Sample code for 30+ languages & platforms
DataFlex

Duplicate OpensSSL to Sign File and Output Binary DER

See more OpenSSL Examples

This example duplicates the following:
openssl smime -sign -in INPUT.xml -signer SIGN.PEM -passin pass:MYPASS -outform der -binary -nodetach -out SIGNED.P7M

Note: Although "smime" is the OpenSSL command, it's not actually producing S/MIME. The arguments "-outform der -binary" indicates that the output is binary DER (i.e. the PKCS7 binary signature). The input can be any type of file: XML, PDF, JPG, ... *anything*...

Chilkat DataFlex Downloads

DataFlex
Use ChilkatAx-win32.pkg

Procedure Test
    Boolean iSuccess
    Handle hoCrypt
    Handle hoPem
    Variant vPrivkey
    Handle hoPrivkey
    Variant vCert
    Handle hoCert
    Variant vCertFromP12
    Handle hoCertFromP12
    String sTemp1

    Move False To iSuccess

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    Get Create (RefClass(cComChilkatCrypt2)) To hoCrypt
    If (Not(IsComObjectCreated(hoCrypt))) Begin
        Send CreateComObject of hoCrypt
    End

    // Load the PEM containing cert + private key.
    Get Create (RefClass(cComChilkatPem)) To hoPem
    If (Not(IsComObjectCreated(hoPem))) Begin
        Send CreateComObject of hoPem
    End
    Get ComLoadPemFile Of hoPem "qa_data/pem/myPem.pem" "password" To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoPem To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    Get Create (RefClass(cComChilkatPrivateKey)) To hoPrivkey
    If (Not(IsComObjectCreated(hoPrivkey))) Begin
        Send CreateComObject of hoPrivkey
    End
    Get pvComObject of hoPrivkey to vPrivkey
    Get ComPrivateKeyAt Of hoPem 0 vPrivkey To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoPem To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    Get Create (RefClass(cComChilkatCert)) To hoCert
    If (Not(IsComObjectCreated(hoCert))) Begin
        Send CreateComObject of hoCert
    End
    Get pvComObject of hoCert to vCert
    Get ComCertAt Of hoPem 0 vCert To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoPem To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    Get pvComObject of hoCert to vCert
    Get pvComObject of hoPrivkey to vPrivkey
    Get ComSetSigningCert2 Of hoCrypt vCert vPrivkey To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoCrypt To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    // Alternatively, we could use a .pfx/.p12 file.
    // (Chilkat also supports other formats/sources for cert/private keys...)
    Get Create (RefClass(cComChilkatCert)) To hoCertFromP12
    If (Not(IsComObjectCreated(hoCertFromP12))) Begin
        Send CreateComObject of hoCertFromP12
    End
    Get ComLoadPfxFile Of hoCertFromP12 "qa_data/p12/myP12.p12" "password" To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoCertFromP12 To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    // The certificate, when loaded from a .pfx/.p12, will automatically 
    // include the associated private key, assuming it's present in the .p12.
    // We don't have to explicitly provide the private key as in the
    // lines of code above that use the PEM file.
    Get pvComObject of hoCertFromP12 to vCertFromP12
    Get ComSetSigningCert Of hoCrypt vCertFromP12 To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoCrypt To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    // Create the opaque signature (PKCS7 binary DER that contains both the signature and original file data).
    Get ComCreateP7M Of hoCrypt "qa_data/infile.anything" "qa_output/outfile.p7m" To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoCrypt To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    Showln "Success."


End_Procedure