Chilkat HOME Android™ AutoIt C C# C++ Chilkat2-Python CkPython Classic ASP DataFlex Delphi DLL Go Java Node.js Objective-C PHP Extension Perl PowerBuilder PowerShell PureBasic Ruby SQL Server Swift Tcl Unicode C Unicode C++ VB.NET VBScript Visual Basic 6.0 Visual FoxPro Xojo Plugin
(CkPython) Sign JSON (or any Text) to Create a Detached PKCS7 SignatureDemonstrates how to sign JSON or any string using a certificate + private key from a .p12/.pfx to create a detached PKCS7 signature. (A detached signature is one that does not embed the original signed data.)
import sys import chilkat # This example assumes the Chilkat API to have been previously unlocked. # See Global Unlock Sample for sample code. crypt = chilkat.CkCrypt2() cert = chilkat.CkCert() success = cert.LoadPfxFile("qa_data/pfx/cert_test123.pfx","test123") if (success != True): print(cert.lastErrorText()) sys.exit() # Tell the crypt component to use this cert. success = crypt.SetSigningCert(cert) if (success != True): print(crypt.lastErrorText()) sys.exit() crypt.put_HashAlgorithm("sha256") # By default, all the certs in the chain of authentication are included in the signature. # If desired, we can choose to only include the signing certificate: crypt.put_IncludeCertChain(False) # Create the detached signature, which does NOT contain the original data. # To create a PKCS7 signature that contains the original data, see CAdES Sign JSON crypt.put_Charset("utf-8") detachedSig = chilkat.CkByteData() stringToSign = "{ \"abc\": 123}" success = crypt.SignString(stringToSign,detachedSig) if (crypt.get_LastMethodSuccess() == False): print(crypt.lastErrorText()) sys.exit() # Verify the signature against the original data. verified = crypt.VerifyString(stringToSign,detachedSig) if (verified == False): print(crypt.lastErrorText()) sys.exit() print("Success!") |
© 2000-2025 Chilkat Software, Inc. All Rights Reserved.