Sample code for 30+ languages & platforms
B4X

Plaza API (bol.com) HMAC-SHA256 Authentication

See more Encryption Examples

Demonstrates how to compute the Authorization header for bol.com using HMAC-SHA256.

Chilkat B4X Downloads

B4X
'  This example assumes the Chilkat API to have been previously unlocked.
'  See Global Unlock Sample for sample code.

Dim crypt As ChilkatCrypt2
crypt.Initialize("crypt")

crypt.EncodingMode = "base64"
crypt.HashAlgorithm = "sha256"
crypt.MacAlgorithm = "hmac"

Dim publicKey As String = "oRNWbHFXtAECmhnZmEndcjLIaSKbRMVE"
Dim privateKey As String = "MaQHPOnmYkPZNgeRziPnQyyOJYytUbcFBVJBvbMKoDdpPqaZbaOiLUTWzPAkpPsZFZbJHrcoltdgpZolyNcgvvBaKcmkqFjucFzXhDONTsPAtHHyccQlLUZpkOuywMiOycDWcCySFsgpDiyGnCWCZJkNTtVdPxbSUTWVIFQiUxaPDYDXRQAVVTbSVZArAZkaLDLOoOvPzxSdhnkkJWzlQDkqsXNKfAIgAldrmyfROSyCGMCfvzdQdUQEaYZTPEoA"

'  The string to sign is this:
'  http_verb +'\n\n'+ content_type +'\n'+ x_bol_date +'\n'+ 'x-bol-date:'+ x_bol_date +'\n'+ uri

Dim http_verb As String = "GET"
Dim content_type As String = "application/xml"
Dim x_bol_date As String = "Wed, 17 Feb 2016 00:00:00 GMT"
Dim uri As String = "/services/rest/orders/v2"

'  IMPORTANT: Notice the use of underscore and hyphen (dash) chars in x-bol-date vs. x_bol_date.
'  In one place hypens are used.  In two places, underscore chars are used.
Dim sb As ChilkatStringBuilder
sb.Initialize
sb.Append(http_verb)
sb.Append(Chr(10) & Chr(10))
sb.Append(content_type)
sb.Append(Chr(10))
sb.Append(x_bol_date)
sb.Append(Chr(10) & "x-bol-date:")
sb.Append(x_bol_date)
sb.Append(Chr(10))
sb.Append(uri)
Log("[" & sb.GetAsString & "]")

'  Set the HMAC key:
crypt.SetMacKeyEncoded(privateKey, "ascii")
Dim mac As String = crypt.MacStringENC(sb.GetAsString)

'  The answer should be: nqzLWvXI1eBhBXrRx5NF23V5hS8Q1xWCloJzPi/RAts=
Log(mac)

'  The last step is to append the public key with the signature
Dim sbHeader As ChilkatStringBuilder
sbHeader.Initialize
sbHeader.Append(publicKey)
sbHeader.Append(":")
sbHeader.Append(mac)

Dim hdrValue As String = sbHeader.GetAsString
Log(hdrValue)