Unicode C
Unicode C
Set the Shared JWE Unprotected Header
See more JSON Web Encryption (JWE) Examples
Demonstrates Jwe.SetUnprotectedHeader, which sets the shared JWE unprotected header from a JsonObject.
Background. The unprotected header is shared by all recipients but, unlike the protected header, is not integrity-protected. It is carried in the JSON serialization forms of a JWE.
Chilkat Unicode C Downloads
#include <C_CkJweW.h>
#include <C_CkJsonObjectW.h>
#include <C_CkStringBuilderW.h>
void ChilkatSample(void)
{
BOOL success;
HCkJweW jwe;
HCkJsonObjectW header;
const wchar_t *base64Key;
HCkJsonObjectW unprotected;
HCkStringBuilderW sbContent;
HCkStringBuilderW sbJwe;
success = FALSE;
jwe = CkJweW_Create();
// Protected header: AES key-wrap with AES-256-GCM content encryption.
header = CkJsonObjectW_Create();
CkJsonObjectW_UpdateString(header,L"alg",L"A256KW");
CkJsonObjectW_UpdateString(header,L"enc",L"A256GCM");
success = CkJweW_SetProtectedHeader(jwe,header);
if (success == FALSE) {
wprintf(L"%s\n",CkJweW_lastErrorText(jwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
return;
}
// The 256-bit key-wrapping key (base64) for recipient index 0. In production, obtain the key from a
// secure source rather than hard-coding it.
base64Key = L"YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU=";
success = CkJweW_SetWrappingKey(jwe,0,base64Key,L"base64");
if (success == FALSE) {
wprintf(L"%s\n",CkJweW_lastErrorText(jwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
return;
}
// Set the shared JWE unprotected header. It is shared by all recipients but, unlike the protected
// header, is not integrity-protected.
unprotected = CkJsonObjectW_Create();
CkJsonObjectW_UpdateString(unprotected,L"cty",L"text/plain");
success = CkJweW_SetUnprotectedHeader(jwe,unprotected);
if (success == FALSE) {
wprintf(L"%s\n",CkJweW_lastErrorText(jwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
CkJsonObjectW_Dispose(unprotected);
return;
}
sbContent = CkStringBuilderW_Create();
CkStringBuilderW_Append(sbContent,L"This is the secret content.");
sbJwe = CkStringBuilderW_Create();
success = CkJweW_EncryptSb(jwe,sbContent,L"utf-8",sbJwe);
if (success == FALSE) {
wprintf(L"%s\n",CkJweW_lastErrorText(jwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
CkJsonObjectW_Dispose(unprotected);
CkStringBuilderW_Dispose(sbContent);
CkStringBuilderW_Dispose(sbJwe);
return;
}
wprintf(L"%s\n",CkStringBuilderW_getAsString(sbJwe));
CkJweW_Dispose(jwe);
CkJsonObjectW_Dispose(header);
CkJsonObjectW_Dispose(unprotected);
CkStringBuilderW_Dispose(sbContent);
CkStringBuilderW_Dispose(sbJwe);
}