Sample code for 30+ languages & platforms
Chilkat2-Python

Italian FatturaPA (e-Invoice) Signed XML (CADES-BES P7M) using USB SmartCard Reader

See more CAdES Examples

Demonstrates Italian e-Invoice (FatturaPA) signing by using a private key stored on a USB smartcard reader.

Chilkat Chilkat2-Python Downloads

Chilkat2-Python
import sys
import chilkat2

success = False

# This example assumes the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.

crypt = chilkat2.Crypt2()
crypt.VerboseLogging = True

cert = chilkat2.Cert()
# Use your smart card user PIN for signing.
cert.SmartCardPin = "0000"

success = cert.LoadFromSmartcard("")
if (success == False):
    print(cert.LastErrorText)
    sys.exit()

success = crypt.SetSigningCert(cert)
if (success == False):
    print(crypt.LastErrorText)
    sys.exit()

# The CadesEnabled property applies to all methods that create PKCS7 signatures. 
# To create a CAdES-BES signature, set this property equal to true.
crypt.CadesEnabled = True

crypt.HashAlgorithm = "sha256"

signedAttrs = chilkat2.JsonObject()
signedAttrs.UpdateInt("contentType",1)
signedAttrs.UpdateInt("signingTime",1)
signedAttrs.UpdateInt("messageDigest",1)
signedAttrs.UpdateInt("signingCertificateV2",1)
crypt.SigningAttributes = signedAttrs.Emit()

# Load XML such as the following:
#  <p:FatturaElettronica xmlns:p="http://ivaservizi.agenziaentrate.gov.it/docs/xsd/fatture/v1.2" versione="FPR12">
#     <FatturaElettronicaHeader>
#        <DatiTrasmissione>
# 	...
#        </DatiTrasmissione>
#        <CedentePrestatore>
# 	...
#        </CedentePrestatore>
#        <CessionarioCommittente>
# 	...
#        </CessionarioCommittente>
#     </FatturaElettronicaHeader>
#     <FatturaElettronicaBody>
#        <DatiGenerali>
#           <DatiGeneraliDocumento>
# 		...
#           </DatiGeneraliDocumento>
#        </DatiGenerali>
#        <DatiBeniServizi>
# 	...
#        </DatiBeniServizi>
#     </FatturaElettronicaBody>
#  </p:FatturaElettronica>

inputXmlPath = "c:/someDir/e-Invoice.xml"
outputP7mPath = "c:/someDir/signed.p7m"

# Create the CAdES-BES attached signature, which contains the original data.
success = crypt.CreateP7M(inputXmlPath,outputP7mPath)
if (success == False):
    print(crypt.LastErrorText)
    sys.exit()

print("Success.")