1 /* 2 * Copyright 2007-2023 The OpenSSL Project Authors. All Rights Reserved. 3 * 4 * Licensed under the Apache License 2.0 (the "License"). You may not use 5 * this file except in compliance with the License. You can obtain a copy 6 * in the file LICENSE in the source distribution or at 7 * https://www.openssl.org/source/license.html 8 */ 9 10 /* Simple S/MIME signing example */ 11 #include <openssl/pem.h> 12 #include <openssl/pkcs7.h> 13 #include <openssl/err.h> 14 15 int main(int argc, char **argv) 16 { 17 BIO *in = NULL, *out = NULL, *tbio = NULL; 18 X509 *scert = NULL; 19 EVP_PKEY *skey = NULL; 20 PKCS7 *p7 = NULL; 21 int ret = EXIT_FAILURE; 22 23 /* 24 * For simple S/MIME signing use PKCS7_DETACHED. 25 * for streaming detached set PKCS7_DETACHED|PKCS7_STREAM for streaming 26 * non-detached set PKCS7_STREAM 27 */ 28 int flags = PKCS7_DETACHED | PKCS7_STREAM; 29 30 OpenSSL_add_all_algorithms(); 31 ERR_load_crypto_strings(); 32 33 /* Read in signer certificate and private key */ 34 tbio = BIO_new_file("signer.pem", "r"); 35 36 if (!tbio) 37 goto err; 38 39 scert = PEM_read_bio_X509(tbio, NULL, 0, NULL); 40 41 if (BIO_reset(tbio) < 0) 42 goto err; 43 44 skey = PEM_read_bio_PrivateKey(tbio, NULL, 0, NULL); 45 46 if (!scert || !skey) 47 goto err; 48 49 /* Open content being signed */ 50 51 in = BIO_new_file("sign.txt", "r"); 52 53 if (!in) 54 goto err; 55 56 /* Sign content */ 57 p7 = PKCS7_sign(scert, skey, NULL, in, flags); 58 59 if (!p7) 60 goto err; 61 62 out = BIO_new_file("smout.txt", "w"); 63 if (!out) 64 goto err; 65 66 if (!(flags & PKCS7_STREAM)) { 67 if (BIO_reset(in) < 0) 68 goto err; 69 } 70 71 /* Write out S/MIME message */ 72 if (!SMIME_write_PKCS7(out, p7, in, flags)) 73 goto err; 74 75 printf("Success\n"); 76 77 ret = EXIT_SUCCESS; 78 err: 79 if (ret != EXIT_SUCCESS) { 80 fprintf(stderr, "Error Signing Data\n"); 81 ERR_print_errors_fp(stderr); 82 } 83 PKCS7_free(p7); 84 X509_free(scert); 85 EVP_PKEY_free(skey); 86 BIO_free(in); 87 BIO_free(out); 88 BIO_free(tbio); 89 90 return ret; 91 } 92