Sample code for 30+ languages & platforms
React Native Requires Chilkat v11.0.0+

Get ETK Public Key (api-acpt.ehealth.fgov.be)

See more Belgian eHealth Platform Examples

The following URL returns JSON, which contains a PKCS7 signed data:
https://api-acpt.ehealth.fgov.be/etee/v1/etks?identifier=12345678901&type=SSIN

This example extracts the signed data, validates it, and then extracts the public key from the certificate (obtained from signed content in the PKCS7)

Note: The URL above uses "12345678901" which is not valid. You should replace it with a valid number.

Chilkat React Native Downloads

React Native
import { BinData, Cert, Crypt2, Http, JsonArray, PublicKey } from '@chilkat/react-native'

async function chilkatExample() {
  // This example requires the Chilkat API to have been previously unlocked.
  // See Global Unlock Sample for sample code.

  const http = new Http();

  let jsonStr: string;
  try {
    jsonStr = await http.quickGetStrAsync('https://api-acpt.ehealth.fgov.be/etee/v1/etks?identifier=12345678901&type=SSIN');
  } catch {
    console.log(http.lastErrorText);
    return;
  }

  console.log(jsonStr);

  // The JSON contains something like this:

  // [
  //     {
  //         "key": {
  //             "applicationIdentifier": "",
  //             "ssin": "12345678901"
  //         },
  //         "value": "MIAGCSq....AAAAAAAA=="
  //     }
  // ]

  // Note: The above is a JSON array (not a JSON object)
  // It should be loaded into a Chilkat JSON array.
  const jarr = new JsonArray();
  try {
    jarr.load(jsonStr);
  } catch {
    console.log('Failed to load JSON.');
    return;
  }

  const json = jarr.objectAt(0);
  const bdPkcs7 = new BinData();
  bdPkcs7.appendEncoded(json.stringOf('value'), 'base64');

  // Let's verify the PKCS7, and then examine the signing cert,
  // and get the signing cert's public key.
  const crypt = new Crypt2();

  // Validate the signedData PKCS7, and replace the contents of bdPkcs7 with the extracted signed content.
  try {
    crypt.opaqueVerifyBd(bdPkcs7);
  } catch {
    console.log(crypt.lastErrorText);
    return;
  }

  // The signed content is the DER of a certificate.
  // In other words, bdPkcs7 now contains a certificate.
  const cert = new Cert();
  try {
    cert.loadFromBd(bdPkcs7);
  } catch {
    console.log(cert.lastErrorText);
    return;
  }

  // Show some certificate information:
  console.log(`Subject: ${cert.subjectDN}`);
  console.log(`Serial: ${cert.serialNumber}`);
  console.log(`Issuer: ${cert.issuerDN}`);

  // Let's get the cert's public key...
  const pubKey = new PublicKey();
  cert.getPublicKey(pubKey);

  // OK, you now have the public key and can do whatever is needed..
  console.log(pubKey.keyType);
  console.log(pubKey.keySize);
}