Classic ASP
Classic ASP
Create a CAdES-T Signature
See more CAdES Examples
Demonstrates how to create a signature with an external timestamp that certifies the time of signing. This requires an online TSA (Time Stamping Authority) service that is capable of producing RFC 3161 compliant timestamps.Note: This example requires Chilkat v9.5.0.78 or greater.
Chilkat Classic ASP Downloads
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body>
<%
success = 0
' This example requires the Chilkat API to have been previously unlocked.
' See Global Unlock Sample for sample code.
set crypt = Server.CreateObject("Chilkat.Crypt2")
' This example will use a certificate + private key from a .pfx/.p12 file.
' On Windows systems, it is also possible to use certs on smartcards/usb tokens or certs pre-installed in the Windows registry.
set cert = Server.CreateObject("Chilkat.Cert")
pfxPath = "qa_data/pfx/myCertAndKey.p12"
pfxPassword = "test123"
success = cert.LoadPfxFile(pfxPath,pfxPassword)
If (success <> 1) Then
Response.Write "<pre>" & Server.HTMLEncode( cert.LastErrorText) & "</pre>"
Response.End
End If
success = crypt.SetSigningCert(cert)
' Use SHA-256 rather than the default of SHA-1
crypt.HashAlgorithm = "sha256"
' Create JSON that tells Chilkat what signing attributes to include:
set attrs = Server.CreateObject("Chilkat.JsonObject")
success = attrs.UpdateBool("contentType",1)
success = attrs.UpdateBool("signingTime",1)
success = attrs.UpdateBool("messageDigest",1)
success = attrs.UpdateBool("signingCertificateV2",1)
' A CAdES-T signature is one that includes a timestampToken created by an online TSA (time stamping authority).
' We must include the TSA's URL, as well as a few options to indicate what is desired.
' Except for the TSA URL, the options shown here are typically what you would need.
success = attrs.UpdateBool("timestampToken.enabled",1)
success = attrs.UpdateString("timestampToken.tsaUrl","https://freetsa.org/tsr")
success = attrs.UpdateBool("timestampToken.addNonce",0)
success = attrs.UpdateBool("timestampToken.requestTsaCert",1)
success = attrs.UpdateString("timestampToken.hashAlg","sha256")
crypt.SigningAttributes = attrs.Emit()
inFile = "qa_data/json/sample.json"
outFile = "qa_output/sample_cades_t.p7m"
' This creates the CAdES-T signature. During the signature creation, it
' communicates with the TSA to get a timestampToken.
success = crypt.CreateP7M(inFile,outFile)
If (success <> 1) Then
Response.Write "<pre>" & Server.HTMLEncode( crypt.LastErrorText) & "</pre>"
Response.End
End If
Response.Write "<pre>" & Server.HTMLEncode( "Success.") & "</pre>"
%>
</body>
</html>