Tcl
Tcl
Create CAdES-BES .p7m for FatturaPA XML Invoice
See more Digital Signatures Examples
Demonstrates how to create a CAdES BES invoice.xml.p7m for the Italian FatturaPA exchange system.Note: This example requires Chilkat v9.5.0.75.
Chilkat Tcl Downloads
load ./chilkat.dll
set success 0
# Note: Requires Chilkat v9.5.0.75 or greater.
# This requires the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.
set crypt [new_CkCrypt2]
# Use a digital certificate and private key from a PFX file (.pfx or .p12).
set pfxPath "qa_data/pfx/cert_test123.pfx"
set pfxPassword "test123"
set cert [new_CkCert]
set success [CkCert_LoadPfxFile $cert $pfxPath $pfxPassword]
if {$success != 1} then {
puts [CkCert_lastErrorText $cert]
delete_CkCrypt2 $crypt
delete_CkCert $cert
exit
}
# Provide the signing cert (with associated private key).
set success [CkCrypt2_SetSigningCert $crypt $cert]
if {$success != 1} then {
puts [CkCrypt2_lastErrorText $crypt]
delete_CkCrypt2 $crypt
delete_CkCert $cert
exit
}
# Indicate that SHA-256 should be used.
CkCrypt2_put_HashAlgorithm $crypt "sha256"
# Specify the signed attributes to be included.
# (This is what makes it CAdES-BES compliant.)
set jsonSignedAttrs [new_CkJsonObject]
CkJsonObject_UpdateInt $jsonSignedAttrs "contentType" 1
CkJsonObject_UpdateInt $jsonSignedAttrs "signingTime" 1
CkJsonObject_UpdateInt $jsonSignedAttrs "messageDigest" 1
CkJsonObject_UpdateInt $jsonSignedAttrs "signingCertificateV2" 1
CkCrypt2_put_SigningAttributes $crypt [CkJsonObject_emit $jsonSignedAttrs]
set inFile "qa_data/xml/IT01234567890_11002.xml"
set sigFile "qa_output/IT01234567890_11002.xml.p7m"
# Create the CAdES-BES signature, which contains the original data.
set success [CkCrypt2_CreateP7M $crypt $inFile $sigFile]
if {$success == 0} then {
puts [CkCrypt2_lastErrorText $crypt]
delete_CkCrypt2 $crypt
delete_CkCert $cert
delete_CkJsonObject $jsonSignedAttrs
exit
}
puts "Success."
delete_CkCrypt2 $crypt
delete_CkCert $cert
delete_CkJsonObject $jsonSignedAttrs