Sample code for 30+ languages & platforms
Unicode C++

REST Basic Auth with Secure Strings

Demonstrates how to do REST Basic authentication using secure strings.

This example requires Chilkat v9.5.0.71 or greater.

Chilkat Unicode C++ Downloads

Unicode C++
#include <CkJsonObjectW.h>
#include <CkCrypt2W.h>
#include <CkSecureStringW.h>
#include <CkRestW.h>

void ChilkatSample(void)
    {
    bool success = false;

    //  This example requires the Chilkat API to have been previously unlocked.
    //  See Global Unlock Sample for sample code.

    //  Imagine we've previously saved our encrypted login and password within a JSON config file
    //  that contains this:

    //  {
    //    "http_login": "mCrOmA7mBA7Au9RuJGb9hw==",
    //    "http_password": "jJtiI9TgErTTpqBz9JtHBw=="
    //  }

    CkJsonObjectW json;
    json.LoadFile(L"qa_data/passwords/http.json");

    CkCrypt2W crypt;

    //  These are the encryption settings we previously used to encrypt the credentials within the JSON config file.
    crypt.put_CryptAlgorithm(L"aes");
    crypt.put_CipherMode(L"cbc");
    crypt.put_KeyLength(128);
    crypt.SetEncodedKey(L"000102030405060708090A0B0C0D0E0F",L"hex");
    crypt.SetEncodedIV(L"000102030405060708090A0B0C0D0E0F",L"hex");
    crypt.put_EncodingMode(L"base64");

    CkSecureStringW ssLogin;
    CkSecureStringW ssPassword;

    //  Decrypt to the secure string.  (the strings will still held in memory encrypted, but are now encrypted using
    //  a randomly generated session key.)
    crypt.DecryptSecureENC(json.stringOf(L"http_login"),ssLogin);
    crypt.DecryptSecureENC(json.stringOf(L"http_password"),ssPassword);

    CkRestW rest;

    //  Connect to a REST server.
    bool bTls = true;
    int port = 443;
    bool bAutoReconnect = true;
    success = rest.Connect(L"chilkatsoft.com",port,bTls,bAutoReconnect);

    //  Cause the "Authorization: Basic ..." header to be added to HTTP requests
    rest.SetAuthBasicSecure(ssLogin,ssPassword);

    const wchar_t *responseJson = rest.fullRequestNoBody(L"GET",L"/helloWorld.html");
    if (rest.get_LastMethodSuccess() != true) {
        wprintf(L"%s\n",rest.lastErrorText());
        return;
    }

    //  Show the LastRequestHeader that was sent.
    wprintf(L"%s\n",rest.lastRequestHeader());

    //  The LastRequestHeader looks like this:

    //  Host: chilkatsoft.com
    //  Authorization: Basic bXlIdHRwTG9naW46bXlIdHRwUGFzc3dvcmQ=
    }