Chilkat Examples

ChilkatHOME.NET Core C#Android™AutoItCC#C++Chilkat2-PythonCkPythonClassic ASPDataFlexDelphi ActiveXDelphi DLLGoJavaLianjaMono C#Node.jsObjective-CPHP ActiveXPHP ExtensionPerlPowerBuilderPowerShellPureBasicRubySQL ServerSwift 2Swift 3,4,5...TclUnicode CUnicode C++VB.NETVBScriptVisual Basic 6.0Visual FoxProXojo Plugin

DataFlex Examples

Web API Categories

ASN.1
AWS KMS
AWS Misc
Amazon EC2
Amazon Glacier
Amazon S3
Amazon S3 (new)
Amazon SES
Amazon SNS
Amazon SQS
Async
Azure Cloud Storage
Azure Key Vault
Azure Service Bus
Azure Table Service
Base64
Bounced Email
Box
CAdES
CSR
CSV
Certificates
Cloud Signature CSC
Code Signing
Compression
DKIM / DomainKey
DNS
DSA
Diffie-Hellman
Digital Signatures
Dropbox
Dynamics CRM
EBICS
ECC
Ed25519
Email Object
Encryption
FTP
FileAccess
Firebase
GMail REST API
GMail SMTP/IMAP/POP
Geolocation
Google APIs
Google Calendar
Google Cloud SQL
Google Cloud Storage
Google Drive
Google Photos
Google Sheets
Google Tasks
Gzip
HTML-to-XML/Text
HTTP

HTTP Misc
IMAP
JSON
JSON Web Encryption (JWE)
JSON Web Signatures (JWS)
JSON Web Token (JWT)
Java KeyStore (JKS)
MHT / HTML Email
MIME
MS Storage Providers
Microsoft Graph
Misc
NTLM
OAuth1
OAuth2
OIDC
Office365
OneDrive
OpenSSL
Outlook
Outlook Calendar
Outlook Contact
PDF Signatures
PEM
PFX/P12
PKCS11
POP3
PRNG
REST
REST Misc
RSA
SCP
SCard
SFTP
SMTP
SSH
SSH Key
SSH Tunnel
ScMinidriver
SharePoint
SharePoint Online
Signing in the Cloud
Socket/SSL/TLS
Spider
Stream
Tar Archive
ULID/UUID
Upload
WebSocket
XAdES
XML
XML Digital Signatures
XMP
Zip
curl
uncategorized

 

 

 

(DataFlex) Validate a .pkpass Archive

Opens a .pkpass archive (which is just a .zip renamed to .pkpass) and validates the contents. The hashes in the manifest are compared with the computed hash values for each individual file. If all computed hash values match, then the signature is verified.

Chilkat ActiveX Downloads

ActiveX for 32-bit and 64-bit Windows

Use ChilkatAx-win32.pkg

Procedure Test
    Handle hoCrypt
    Handle hoZip
    Boolean iSuccess
    Variant vEnt
    Handle hoEnt
    Variant vBdManifest
    Handle hoBdManifest
    Handle hoJson
    Boolean iSomeHashesFailed
    String sFilename
    Handle hoSbHashHex
    Variant vBdFileData
    Handle hoBdFileData
    Integer iNumMembers
    Integer i
    String sComputedHashHex
    Variant vBdSignature
    Handle hoBdSignature
    Boolean iVerified
    String sTemp1
    Boolean bTemp1

    // This example assumes the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    Get Create (RefClass(cComChilkatCrypt2)) To hoCrypt
    If (Not(IsComObjectCreated(hoCrypt))) Begin
        Send CreateComObject of hoCrypt
    End
    Get Create (RefClass(cComChilkatZip)) To hoZip
    If (Not(IsComObjectCreated(hoZip))) Begin
        Send CreateComObject of hoZip
    End

    Get ComOpenZip Of hoZip "qa_data/pkpass/invalid.pkpass" To iSuccess
    If (iSuccess = False) Begin
        Get ComLastErrorText Of hoZip To sTemp1
        Showln sTemp1
        Procedure_Return
    End

    // Get the contents of the manifest.json file, which contains something like this:

    // {
    //   "icon.png" : "0296b01347b3173e98438a003b0e88986340b2d8",
    //   "logo.png" : "25de09e2d3b01ce1fe00c2ca9a90a2be1aaa05cf",
    //   "icon@2x.png" : "5afd9585b08c65fdf105a90c8bd643407cba2787",
    //   "pass.json" : "145ea5a5db784fff485126c77ecf7a1fc2a88ee7",
    //   "strip@2x.png" : "468fa7bc93e6b55342b56fda09bdce7c829d7d46",
    //   "strip.png" : "736d01f84cb73d06e8a9932e43076d68f19461ff"
    // }

    Get ComGetEntryByName Of hoZip "manifest.json" To vEnt
    If (IsComObject(vEnt)) Begin
        Get Create (RefClass(cComChilkatZipEntry)) To hoEnt
        Set pvComObject Of hoEnt To vEnt
    End
    Get ComLastMethodSuccess Of hoZip To bTemp1
    If (bTemp1 = False) Begin
        Showln "manifest.json entry not found."
        Procedure_Return
    End

