Cryptographic operations sample

This full sample code demonstrates how to monitor reader events, populate a list from the certificates found in smart cards, verify a PIN, and perform signature, verification, encryption and decryption operations. Note that, for the operations made on the public key (verification and encryption), the public key is extracted from the certificate data and the cryptographic operation is computed in pure JavaScript, using the BSD-licensed Forge library.

<!doctype html>
<html>

	<head>
		<meta charset="utf-8" />
		<meta name="viewport" content="width=device-width, initial-scale=1.0">
		<title>Titre de la page</title>
		<script src="libs/forge.min.js"></script>
		<script src="libs/promise-polyfill.js"></script>
		<script src="../src/scwsapi.js"></script>
		<script>

var privateKeys = {};

window.webappcert = "3WKVAuegUKJv}6.5vrlH2yJKIDd@n{fvTh{3B8#hpvR^OCB8LVjBz>@azy^qVx>Ir{zEWZjAc9TxCYkY0fF$QugbyTod}ryfwO#PYwi8y}xMOuniXJcvfFkare?]7kf/7NCf!$KwenfcEA5]T9f!+jnh7*Qre?]mwiX-xCg+rrZBz%n]fekjve?![ie?]ywgby:rxMOuniXJcviwJiwhAirzhzu:rf/IcFgby=8zl.77]a3uEmc@vMWs#=I-EbPF*EX14Y?t3CHGEgPU>q$!DZ*37zk-VBWplV.EQkEqWNo=%UyaK)6DHS2BM:6Ahf^Fp[Qj0W^a/1P]pG5#4=:P8lt@W&5L:itH<kVH5NKs*i&qbr@lBo[pPj0fvW0*]}NEm^NI?QxI.&!XJ)AKCE6E&$vfabiIlIn5am4t$r?GOIl[JoAU#.{1kF89-vG4}O=9J]egOW7Jw:>oq@fVKpmJaExQ2uU:Ah:)C=*9iC)5}.MyC?V<0KBec::^n?q%nnwb9i-XijWRH?sS:D>QIkWLJUDLYpT&5(VfJ6tc&*+H*U4hhuFHUQX4PS5<2YND^tFT9#R(=eA]>OM^9b-wPJ(YAg}-av%&ir*K/.h|MIIE5jCCAs6gAwIBAgIBADANBgkqhkiG9w0BAQsFADA9MQswCQYDVQQGEwJGUjEdMBsGA1UEAwwUSWRvcHRlIFdlYkFwcENlcnQgQ0ExDzANBgNVBAoMBklkb3B0ZTAgFw0yNDA3MTUwOTU4MjFaGA8yMDUyMTIzMTIyNTkwMFowMTESMBAGA1UEAxMJTWF4aW1lRGV2MQ8wDQYDVQQKEwZJZG9wdGUxCjAIBgNVBAsTATAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDDbbHFzPMOgflE7NLWtYXK0MV8xCLbSZ7qvUug0YdYSwiw9XDXe5uODG2ok9C1YrlSVuQ0O73CC07RqSys2XFsx6hW82JuwN+gEqJ+v+BKW3YQgT7NOzIRrvhucSo4UWrAZV6YXhd/1GZyYyyI1x3K1e1y/1p3Zw8nKAGeIP8vSQvSA7da124DOx860AXvF3eRUyonMEZagnPyueVVy0wodO1u1WRMjVN+f91FUhtbRf+u5am0vU+IZCE5Lv/ALghr0r3QqLAvHMlhe4uw9BmPCWQH7d/fdIbcZf7eDxWizei2dfl/dMh95f2RTGzE/Hnt56IVYvOT4kR5AU95gwCHAgMBAAGjgfowgfcwCQYDVR0TBAIwADAXBgNVHSUEEDAOBgwrBgEEAYHYJAECAgEwXgYDVR0gBFcwVTAPBg0rBgEEAYHYJAECAQEBMA8GDSsGAQQBgdgkAQIBAQMwDwYNKwYBBAGB2CQBAgEBBDAPBg0rBgEEAYHYJAECAQEGMA8GDSsGAQQBgdgkAQIBAQcwcQYDVR0RBGowaIYYaHR0cDovLzEwLjI1LjExLjEzMjoxMjM0hhhodHRwOi8vMTAuMjUuMTEuMTY1OjEyMzSGFWh0dHA6Ly8xMjcuMC4wLjE6MTIzNIYbaHR0cDovLzE5Mi4xNjguMTYwLjExNzoxMjM0MA0GCSqGSIb3DQEBCwUAA4ICAQA5hyRPrhPV8OhYfOxa5+mQoBi0n/m42nWotehg5QJmzUzDTDnZLgEV7t/9dVsNX8uh1t88Kgkbb98vAmgWHpslH++5P1jp9WQfNG9gzASpSglcTXF2BHblKH7oDJ5LMhXtGikUR13TuoK4iPvZxSweIeK5JZ7kMydOgFbj5xlk+rLSqqP+tebS6bOMSzUWKGwgaBQbS3sZ8B6IOhROGxbXxVQZ2vJ94meqmTG/qSoJa3vhf9kOxJLSdxCNdeuLlkIDHEqnHMMQHfnZztJ3dVt/rybr99Qx0IvW248jgRMoD39EeFYVya1sNB2LkAAeqnoVeUlotCW9F8JA3gVo/BFzoy46/vUDrrFUMvGQXWkdHga7PYwf8NHFjLO+o9R2ehATCHNykfmgbE6u+RuKJx3vqoM3MGaVa/OI1P9Jrha8/wGt5hkIMuEW0/n5w5UBs2NuUbMia+9abUy2EQxWJ2Nd4fJfmpvcsf/I1I9J0RuuBKNRcElnidBlK8tkGCw+gMv8T4H0njRoSSmo6dku8PEl71sLiorGdJddA9VRKorj2md3SW6IbeszPZM2/b/EVM4p0HPR6OV/PJruLcSqte8KaBwfsu9/s0e6FrNfhpkqnk+8asXPWSteCi3w3lo0578XQsHuIDHG8P6Dqhv4AtC+GUrhXdaFGWSZcmO9CyqU0w==";
//window.webappcert = "4gM?:G)lz^:r^BM:=BP.0{6YMM2.Vg{fOpeIjyU4cFud+E@>=ZFNFL]oK$eUW]/F?^z1gFmHj(KdQ15QEa(Vo/j*t3+b3Qnz/744vSt6UNj(Wt^R/ba5m#I/{U@)]HzXNcH:Nf}nR=)ansje.px01U1I8zGTx>O7zT}QieR7gwYPjITMoxtu799.8!LEGF?MhB$o&Ygz{<5dHkifW(9FJ6icJvxKbm<+xG1Qa%p>-J@6Q%czJ-/h@.b(XWkFA/1&u(7&=LvUB%tliH/kd3<5rcfryG]]+WZ&<^&[I[{l<xucJUM8fQHb]:cEeB*xbMzn+";
// http://127.0.0.1:1234,http://10.25.11.150:1234
window.password = "yyoussef";

  window.p12 = "30820A5E02010330820A2406092A864886F70D010701A0820A1504820A1130820A0D3082049F06092A864886F70D010706A08204903082048C0201003082048506092A864886F70D010701301C060A2A864886F70D010C0106300E0408EB8314818F8957E202020800808204584FD52765C18CF4EB7EE6F030C0D07EFECF901115D923DA104E80457E39AB58ED6D075F59EB02165DF36D6E674B80F313777F4675DA0F7E767F441D0B327AE13D347C54019BF3EEDFEDF574D2FFCDBFF09ABF66C70834E67053C57722DBEB9D37CC4E1A0624197BA8453BC7269AF210F27DFB290B16FD375DDDD36140506811412BFBAD8D3C70D1A8D3CC56BE973870B0E5D8A656E05777155A424E2E6147C66DD56EC2B844ACC8C1CBDAAEFF49FB991EBB4114422893D181ED52A1BE59B499AF0E7A2F8DE49C3C1DC4F96B4C93E342F8232D9A51949D6E2FB4B1F63D0D19196771E43B8CB0B3D849CF32DEEB62521D71318C3E35275FE00B269FE0F61768C7100D7C42DFC5E2E3CF64E56CA223CC2979EB3F9AA6B18216778F30368F06601790C7E162C8888C5FE0E29DB0DBCBE647487515A578462360DCC084C005B482EE6AF26A0B16AE61E293626D9000B370B682C3DB3514A8060600FD5AB3BE9A46C507CF69F972BA55CFF3AF6B11AFB120B7B1