Sample code for 30+ languages & platforms
Tcl

Plaza API (bol.com) HMAC-SHA256 Authentication

See more Encryption Examples

Demonstrates how to compute the Authorization header for bol.com using HMAC-SHA256.

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

# This example assumes the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.

set crypt [new_CkCrypt2]

CkCrypt2_put_EncodingMode $crypt "base64"
CkCrypt2_put_HashAlgorithm $crypt "sha256"
CkCrypt2_put_MacAlgorithm $crypt "hmac"

set publicKey "oRNWbHFXtAECmhnZmEndcjLIaSKbRMVE"
set privateKey "MaQHPOnmYkPZNgeRziPnQyyOJYytUbcFBVJBvbMKoDdpPqaZbaOiLUTWzPAkpPsZFZbJHrcoltdgpZolyNcgvvBaKcmkqFjucFzXhDONTsPAtHHyccQlLUZpkOuywMiOycDWcCySFsgpDiyGnCWCZJkNTtVdPxbSUTWVIFQiUxaPDYDXRQAVVTbSVZArAZkaLDLOoOvPzxSdhnkkJWzlQDkqsXNKfAIgAldrmyfROSyCGMCfvzdQdUQEaYZTPEoA"

# The string to sign is this:
# http_verb +'\n\n'+ content_type +'\n'+ x_bol_date +'\n'+ 'x-bol-date:'+ x_bol_date +'\n'+ uri

set http_verb "GET"
set content_type "application/xml"
set x_bol_date "Wed, 17 Feb 2016 00:00:00 GMT"
set uri "/services/rest/orders/v2"

# IMPORTANT: Notice the use of underscore and hyphen (dash) chars in x-bol-date vs. x_bol_date.
# In one place hypens are used.  In two places, underscore chars are used.
set sb [new_CkStringBuilder]

CkStringBuilder_Append $sb $http_verb
CkStringBuilder_Append $sb "\n\n"
CkStringBuilder_Append $sb $content_type
CkStringBuilder_Append $sb "\n"
CkStringBuilder_Append $sb $x_bol_date
CkStringBuilder_Append $sb "\nx-bol-date:"
CkStringBuilder_Append $sb $x_bol_date
CkStringBuilder_Append $sb "\n"
CkStringBuilder_Append $sb $uri
puts "{[}[CkStringBuilder_getAsString $sb]]"

# Set the HMAC key:
CkCrypt2_SetMacKeyEncoded $crypt $privateKey "ascii"
set mac [CkCrypt2_macStringENC $crypt [CkStringBuilder_getAsString $sb]]

# The answer should be: nqzLWvXI1eBhBXrRx5NF23V5hS8Q1xWCloJzPi/RAts=
puts "$mac"

# The last step is to append the public key with the signature
set sbHeader [new_CkStringBuilder]

CkStringBuilder_Append $sbHeader $publicKey
CkStringBuilder_Append $sbHeader ":"
CkStringBuilder_Append $sbHeader $mac

set hdrValue [CkStringBuilder_getAsString $sbHeader]
puts "$hdrValue"

delete_CkCrypt2 $crypt
delete_CkStringBuilder $sb
delete_CkStringBuilder $sbHeader