Zig
Zig
REST Basic Auth with Secure Strings
Demonstrates how to do REST Basic authentication using secure strings.This example requires Chilkat v9.5.0.71 or greater.
Chilkat Zig Downloads
const std = @import("std");
const chilkat = @import("chilkat");
pub fn main(init: std.process.Init) !void {
const alloc = init.arena.allocator();
// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
// Imagine we've previously saved our encrypted login and password within a JSON config file
// that contains this:
// {
// "http_login": "mCrOmA7mBA7Au9RuJGb9hw==",
// "http_password": "jJtiI9TgErTTpqBz9JtHBw=="
// }
const json = try chilkat.JsonObject.init();
defer json.deinit();
json.loadFile("qa_data/passwords/http.json") catch {};
const crypt = try chilkat.Crypt2.init();
defer crypt.deinit();
// These are the encryption settings we previously used to encrypt the credentials within the JSON config file.
crypt.setCryptAlgorithm("aes");
crypt.setCipherMode("cbc");
crypt.setKeyLength(128);
crypt.setEncodedKey("000102030405060708090A0B0C0D0E0F", "hex");
crypt.setEncodedIV("000102030405060708090A0B0C0D0E0F", "hex");
crypt.setEncodingMode("base64");
const ss_login = try chilkat.SecureString.init();
defer ss_login.deinit();
const ss_password = try chilkat.SecureString.init();
defer ss_password.deinit();
// Decrypt to the secure string. (the strings will still held in memory encrypted, but are now encrypted using
// a randomly generated session key.)
crypt.decryptSecureENC(try json.stringOf(alloc, "http_login"), ss_login) catch {};
crypt.decryptSecureENC(try json.stringOf(alloc, "http_password"), ss_password) catch {};
const rest = try chilkat.Rest.init();
defer rest.deinit();
// Connect to a REST server.
const b_tls = true;
const port = 443;
const b_auto_reconnect = true;
try rest.connect("chilkatsoft.com", port, b_tls, b_auto_reconnect);
// Cause the "Authorization: Basic ..." header to be added to HTTP requests
rest.setAuthBasicSecure(ss_login, ss_password) catch {};
_ = rest.fullRequestNoBody(alloc, "GET", "/helloWorld.html") catch {
std.debug.print("{s}\n", .{try rest.getLastErrorText(alloc)});
return;
};
// Show the LastRequestHeader that was sent.
std.debug.print("{s}\n", .{try rest.getLastRequestHeader(alloc)});
// The LastRequestHeader looks like this:
// Host: chilkatsoft.com
// Authorization: Basic bXlIdHRwTG9naW46bXlIdHRwUGFzc3dvcmQ=
}