Sample code for 30+ languages & platforms
Chilkat2-Python

Get ETK Public Key (api-acpt.ehealth.fgov.be)

See more Belgian eHealth Platform Examples

The following URL returns JSON, which contains a PKCS7 signed data:
https://api-acpt.ehealth.fgov.be/etee/v1/etks?identifier=12345678901&type=SSIN

This example extracts the signed data, validates it, and then extracts the public key from the certificate (obtained from signed content in the PKCS7)

Note: The URL above uses "12345678901" which is not valid. You should replace it with a valid number.

Chilkat Chilkat2-Python Downloads

Chilkat2-Python
import sys
import chilkat2

success = False

# This example requires the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.

http = chilkat2.Http()

jsonStr = http.QuickGetStr("https://api-acpt.ehealth.fgov.be/etee/v1/etks?identifier=12345678901&type=SSIN")
if (http.LastMethodSuccess == False):
    print(http.LastErrorText)
    sys.exit()

print(jsonStr)

# The JSON contains something like this:

# [
#     {
#         "key": {
#             "applicationIdentifier": "",
#             "ssin": "12345678901"
#         },
#         "value": "MIAGCSq....AAAAAAAA=="
#     }
# ]

# Note: The above is a JSON array (not a JSON object)
# It should be loaded into a Chilkat JSON array.
jarr = chilkat2.JsonArray()
success = jarr.Load(jsonStr)
if (success == False):
    print("Failed to load JSON.")
    sys.exit()

# json is a CkJsonObject
json = jarr.ObjectAt(0)
bdPkcs7 = chilkat2.BinData()
bdPkcs7.AppendEncoded(json.StringOf("value"),"base64")

# Let's verify the PKCS7, and then examine the signing cert,
# and get the signing cert's public key.
crypt = chilkat2.Crypt2()

# Validate the signedData PKCS7, and replace the contents of bdPkcs7 with the extracted signed content.
success = crypt.OpaqueVerifyBd(bdPkcs7)
if (success == False):
    print(crypt.LastErrorText)
    sys.exit()

# The signed content is the DER of a certificate.
# In other words, bdPkcs7 now contains a certificate.
cert = chilkat2.Cert()
success = cert.LoadFromBd(bdPkcs7)
if (success == False):
    print(cert.LastErrorText)
    sys.exit()

# Show some certificate information:
print("Subject: " + cert.SubjectDN)
print("Serial: " + cert.SerialNumber)
print("Issuer: " + cert.IssuerDN)

# Let's get the cert's public key...
pubKey = chilkat2.PublicKey()
cert.GetPublicKey(pubKey)

# OK, you now have the public key and can do whatever is needed..
print(pubKey.KeyType)
print(str(pubKey.KeySize))