Sample code for 30+ languages & platforms
Xbase++

Create an Opaque (Attached) S/MIME Signature

See more MIME Examples

Demonstrates the Chilkat Mime.ConvertToSigned method, which creates an opaque (attached) S/MIME signature. The only argument is the signing Cert. On success the entity is replaced by a CMS/PKCS #7 signed-data structure that wraps the content inside the signature.

Note: The file paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.

Background: An opaque signature bundles the content inside the CMS structure, so the message is a single application/pkcs7-mime blob that only S/MIME-aware software can read. It is more tamper-resistant in transit — nothing can alter the content without breaking the wrapper — at the cost of the backward compatibility a detached signature offers. Use it when every recipient is known to support S/MIME.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oMime
LOCAL cPfxPassword
LOCAL oCert

nSuccess := 0

oMime := CreateObject("Chilkat.Mime")
nSuccess := oMime:SetBodyFromPlainText("This message will be signed.")
IF (nSuccess == 0)
    ? oMime:LastErrorText
    oMime:destroy()
    RETURN
ENDIF

//  Load the signing certificate (which must have access to its private key) from a PFX file.
//  The PFX password should come from a secure source rather than being hard-coded.
cPfxPassword := "myPfxPassword"
oCert := CreateObject("Chilkat.Cert")
nSuccess := oCert:LoadPfxFile("qa_data/signer.pfx", cPfxPassword)
IF (nSuccess == 0)
    ? oCert:LastErrorText
    oMime:destroy()
    oCert:destroy()
    RETURN
ENDIF

//  Create an OPAQUE (attached) S/MIME signature.  The entity is replaced by a CMS/PKCS #7
//  signed-data structure that wraps the content inside the signature.
nSuccess := oMime:ConvertToSigned(oCert)
IF (nSuccess == 0)
    ? oMime:LastErrorText
    oMime:destroy()
    oCert:destroy()
    RETURN
ENDIF

nSuccess := oMime:SaveMime("qa_output/signed_opaque.eml")
IF (nSuccess == 0)
    ? oMime:LastErrorText
    oMime:destroy()
    oCert:destroy()
    RETURN
ENDIF

? "Message converted to an opaque signed message."

oMime:destroy()
oCert:destroy()