()!

    // These are the encryption settings we previously used to encrypt the credentials within the JSON config file.
    crypt.cryptAlgorithm = "aes"
    crypt.cipherMode = "cbc"
    crypt.keyLength = 128
    crypt.setEncodedKey(keyStr: "000102030405060708090A0B0C0D0E0F", encoding: "hex")
    crypt.setEncodedIV(ivStr: "000102030405060708090A0B0C0D0E0F", encoding: "hex")
    crypt.encodingMode = "base64"

    let ssLogin = CkoSecureString()!
    let ssPassword = CkoSecureString()!

    // Decrypt to the secure string.  (the strings will still held in memory encrypted, but are now encrypted using
    // a randomly generated session key.)
    crypt.decryptSecureENC(cipherText: json.string(of: "http_login"), secureStr: ssLogin)
    crypt.decryptSecureENC(cipherText: json.string(of: "http_password"), secureStr: ssPassword)

    let rest = CkoRest()!

    // Connect to a REST server.
    var bTls: Bool = true
    var port: Int = 443
    var bAutoReconnect: Bool = true
    success = rest.connect(hostname: "chilkatsoft.com", port: port, tls: bTls, autoReconnect: bAutoReconnect)

    // Cause the "Authorization: Basic ..." header to be added to HTTP requests
    rest.setAuthBasicSecure(username: ssLogin, password: ssPassword)

    var responseJson: String? = rest.fullRequestNoBody(httpVerb: "GET", uriPath: "/helloWorld.html")
    if rest.lastMethodSuccess != true {
        print("\(rest.lastErrorText!)")
        return
    }

    // Show the LastRequestHeader that was sent.
    print("\(rest.lastRequestHeader!)")

    // The LastRequestHeader looks like this:

    // Host: chilkatsoft.com
    // Authorization: Basic bXlIdHRwTG9naW46bXlIdHRwUGFzc3dvcmQ=

}