Zig Requires Chilkat v11.0.0+
Zig
Sign ITIDA JSON and Send to ETA (Egypt Tax Authority) Portal
See more Egypt ITIDA Examples
Demonstrates how to ITIDA canonicalize JSON, create signature, and send to the ETA Portal.Chilkat Zig Downloads
const std = @import("std");
const chilkat = @import("chilkat");
pub fn main(init: std.process.Init) !void {
const alloc = init.arena.allocator();
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
const crypt = try chilkat.Crypt2.init();
defer crypt.deinit();
crypt.setVerboseLogging(true);
const cert = try chilkat.Cert.init();
defer cert.deinit();
cert.setVerboseLogging(true);
// Set the smart card PIN, which will be needed for signing.
cert.setSmartCardPin("12345678");
// There are many ways to load the certificate.
// This example was created for a customer using an ePass2003 USB token.
// Assuming the USB token is the only source of a hardware-based private key..
cert.loadFromSmartcard("") catch {
std.debug.print("{s}\n", .{try cert.getLastErrorText(alloc)});
return;
};
// Tell the crypt class to use this cert.
crypt.setSigningCert(cert) catch {
std.debug.print("{s}\n", .{try crypt.getLastErrorText(alloc)});
return;
};
const cms_options = try chilkat.JsonObject.init();
defer cms_options.deinit();
// Setting "DigestData" causes OID 1.2.840.113549.1.7.5 (digestData) to be used.
cms_options.updateBool("DigestData", true) catch {};
cms_options.updateBool("OmitAlgorithmIdNull", true) catch {};
// Indicate that we are passing normal JSON and we want Chilkat do automatically
// do the ITIDA JSON canonicalization:
cms_options.updateBool("CanonicalizeITIDA", true) catch {};
crypt.setCmsOptions(try cms_options.emit(alloc));
// The CadesEnabled property applies to all methods that create CMS/PKCS7 signatures.
// To create a CAdES-BES signature, set this property equal to true.
crypt.setCadesEnabled(true);
crypt.setHashAlgorithm("sha256");
const json_signing_attrs = try chilkat.JsonObject.init();
defer json_signing_attrs.deinit();
json_signing_attrs.updateInt("contentType", 1) catch {};
json_signing_attrs.updateInt("signingTime", 1) catch {};
json_signing_attrs.updateInt("messageDigest", 1) catch {};
json_signing_attrs.updateInt("signingCertificateV2", 1) catch {};
crypt.setSigningAttributes(try json_signing_attrs.emit(alloc));
// By default, all the certs in the chain of authentication are included in the signature.
// If desired, we can choose to only include the signing certificate:
crypt.setIncludeCertChain(false);
// Pass a JSON document such as the following. Chilkat will do the ITIDA canonicalization.
// (It is the canonicalized JSON that gets signed.)
// Note: The JSON should NOT begin with "{ "documents" : [ ..."
// {
// "issuer":{
// "address":{
// "branchID":"0",
// "country":"EG",
// "regionCity":"Cairo",
// "postalCode":"",
// "buildingNumber":"0",
// "street":"123rd Street",
// "governate":"GOVERNATE"
// },
// "type":"B",
// "id":"209999899",
// "name":"Xyz SAE"
// },
// "receiver":{
// "address":{
// "country":"EG",
// "regionCity":"CAIRO",
// "postalCode":"11435",
// "buildingNumber":"0",
// "street":"Autostrad Road Abc",
// "governate":"GOVERNATE"
// },
// "type":"B",
// "id":"999999999",
// "name":"XYZ EGYPT FOR TRADE"
// },
// "documentType":"I",
// "documentTypeVersion":"1.0",
// "dateTimeIssued":"2020-11-15T11:04:53Z",
// "taxpayerActivityCode":"1073",
// "internalID":"ZZZZ999",
// "purchaseOrderReference":"2009199918",
// "salesOrderReference":"",
// "payment":{
// "bankName":"",
// "bankAddress":"",
// "bankAccountNo":"",
// "bankAccountIBAN":"",
// "swiftCode":"",
// "terms":""
// },
// "delivery":{
// "approach":"",
// "packaging":"",
// "dateValidity":"",
// "exportPort":"",
// "countryOfOrigin":"EG",
// "grossWeight":0,
// "netWeight":0,
// "terms":""
// },
// "invoiceLines":[
// {
// "description":"CDM Widget 48GX99X12BA",
// "itemType":"GS1",
// "itemCode":"7622213335056",
// "unitType":"CS",
// "quantity":1.00,
// "unitValue":{
// "currencySold":"EGP",
// "amountEGP":588.67,
// "amountSold":0,
// "currencyExchangeRate":0
// },
// "salesTotal":588.67,
// "total":603.97,
// "valueDifference":0,
// "totalTaxableFees":0,
// "netTotal":529.8,
// "itemsDiscount":0,
// "discount":{
// "rate":10.00,
// "amount":58.87
// },
// "taxableItems":[
// {
// "taxType":"T1",
// "amount":74.17,
// "subType":"No sub",
// "rate":14.00
// }
// ],
// "internalCode":"9099994"
// }
// ],
// "totalSales":588.67,
// "totalSalesAmount":588.67,
// "totalDiscountAmount":58.87,
// "netAmount":529.80,
// "taxTotals":[
// {
// "taxType":"T1",
// "amount":74.17
// }
// ],
// "extraDiscountAmount":0,
// "totalItemsDiscountAmount":0,
// "totalAmount":603.97,
// }
// Create the CAdES-BES signature.
