Sample code for 30+ languages & platforms
Zig

Send aes-gcm authEnvelopedData Encrypted Email

See more SMTP Examples

Note: This example requires Chilkat v10.0.0 or later

Demonstrates how to send encrypted email using 128-bit AES in GCM mode.

"AES-GCM" (Advanced Encryption Standard - Galois/Counter Mode) is a cryptographic algorithm that provides both encryption and integrity protection (authentication). When used in the context of email security with "authEnvelopedData", it often refers to a method of securely sending encrypted and authenticated email content.

Here’s a brief breakdown:

  • AES-GCM: Combines symmetric encryption (AES) with authentication, ensuring both the confidentiality and integrity of the message. It generates an authentication tag to detect any unauthorized changes.
  • authEnvelopedData: Refers to a type of structure used in secure email protocols (like S/MIME) to package encrypted content. It contains the encrypted data and associated encrypted session keys.
  • Email Security: When applied to emails, AES-GCM ensures the email content is encrypted (confidential) and also tamper-resistant (authenticated), with the encryption keys typically shared securely using asymmetric encryption (e.g., public key infrastructure, or PKI).

In short, AES-GCM with "authEnvelopedData" provides a way to encrypt and authenticate emails, making them confidential and resistant to tampering.

Chilkat Zig Downloads

Zig
const std = @import("std");
const chilkat = @import("chilkat");

pub fn main(init: std.process.Init) !void {
    const alloc = init.arena.allocator();

    var success: bool = false;

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    // The mailman object is used for sending and receiving email.
    const mailman = try chilkat.MailMan.init();
    defer mailman.deinit();

    mailman.setSmtpHost("smtp.example.com");

    mailman.setSmtpUsername("my_smtp_login");
    mailman.setSmtpPassword("my_smtp_password");

    // The typical SMTP ports are 465 for implicit SSL/TLS or 587 for explicit SSL/TLS
    mailman.setSmtpPort(465);
    mailman.setSmtpSsl(true);

    // Use the recipient's certificate for encryption.
    const cert = try chilkat.Cert.init();
    defer cert.deinit();
    success = if (cert.loadFromFile("c:/someDir/recipient_cert.cer")) true else |_| false;
    if (!success) {
        std.debug.print("{s}\n", .{try cert.getLastErrorText(alloc)});
        return;
    }

    const email = try chilkat.Email.init();
    defer email.deinit();

    email.setSubject("This email is encrypted");
    email.setBody("This is AES-GCM encrypted mail");
    email.setFrom("Mary <mary@example1.com>");
    success = if (email.addTo("Joe", "joe@example.com")) true else |_| false;

    // Specify that AES-GCM w/ authEnvelopedData is to be used.
    // Also specify other params..
    email.setPkcs7CryptAlg("aes-gcm");
    email.setPkcs7KeyLength(128);
    email.setOaepPadding(true);
    email.setOaepHash("sha256");
    email.setOaepMgfHash("sha256");

    // Indicate the email is to be sent encrypted.
    email.setSendEncrypted(true);

    // Specify the certificate to be used for encryption.
    success = if (email.setEncryptCert(cert)) true else |_| false;

    success = if (mailman.sendEmail(email)) true else |_| false;
    if (!success) {
        std.debug.print("{s}\n", .{try mailman.getLastErrorText(alloc)});
    } else {
        std.debug.print("Mail Sent!\n", .{});
    }
}