Sample code for 30+ languages & platforms
PowerBuilder

Create CAdES-T Signature using Aruba TSA Server (servizi.arubapec.it)

See more CAdES Examples

Demonstrates how to create a signature with an external timestamp (using the Aruba TSA Server) that certifies the time of signing.

Note: This example requires Chilkat v9.5.0.79 or greater.

Chilkat PowerBuilder Downloads

PowerBuilder
integer li_rc
integer li_Success
oleobject loo_Crypt
oleobject loo_Cert
string ls_PfxPath
string ls_PfxPassword
oleobject loo_Attrs
string ls_InFile
string ls_OutFile

li_Success = 0

// This example requires the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.

loo_Crypt = create oleobject
li_rc = loo_Crypt.ConnectToNewObject("Chilkat.Crypt2")
if li_rc < 0 then
    destroy loo_Crypt
    MessageBox("Error","Connecting to COM object failed")
    return
end if

// This example will use a certificate + private key from a .pfx/.p12 file.
// On Windows systems, it is also possible to use certs on smartcards/usb tokens or certs pre-installed in the Windows registry.
loo_Cert = create oleobject
li_rc = loo_Cert.ConnectToNewObject("Chilkat.Cert")

ls_PfxPath = "qa_data/pfx/myCertAndKey.p12"
ls_PfxPassword = "test123"

li_Success = loo_Cert.LoadPfxFile(ls_PfxPath,ls_PfxPassword)
if li_Success <> 1 then
    Write-Debug loo_Cert.LastErrorText
    destroy loo_Crypt
    destroy loo_Cert
    return
end if

li_Success = loo_Crypt.SetSigningCert(loo_Cert)

// Use SHA-256 rather than the default of SHA-1
loo_Crypt.HashAlgorithm = "sha256"

// Create JSON that tells Chilkat what signing attributes to include:
loo_Attrs = create oleobject
li_rc = loo_Attrs.ConnectToNewObject("Chilkat.JsonObject")

loo_Attrs.UpdateBool("contentType",1)
loo_Attrs.UpdateBool("signingTime",1)
loo_Attrs.UpdateBool("messageDigest",1)
loo_Attrs.UpdateBool("signingCertificateV2",1)

// A CAdES-T signature is one that includes a timestampToken created by an online TSA (time stamping authority).
// We must include the TSA's URL, as well as a few options to indicate what is desired.
// This example uses the Aruba TSA server, which requires a login/password for the HTTPS request.
loo_Attrs.UpdateBool("timestampToken.enabled",1)
loo_Attrs.UpdateString("timestampToken.tsaUrl","https://servizi.arubapec.it/tsa/ngrequest.php")

// The tsaUsername/tsaPassword feature was added in Chilkat v9.5.0.79.
// Make sure you are using a version of Chilkat that is no older than v9.5.0.79
loo_Attrs.UpdateString("timestampToken.tsaUsername","arubaTsaUsername")
loo_Attrs.UpdateString("timestampToken.tsaPassword","arubaTsaPassword")

loo_Attrs.UpdateBool("timestampToken.addNonce",0)
loo_Attrs.UpdateBool("timestampToken.requestTsaCert",1)
loo_Attrs.UpdateString("timestampToken.hashAlg","sha256")

loo_Crypt.SigningAttributes = loo_Attrs.Emit()

ls_InFile = "qa_data/json/sample.json"
ls_OutFile = "qa_output/sample_cades_t.p7m"

// This creates the CAdES-T signature.  During the signature creation, it
// communicates with the TSA to get a timestampToken.
li_Success = loo_Crypt.CreateP7M(ls_InFile,ls_OutFile)
if li_Success <> 1 then
    Write-Debug loo_Crypt.LastErrorText
    destroy loo_Crypt
    destroy loo_Cert
    destroy loo_Attrs
    return
end if

Write-Debug "Success."


destroy loo_Crypt
destroy loo_Cert
destroy loo_Attrs