crypt.setEncodingMode("base64");
// Make sure we sign the utf-8 byte representation of the JSON string
crypt.setCharset("utf-8");
const json_invoice = "{ ... }";
const sig_base64 = crypt.signStringENC(alloc, json_invoice) catch {
std.debug.print("{s}\n", .{try crypt.getLastErrorText(alloc)});
return;
};
std.debug.print("Base64 signature:\n", .{});
std.debug.print("{s}\n", .{sig_base64});
// Insert the base64 signature into the JSON to be sent
const json = try chilkat.JsonObject.init();
defer json.deinit();
json.load(json_invoice) catch {};
json.updateString("signatures[0].signatureType", "I") catch {};
json.updateString("signatures[0].value", sig_base64) catch {};
json.setEmitCompact(true);
// Wrap the JSON in {"documents":[ ... ]}
const sb_to_send = try chilkat.StringBuilder.init();
defer sb_to_send.deinit();
sb_to_send.append("{\"documents\":[") catch {};
sb_to_send.append(try json.emit(alloc)) catch {};
sb_to_send.append("]}") catch {};
// ------------------------------------------------------------------------
// Get an access token using our client ID and client secret key
const client_id = "abc999ff-1234";
const client_secret_key = "123fff22-1234-abcd";
const http = try chilkat.Http.init();
defer http.deinit();
// Causes the Authorization: Basic header to be added..
http.setLogin(client_id);
http.setPassword(client_secret_key);
http.setBasicAuth(true);
const req = try chilkat.HttpRequest.init();
defer req.deinit();
req.setHttpVerb("POST");
req.setPath("/connect/token");
req.setContentType("application/x-www-form-urlencoded");
req.addParam("grant_type", "client_credentials");
req.addHeader("Connection", "close");
http.setAccept("application/json");
const resp = try chilkat.HttpResponse.init();
defer resp.deinit();
http.httpReq("https://id.preprod.eta.gov.eg/connect/token", req, resp) catch {
std.debug.print("{s}\n", .{try http.getLastErrorText(alloc)});
return;
};
http.closeAllConnections() catch {};
std.debug.print("Response status code: {d}\n", .{resp.getStatusCode()});
std.debug.print("Response body:\n", .{});
std.debug.print("{s}\n", .{try resp.getBodyStr(alloc)});
if (resp.getStatusCode() != 200) {
std.debug.print("Failed.\n", .{});
return;
}
const json_token = try chilkat.JsonObject.init();
defer json_token.deinit();
try json_token.load(try resp.getBodyStr(alloc));
const access_token = try json_token.stringOf(alloc, "access_token");
std.debug.print("access_token = {s}\n", .{access_token});
// ------------------------------------------------------------------------
// Submit the signed JSON to the ETA (Egypt Tax Authority) Portal
// No longer sending basic authentication...
http.setLogin("");
http.setPassword("");
http.setBasicAuth(false);
// Setting the AuthToken property causes the "Authorization: Bearer <token>" header to be added to each request.
http.setAuthToken(access_token);
const url = "https://api.preprod.invoicing.eta.gov.eg/api/v1/documentsubmissions";
const json_str = try sb_to_send.getAsString(alloc);
http.httpStr("POST", url, json_str, "utf-8", "application/json; charset=utf-8", resp) catch {
std.debug.print("{s}\n", .{try http.getLastErrorText(alloc)});
return;
};
std.debug.print("Response status code: {d}\n", .{resp.getStatusCode()});
std.debug.print("Response body:\n", .{});
std.debug.print("{s}\n", .{try resp.getBodyStr(alloc)});
}