Sample code for 30+ languages & platforms
Unicode C

Add a Detached Signature with a Separate Private Key

See more MIME Examples

Demonstrates the Chilkat Mime.AddDetachedSignaturePk method, which creates a detached signature using a signer certificate and its separately supplied private key. The first argument is the Cert and the second is the PrivateKey.

Note: The file paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.

Background: Sometimes the certificate and its private key live apart — a .cer alongside a PEM key file, for instance — rather than bundled in a single PFX. This method pairs them explicitly for signing, whereas AddDetachedSignature expects a Cert that already provides its key. The result is the same multipart/signed message.

Chilkat Unicode C Downloads

Unicode C
#include <C_CkMimeW.h>
#include <C_CkCertW.h>
#include <C_CkPrivateKeyW.h>

void ChilkatSample(void)
    {
    BOOL success;
    HCkMimeW mime;
    HCkCertW cert;
    HCkPrivateKeyW privKey;

    success = FALSE;

    mime = CkMimeW_Create();
    success = CkMimeW_SetBodyFromPlainText(mime,L"This message will be signed.");
    if (success == FALSE) {
        wprintf(L"%s\n",CkMimeW_lastErrorText(mime));
        CkMimeW_Dispose(mime);
        return;
    }

    //  Load the certificate and its private key separately.
    cert = CkCertW_Create();
    success = CkCertW_LoadFromFile(cert,L"qa_data/signer.cer");
    if (success == FALSE) {
        wprintf(L"%s\n",CkCertW_lastErrorText(cert));
        CkMimeW_Dispose(mime);
        CkCertW_Dispose(cert);
        return;
    }

    privKey = CkPrivateKeyW_Create();
    success = CkPrivateKeyW_LoadPemFile(privKey,L"qa_data/signer_privkey.pem");
    if (success == FALSE) {
        wprintf(L"%s\n",CkPrivateKeyW_lastErrorText(privKey));
        CkMimeW_Dispose(mime);
        CkCertW_Dispose(cert);
        CkPrivateKeyW_Dispose(privKey);
        return;
    }

    //  Create a detached signature when the certificate and private key are supplied separately.  The
    //  1st argument is the signer certificate and the 2nd is its private key.
    success = CkMimeW_AddDetachedSignaturePk(mime,cert,privKey);
    if (success == FALSE) {
        wprintf(L"%s\n",CkMimeW_lastErrorText(mime));
        CkMimeW_Dispose(mime);
        CkCertW_Dispose(cert);
        CkPrivateKeyW_Dispose(privKey);
        return;
    }

    success = CkMimeW_SaveMime(mime,L"qa_output/signed.eml");
    if (success == FALSE) {
        wprintf(L"%s\n",CkMimeW_lastErrorText(mime));
        CkMimeW_Dispose(mime);
        CkCertW_Dispose(cert);
        CkPrivateKeyW_Dispose(privKey);
        return;
    }

    wprintf(L"Detached signature added.\n");


    CkMimeW_Dispose(mime);
    CkCertW_Dispose(cert);
    CkPrivateKeyW_Dispose(privKey);

    }