1c7da899bSchristos /*
2c7da899bSchristos * Copyright 2007-2016 The OpenSSL Project Authors. All Rights Reserved.
3c7da899bSchristos *
4*b0d17251Schristos * Licensed under the Apache License 2.0 (the "License"). You may not use
5c7da899bSchristos * this file except in compliance with the License. You can obtain a copy
6c7da899bSchristos * in the file LICENSE in the source distribution or at
7c7da899bSchristos * https://www.openssl.org/source/license.html
8c7da899bSchristos */
9c7da899bSchristos
10a89c9211Schristos /* Simple S/MIME signing example */
11a89c9211Schristos #include <openssl/pem.h>
12a89c9211Schristos #include <openssl/pkcs7.h>
13a89c9211Schristos #include <openssl/err.h>
14a89c9211Schristos
main(int argc,char ** argv)15a89c9211Schristos int main(int argc, char **argv)
16a89c9211Schristos {
17a89c9211Schristos BIO *in = NULL, *out = NULL, *tbio = NULL;
18a89c9211Schristos X509 *scert = NULL;
19a89c9211Schristos EVP_PKEY *skey = NULL;
20a89c9211Schristos PKCS7 *p7 = NULL;
21a89c9211Schristos int ret = 1;
22a89c9211Schristos
23635165faSspz /*
24635165faSspz * For simple S/MIME signing use PKCS7_DETACHED. On OpenSSL 0.9.9 only:
25635165faSspz * for streaming detached set PKCS7_DETACHED|PKCS7_STREAM for streaming
26635165faSspz * non-detached set PKCS7_STREAM
27a89c9211Schristos */
28a89c9211Schristos int flags = PKCS7_DETACHED | PKCS7_STREAM;
29a89c9211Schristos
30a89c9211Schristos OpenSSL_add_all_algorithms();
31a89c9211Schristos ERR_load_crypto_strings();
32a89c9211Schristos
33a89c9211Schristos /* Read in signer certificate and private key */
34a89c9211Schristos tbio = BIO_new_file("signer.pem", "r");
35a89c9211Schristos
36a89c9211Schristos if (!tbio)
37a89c9211Schristos goto err;
38a89c9211Schristos
39a89c9211Schristos scert = PEM_read_bio_X509(tbio, NULL, 0, NULL);
40a89c9211Schristos
41a89c9211Schristos BIO_reset(tbio);
42a89c9211Schristos
43a89c9211Schristos skey = PEM_read_bio_PrivateKey(tbio, NULL, 0, NULL);
44a89c9211Schristos
45a89c9211Schristos if (!scert || !skey)
46a89c9211Schristos goto err;
47a89c9211Schristos
48a89c9211Schristos /* Open content being signed */
49a89c9211Schristos
50a89c9211Schristos in = BIO_new_file("sign.txt", "r");
51a89c9211Schristos
52a89c9211Schristos if (!in)
53a89c9211Schristos goto err;
54a89c9211Schristos
55a89c9211Schristos /* Sign content */
56a89c9211Schristos p7 = PKCS7_sign(scert, skey, NULL, in, flags);
57a89c9211Schristos
58a89c9211Schristos if (!p7)
59a89c9211Schristos goto err;
60a89c9211Schristos
61a89c9211Schristos out = BIO_new_file("smout.txt", "w");
62a89c9211Schristos if (!out)
63a89c9211Schristos goto err;
64a89c9211Schristos
65a89c9211Schristos if (!(flags & PKCS7_STREAM))
66a89c9211Schristos BIO_reset(in);
67a89c9211Schristos
68a89c9211Schristos /* Write out S/MIME message */
69a89c9211Schristos if (!SMIME_write_PKCS7(out, p7, in, flags))
70a89c9211Schristos goto err;
71a89c9211Schristos
72a89c9211Schristos ret = 0;
73a89c9211Schristos
74a89c9211Schristos err:
75635165faSspz if (ret) {
76a89c9211Schristos fprintf(stderr, "Error Signing Data\n");
77a89c9211Schristos ERR_print_errors_fp(stderr);
78a89c9211Schristos }
79a89c9211Schristos PKCS7_free(p7);
80a89c9211Schristos X509_free(scert);
81a89c9211Schristos EVP_PKEY_free(skey);
82a89c9211Schristos BIO_free(in);
83a89c9211Schristos BIO_free(out);
84a89c9211Schristos BIO_free(tbio);
85a89c9211Schristos
86a89c9211Schristos return ret;
87a89c9211Schristos
88a89c9211Schristos }
89