Unicode C
Unicode C
Set JWE Additional Authenticated Data from BinData
See more JSON Web Encryption (JWE) Examples
Demonstrates Jwe.SetAadBd, which sets external Additional Authenticated Data (AAD) to the exact bytes held in a BinData.
Background. AAD is integrity-protected but not encrypted. Passing an empty BinData clears any previously configured AAD.
Chilkat Unicode C Downloads
#include <C_CkJweW.h>
#include <C_CkJsonObjectW.h>
#include <C_CkBinDataW.h>
#include <C_CkStringBuilderW.h>
void ChilkatSample(void)
{
BOOL success;
HCkJweW jwe;
HCkJsonObjectW header;
const wchar_t *base64Key;
HCkBinDataW bdAad;
HCkStringBuilderW sbContent;
HCkStringBuilderW sbJwe;
success = FALSE;
jwe = CkJweW_Create();
// Protected header: AES key-wrap with AES-256-GCM content encryption.
header = CkJsonObjectW_Create();
CkJsonObjectW_UpdateString(header,L"alg",L"A256KW");
CkJsonObjectW_UpdateString(header,L"enc",L"A256GCM");
success = CkJweW_SetProtectedHeader(jwe,header);
if (success == FALSE) {
wprintf(L"%s\n",CkJweW_lastErrorText(jwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
return;
}
// The 256-bit key-wrapping key (base64) for recipient index 0. In production, obtain the key from a
// secure source rather than hard-coding it.
base64Key = L"YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU=";
success = CkJweW_SetWrappingKey(jwe,0,base64Key,L"base64");
if (success == FALSE) {
wprintf(L"%s\n",CkJweW_lastErrorText(jwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
return;
}
// Set external Additional Authenticated Data (AAD) to the exact bytes in a BinData. Passing an empty
// BinData clears any previously configured AAD.
bdAad = CkBinDataW_Create();
CkBinDataW_AppendString(bdAad,L"context-info-v1",L"utf-8");
success = CkJweW_SetAadBd(jwe,bdAad);
if (success == FALSE) {
wprintf(L"%s\n",CkJweW_lastErrorText(jwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
CkBinDataW_Dispose(bdAad);
return;
}
sbContent = CkStringBuilderW_Create();
CkStringBuilderW_Append(sbContent,L"This is the secret content.");
sbJwe = CkStringBuilderW_Create();
success = CkJweW_EncryptSb(jwe,sbContent,L"utf-8",sbJwe);
if (success == FALSE) {
wprintf(L"%s\n",CkJweW_lastErrorText(jwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
CkBinDataW_Dispose(bdAad);
CkStringBuilderW_Dispose(sbContent);
CkStringBuilderW_Dispose(sbJwe);
return;
}
wprintf(L"%s\n",CkStringBuilderW_getAsString(sbJwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
CkBinDataW_Dispose(bdAad);
CkStringBuilderW_Dispose(sbContent);
CkStringBuilderW_Dispose(sbJwe);
}