Sample code for 30+ languages & platforms
CkPython Requires Chilkat v11.0.0+

Sign Manifest File to Generate a Passbook .pkpass file

See more Digital Signatures Examples

Demonstrates how to create a Passbook .pkpass archive by creating a signature of a manifest file and then zipping to a .pkpass archive.

Note: Chilkat also has the capability to do everything in-memory (no files would be involved). If this is of interest, please send email to support@chilkatsoft.com

Chilkat CkPython Downloads

CkPython
import sys
import chilkat

success = False

#  This requires the Chilkat API to have been previously unlocked.
#  See Global Unlock Sample for sample code.

#  ---------------------------------------------------------------------------------------------
#  Note: Chilkat also has the capability to do everything in-memory (no files would be involved).  
#  See this example:  Sign Manifest File to Generate a Passbook .pkpass in Memory
#  ---------------------------------------------------------------------------------------------

#  First create the manifest.json

manifest = chilkat.CkJsonObject()
crypt = chilkat.CkCrypt2()

zip = chilkat.CkZip()
zip.NewZip("qa_data/p7s/pass-wallet/example.pkpass")
#  Set the AppendFromDir property to prevent that relative paths from being stored in the .pkpass archive.
zip.put_AppendFromDir("qa_data/p7s/pass-wallet/")

crypt.put_HashAlgorithm("sha1")
#  Return hashes as lowercase hex.
crypt.put_EncodingMode("hexlower")

filePath = "qa_data/p7s/pass-wallet/icon.png"
fileHash = crypt.hashFileENC(filePath)
zip.AddFile("icon.png",False)
manifest.UpdateString("\"icon.png\"",fileHash)

filePath = "qa_data/p7s/pass-wallet/icon@2x.png"
fileHash = crypt.hashFileENC(filePath)
zip.AddFile("icon@2x.png",False)
manifest.UpdateString("\"icon@2x.png\"",fileHash)

filePath = "qa_data/p7s/pass-wallet/logo.png"
fileHash = crypt.hashFileENC(filePath)
zip.AddFile("logo.png",False)
manifest.UpdateString("\"logo.png\"",fileHash)

filePath = "qa_data/p7s/pass-wallet/logo@2x.png"
fileHash = crypt.hashFileENC(filePath)
zip.AddFile("logo@2x.png",False)
manifest.UpdateString("\"logo@2x.png\"",fileHash)

filePath = "qa_data/p7s/pass-wallet/pass.json"
fileHash = crypt.hashFileENC(filePath)
zip.AddFile("pass.json",False)
manifest.UpdateString("\"pass.json\"",fileHash)

sbJson = chilkat.CkStringBuilder()
manifest.EmitSb(sbJson)
manifestPath = "qa_data/p7s/pass-wallet/manifest.json"
sbJson.WriteFile(manifestPath,"utf-8",False)
zip.AddFile("manifest.json",False)

#  Make sure we have the Apple WWDR intermediate certificate available for 
#  the cert chain in the signature.
certVault = chilkat.CkXmlCertVault()
appleWwdrCert = chilkat.CkCert()
success = appleWwdrCert.LoadByCommonName("Apple Worldwide Developer Relations Certification Authority")
if (success != True):
    print("The Apple WWDR intermediate certificate is not installed.")
    print("It is available at https://developer.apple.com/certificationauthority/AppleWWDRCA.cer")
    print("You may alternatively load the .cer like this...")
    success = appleWwdrCert.LoadFromFile("qa_data/certs/AppleWWDRCA.cer")
    if (success == False):
        print(appleWwdrCert.lastErrorText())
        sys.exit()

certVault.AddCert(appleWwdrCert)
crypt.UseCertVault(certVault)

#  Use a digital certificate and private key from a PFX file (.pfx or .p12).
pfxPath = "qa_data/pfx/cert_test123.pfx"
pfxPassword = "test123"

cert = chilkat.CkCert()
success = cert.LoadPfxFile(pfxPath,pfxPassword)
if (success == False):
    print(cert.lastErrorText())
    sys.exit()

#  Provide the signing cert (with associated private key).
success = crypt.SetSigningCert(cert)
if (success == False):
    print(crypt.lastErrorText())
    sys.exit()

#  Specify the signed attributes to be included.
#  (These attributes appear to not be necessary, but we're including
#  them just in case they become necessary in the future.)
jsonSignedAttrs = chilkat.CkJsonObject()
jsonSignedAttrs.UpdateInt("contentType",1)
jsonSignedAttrs.UpdateInt("signingTime",1)
crypt.put_SigningAttributes(jsonSignedAttrs.emit())

#  Sign the manifest JSON file to produce a file named "signature".
sigPath = "qa_data/p7s/pass-wallet/signature"

#  Create the "signature" file.
success = crypt.CreateP7S(manifestPath,sigPath)
if (success == False):
    print(crypt.lastErrorText())
    sys.exit()

zip.AddFile("signature",False)

#  ---------------------------------------------------------------------------------------------
#  Note: Chilkat also has the capability to do everything in-memory (no files would be involved).  
#  If this is of interest, please send email to support@chilkatsoft.com
#  ---------------------------------------------------------------------------------------------

#  Create the .pkipass archive (which is a .zip archive containing the required files).
success = zip.WriteZipAndClose()
if (success == False):
    print(zip.lastErrorText())
    sys.exit()

print("Success.")