    // Get the exact content of the manifest.json for later signature verification.
    Get Create (RefClass(cComChilkatBinData)) To hoBdManifest
    If (Not(IsComObjectCreated(hoBdManifest))) Begin
        Send CreateComObject of hoBdManifest
    End
    Get pvComObject of hoBdManifest to vBdManifest
    Get ComUnzipToBd Of hoEnt vBdManifest To iSuccess

    Get Create (RefClass(cComChilkatJsonObject)) To hoJson
    If (Not(IsComObjectCreated(hoJson))) Begin
        Send CreateComObject of hoJson
    End
    Set ComEmitCompact Of hoJson To False
    Get ComUnzipToString Of hoEnt 0 "utf-8" To sTemp1
    Get ComLoad Of hoJson sTemp1 To iSuccess
    Get ComEmit Of hoJson To sTemp1
    Showln sTemp1

    Send Destroy of hoEnt

    // For each file in the JSON, get the filename and hex hash value.
    Set ComEncodingMode Of hoCrypt To "hexlower"
    Set ComHashAlgorithm Of hoCrypt To "sha1"

    Move False To iSomeHashesFailed

    Get Create (RefClass(cComChilkatStringBuilder)) To hoSbHashHex
    If (Not(IsComObjectCreated(hoSbHashHex))) Begin
        Send CreateComObject of hoSbHashHex
    End
    Get Create (RefClass(cComChilkatBinData)) To hoBdFileData
    If (Not(IsComObjectCreated(hoBdFileData))) Begin
        Send CreateComObject of hoBdFileData
    End
    Get ComSize Of hoJson To iNumMembers
    Move 0 To i
    While (i < iNumMembers)
        Get ComNameAt Of hoJson i To sFilename
        Send ComClear To hoSbHashHex
        Get ComStringAt Of hoJson i To sTemp1
        Get ComAppend Of hoSbHashHex sTemp1 To iSuccess

        Get ComGetEntryByName Of hoZip sFilename To vEnt
        If (IsComObject(vEnt)) Begin
            Get Create (RefClass(cComChilkatZipEntry)) To hoEnt
            Set pvComObject Of hoEnt To vEnt
        End
        Get ComLastMethodSuccess Of hoZip To bTemp1
        If (bTemp1 = False) Begin
            Showln sFilename " not found in the pkpass file."
            Procedure_Return
        End

        // Get the data for this file.
        Get ComClear Of hoBdFileData To iSuccess
        Get pvComObject of hoBdFileData to vBdFileData
        Get ComUnzipToBd Of hoEnt vBdFileData To iSuccess

        Get pvComObject of hoBdFileData to vBdFileData
        Get ComHashBdENC Of hoCrypt vBdFileData To sComputedHashHex
        Get ComContentsEqual Of hoSbHashHex sComputedHashHex False To bTemp1
        If (bTemp1 = False) Begin
            Showln "Computed hash does not match stored hash for " sFilename
            Showln "  computed: " sComputedHashHex
            Get ComGetAsString Of hoSbHashHex To sTemp1
            Showln "  stored:   " sTemp1
            Move True To iSomeHashesFailed
        End
        Else Begin
            Showln "hash verified for " sFilename "(" sComputedHashHex ")"
        End

        Send Destroy of hoEnt

        Move (i + 1) To i
    Loop

    If (iSomeHashesFailed = True) Begin
        Showln "Some hashes failed."
        Procedure_Return
    End

    // Let's verify the signature..
    // First get the signature.
    Get ComGetEntryByName Of hoZip "signature" To vEnt
    If (IsComObject(vEnt)) Begin
        Get Create (RefClass(cComChilkatZipEntry)) To hoEnt
        Set pvComObject Of hoEnt To vEnt
    End
    Get ComLastMethodSuccess Of hoZip To bTemp1
    If (bTemp1 = False) Begin
        Showln "signature not found in the pkpass file."
        Procedure_Return
    End

    Get Create (RefClass(cComChilkatBinData)) To hoBdSignature
    If (Not(IsComObjectCreated(hoBdSignature))) Begin
        Send CreateComObject of hoBdSignature
    End
    Get pvComObject of hoBdSignature to vBdSignature
    Get ComUnzipToBd Of hoEnt vBdSignature To iSuccess
    Send Destroy of hoEnt

    // Show the contents of the signature in base64 encoding.
    Showln "Signature:"
    Get ComGetEncoded Of hoBdSignature "base64_mime" To sTemp1
    Showln sTemp1
    Showln "----"

    // Verify the signature against the manifest.json
    Set ComEncodingMode Of hoCrypt To "base64"
    Get pvComObject of hoBdManifest to vBdManifest
    Get ComGetEncoded Of hoBdSignature "base64" To sTemp1
    Get ComVerifyBdENC Of hoCrypt vBdManifest sTemp1 To iVerified
    If (iVerified = False) Begin
        Get ComLastErrorText Of hoCrypt To sTemp1
        Showln sTemp1
    End

    Showln "signature verified = " iVerified


End_Procedure

 

© 2000-2024 Chilkat Software, Inc. All Rights Reserved.