Sample code for 30+ languages & platforms
DataFlex

Create CAdES Signature (.p7s) Compliant with ICP-Brazil Digital Signature Standard

See more CAdES Examples

Demonstrates how to create a CMS signature w/ policy ID that is compliant with the ICP-Brazil Digital Signature Standard.

Chilkat DataFlex Downloads

DataFlex
Use ChilkatAx-win32.pkg

Procedure Test
    Boolean iSuccess
    Handle hoCrypt
    Variant vCert
    Handle hoCert
    Handle hoAttrs
    String sInFile
    String sOutFile
    String sTemp1

    Move False To iSuccess

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    // ------------------------------------------------------------------------------------------------------
    // Note: This example creates a CAdES (CMS) signature (.p7s) that contains the PDF.
    // It is different than signing a PDF.  To sign a PDF where the resulting PDF contains the CMS signature,
    // see this example:  Sign PDF for ICP-Brasil
    // ------------------------------------------------------------------------------------------------------

    Get Create (RefClass(cComChilkatCrypt2)) To hoCrypt
    If (Not(IsComObjectCreated(hoCrypt))) Begin
        Send CreateComObject of hoCrypt
    End

    Get Create (RefClass(cComChilkatCert)) To hoCert
    If (Not(IsComObjectCreated(hoCert))) Begin
        Send CreateComObject of hoCert
    End
    Get ComLoadPfxFile Of hoCert "mySigningCert.pfx" "pfxPassword" To iSuccess
    If (iSuccess <> True) Begin
        Get ComLastErrorText Of hoCert To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    Get pvComObject of hoCert to vCert
    Get ComSetSigningCert Of hoCrypt vCert To iSuccess

    // See https://www.gov.br/iti/pt-br/assuntos/repositorio/artefatos-de-assinatura-digital

    // Create JSON to indicate which signing attributes to include.
    Get Create (RefClass(cComChilkatJsonObject)) To hoAttrs
    If (Not(IsComObjectCreated(hoAttrs))) Begin
        Send CreateComObject of hoAttrs
    End
    Get ComUpdateBool Of hoAttrs "contentType" True To iSuccess
    Get ComUpdateBool Of hoAttrs "signingTime" True To iSuccess
    Get ComUpdateBool Of hoAttrs "messageDigest" True To iSuccess
    Get ComUpdateBool Of hoAttrs "signingCertificateV2" True To iSuccess

    Get ComUpdateString Of hoAttrs "policyId.hashAlg" "SHA256" To iSuccess

    // Listed here are the currently existing profiles. (Chilkat will add additional ICP Brasil policy profiles in future versions as new ones are created.)
    // See https://www.gov.br/iti/pt-br/assuntos/repositorio/artefatos-de-assinatura-digital for more information.
    // 
    // PA_AD_RA --> 2.16.76.1.7.1.5.1
    // PA_AD_RA_v1_1 --> 2.16.76.1.7.1.5.1.1
    // PA_AD_RA_v1_2 --> 2.16.76.1.7.1.5.1.2
    // PA_AD_RA_v2_0 --> 2.16.76.1.7.1.5.2
    // PA_AD_RA_v2_1 --> 2.16.76.1.7.1.5.2.1
    // PA_AD_RA_v2_2 --> 2.16.76.1.7.1.5.2.2
    // PA_AD_RA_v2_3 --> 2.16.76.1.7.1.5.2.3
    // PA_AD_RA_v2_4 --> 2.16.76.1.7.1.5.2.4
    // PA_AD_RB --> 2.16.76.1.7.1.1.1
    // PA_AD_RB_v1_1 --> 2.16.76.1.7.1.1.1.1
    // PA_AD_RB_v2_0 --> 2.16.76.1.7.1.1.2
    // PA_AD_RB_v2_1 --> 2.16.76.1.7.1.1.2.1
    // PA_AD_RB_v2_2 --> 2.16.76.1.7.1.1.2.2
    // PA_AD_RB_v2_3 --> 2.16.76.1.7.1.1.2.3
    // PA_AD_RC --> 2.16.76.1.7.1.4.1
    // PA_AD_RC_v1_1 --> 2.16.76.1.7.1.4.1.1
    // PA_AD_RC_v2_0 --> 2.16.76.1.7.1.4.2
    // PA_AD_RC_v2_1 --> 2.16.76.1.7.1.4.2.1
    // PA_AD_RC_v2_2 --> 2.16.76.1.7.1.4.2.2
    // PA_AD_RC_v2_3 --> 2.16.76.1.7.1.4.2.3
    // PA_AD_RT --> 2.16.76.1.7.1.2.1
    // PA_AD_RT_v1_1 --> 2.16.76.1.7.1.2.1.1
    // PA_AD_RT_v2_0 --> 2.16.76.1.7.1.2.2
    // PA_AD_RT_v2_1 --> 2.16.76.1.7.1.2.2.1
    // PA_AD_RT_v2_2 --> 2.16.76.1.7.1.2.2.2
    // PA_AD_RT_v2_3 --> 2.16.76.1.7.1.2.2.3
    // PA_AD_RV --> 2.16.76.1.7.1.3.1
    // PA_AD_RV_v1_1 --> 2.16.76.1.7.1.3.1.1
    // PA_AD_RV_v2_0 --> 2.16.76.1.7.1.3.2
    // PA_AD_RV_v2_1 --> 2.16.76.1.7.1.3.2.1
    // PA_AD_RV_v2_2 --> 2.16.76.1.7.1.3.2.2
    // PA_AD_RV_v2_3 --> 2.16.76.1.7.1.3.2.3

    // Set the policy OID and the profile name
    Get ComUpdateString Of hoAttrs "policyId.id" "2.16.76.1.7.1.1.2.3" To iSuccess
    Get ComUpdateString Of hoAttrs "policyId.profile" "PA_AD_RB_v2_3" To iSuccess

    Get ComEmit Of hoAttrs To sTemp1
    Set ComSigningAttributes Of hoCrypt To sTemp1

    // The input file can be any type of file.
    Move "toBeSigned.pdf" To sInFile
    Move "signed.pdf.p7s" To sOutFile

    Get ComCreateP7M Of hoCrypt sInFile sOutFile To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoCrypt To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    Showln "Success."


End_Procedure