Sample code for 30+ languages & platforms
Tcl

Create an Opaque Signature with a Separate Private Key

See more MIME Examples

Demonstrates the Chilkat Mime.ConvertToSignedPk method, which creates an opaque signature using a signer certificate and its separately supplied private key. The first argument is the Cert and the second is the PrivateKey.

Note: The file paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.

Background: The separate-key form of ConvertToSigned, for when the certificate and private key are not bundled together. It produces the same opaque CMS signed-data result; only the source of the key material differs.

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

set success 0

set mime [new_CkMime]

set success [CkMime_SetBodyFromPlainText $mime "This message will be signed."]
if {$success == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    exit
}

#  Load the certificate and its private key separately.
set cert [new_CkCert]

set success [CkCert_LoadFromFile $cert "qa_data/signer.cer"]
if {$success == 0} then {
    puts [CkCert_lastErrorText $cert]
    delete_CkMime $mime
    delete_CkCert $cert
    exit
}

set privKey [new_CkPrivateKey]

set success [CkPrivateKey_LoadPemFile $privKey "qa_data/signer_privkey.pem"]
if {$success == 0} then {
    puts [CkPrivateKey_lastErrorText $privKey]
    delete_CkMime $mime
    delete_CkCert $cert
    delete_CkPrivateKey $privKey
    exit
}

#  Create an opaque signature when the certificate and private key are supplied separately.  The
#  1st argument is the signer certificate and the 2nd is its private key.
set success [CkMime_ConvertToSignedPk $mime $cert $privKey]
if {$success == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    delete_CkCert $cert
    delete_CkPrivateKey $privKey
    exit
}

set success [CkMime_SaveMime $mime "qa_output/signed_opaque.eml"]
if {$success == 0} then {
    puts [CkMime_lastErrorText $mime]
    delete_CkMime $mime
    delete_CkCert $cert
    delete_CkPrivateKey $privKey
    exit
}

puts "Message converted to an opaque signed message."

delete_CkMime $mime
delete_CkCert $cert
delete_CkPrivateKey $privKey