D917A8FB724AB3A15E799BCAF3A8DE493C141D20E7598645C3F8DA624F71C1EFC9CBE38C25666F469DA55DE4E397E76328EA2A1EA66F7C04877688C740CB68FEA034BE852300B40528E3161B7059FA2B2744846E95FED4D11474D769276FBAF61798D5B9468C48E21B5908076A80687ACB2A794F5180A2C4EE3B08E7A4C68BC58E2CC4A701B8FF0686385552A568B727998E0DFCD656DD8D5DA147A88AF0F72A3C92A08E3D03AEE504BCFA514D047A496C3E23211DFB54C2802C060202E9D10B06A929280061728D89612CE88563129669630B188D28193CE351B2544EC6155BD9EBA706804325C37972DEAFD99716E16AEA8EFE8B37DAA419E38C09515EF01C773B0BCD890CA3646FAF7B208B16033ADFBE91DCB7903EDA3C4A91D2DD210EBA5D434091F7189176A83730892CC70D35D3DF14EF0C6E7D8C45D0FFC6A409D9BD5A37A3F6EC8EAC0E56C30EAA2D276FBBB3382430908F8AEE21C9BC190DA25A7B5CDA3877C0FD7E14DCF2EF52991F87A3C805AE989EFAD89EFB76C17ED76E8416CC0089887794EDC2757D93EE81C70F7A79F705128CB487598F0C59CA1017A4F38F1270A2BB219BC26DB91DBE566720BF81D591FEC6F8166FAFBD6C8A3EF85D70AAE768908EE00A3C3053AD9C5FF57F09E70D14D33B934C946399FEBBB35096208B396B1D5526C038E704F670F804B095BC41D6EE6AB189A2C559170ED016E9FFA4BA2E153FA8635B17CE079342672CBDD7960B47527C2D3AB01916A82F86DF0CDBE8B0F123A5FE85812037450F9A5180D102B147EE6FD3A814D1872E060AA7D197FB0E07E874F92D34EE21416C0EA759C366FBBDE9E32209F72AEEBD7630C4FBA02C5F5DC7D908085C1C9B71DF34F072C95BAF2052808C7ADCC55162DE757AD53DE29EDE16EF009C3B836FC60251A5D49A075D86F86A2164F38CFE983FE571B6541B7B8B6A5C4CC09E64F4B19A829F3D67B9838779D1DF813A248ED21011610137C89272881E0D2F048B98DADF823F33DCB5EDBC5994EFBDB628341EFB1B2B699D8CEB77FDEE94773082056606092A864886F70D010701A0820557048205533082054F3082054B060B2A864886F70D010C0A0102A08204EE308204EA301C060A2A864886F70D010C0103300E0408FF988A81108A8C1602020800048204C88549F8E681336AF34A8822F0921A55FA2A718DBCB5D2B5A0733EEC24A757218DA1DA64BC73810C0217F58C6AEB8A2D5C5FB75BB0629153155A60C339734E00665D88229F96DD084D28F98BCA63E9B9353FA8F48751D164A12296DFCB38435A914EF90D1AC95E482636320FC71E8FAFD60227E8C07BB2B56D0444CF1548A87E80E315D644BE7462781E1E909C5D08D9730B4F26D2AAE68B7F8F0BFEB0CEAC08A0894B751AD52F0BCAE13FCAF2E3EF38F1C0931BADF3502D0BB0B8D803F8BC11134724B3A7320ED43BBEEF2800DFE699B677A188E12CFDD020FFFBA5751C16E779D03F99847CB3635AE9BF55BB50BBC81608D5B3E55E5C3F8686335604B24B861CCED7E02723052692A864897AB07342D6699A3938535F46833276B441B20B03BA546D6682C70A000DBE9AC208B23462BC91956BEBA7BB8A6A8F7737445B77E9D797237D9AFF31445ABD7F7A7DDE013E1EF23200137A826C3328341AFB362EBE18E0F2A2CB5DA294AD75A671E410D46BB3863501038A93CD4C254ADE0EC911D9E0EEFFFD16072BC4E1D2F881A7E1B449C18AEDC339BE1054EEC874F47B21CB2D0E27A6B9D00517468DAF209CD85A2A15F1E020FE3464D133CECF173F8075A3407BF3CCB5C5BAE26756338893A406A3EA4F09993D62C1A8495F74FAEF373B1CBEF5341324C7098E28F9FDF9824A357AEF67367C9676F228342D1DC9EC63AB9B73246BD0A770D4A64590043D055C41B718EE443E612AF2DCE5B0223AF5E9B6D9AD2BD1DCA2DBC6FE63BD6BAD2EBCC9E6F6605C8EFAF92CD92D08F1D0CD960EA517618C00B90E72879CB950BB0739091DB180308C66BA360899D457558877776A8CA375615CEAFB7DB8A7FDAC94AB52544FC87535129D42015F8E379B24F44D3D1C8629C0FDBED8A5F06EAFBDF386F60D0DA566EABE8B7F4B39C1A8E54ED285452EDA410E7719548A45A6024A221C698B306A55047F6837B0D2E35669F4A8705256757276F7BBFF8DC5CEFFDEB8E05BF019581D18FC788C0D1BB1418A978C654D7950E8ADB9D394F0360A54824862D809E3ADC5EAF7C7602F65A40758EAFCDFC6EF7824E8DC6DE40BBB4269F8E3578FF7157FA5F1BD19B0205BB50ADA7CCCF2D3AE631F5EF25F5E86B4BDB25F9A068613A1CAA76B3788F2A35BC5CD8D072105D7168EC533ABA1859CEA2904CAAA02C2719B7F1832E0AA52819492E3464BCA2260DB34650E1B2421F0D1C885CA9981A6D1BA5BE87E85CF02F6102485B7D672019931A7A7E58B33C81E0E8D139ACF0957765BCC90B147A77E3AF3E680A7DF6006FF3DD5EBCBE1C6F762A661594DDD8F012C1F8B907DF6511E41A98AABE1D93437B2C1DF09387C09B97840D1B6FCCE60096D942485BEBB2D525AD96108636AA18732B24DA59C6271690ABAD068305B8DA33974171B70F359199ACE68C140273DD7C5B98D54258D7232DC18DAE6389564A1C9E8515E57BDF05531697C8A5547AF868B24F67832A96EAA71395739651B727533EAAB53794AEAFE7EF0E89E4C8FF1C9DB3CBA3F68881B8F0B7857F2A226BFD8403ABD03ACF2FCFC18D545E47A84E846645B0B0F608D251A890B6ECCD6E8634FDF7F01E2C1145841D2A089C63B588DC6900E60DD359382AF53FD302579DD9733885D76BAF339565B52A28BEF147E4D2BEFA3668A6B99B7FC034FFA07BFAC6844CF1AD743F875B6CD9E47F6612A9AF7B0C051C568B82F41BD7130CD314A302306092A864886F70D01091431161E140079006F00750073007300650066005F00760033302306092A864886F70D01091531160414E7D7343D5B87A9E7F4B6D87353270FD8B3A89B0630313021300906052B0E03021A05000414EB2034DB2BE189DBF87422063FB6EBF5C46C4057040886C2012A3342832A02020800";
  window.certificate = "-----BEGIN CERTIFICATE-----\n MIIDNDCCAhwCCQDWfPjiGAVE3DANBgkqhkiG9w0BAQUFADBAMQswCQYDVQQGEwJGcjEPMA0GA1UECAwGVmllbm5lMQ8wDQYDVQQHDAZWaWVubmUxDzANBgNVBAoMBklkb3B0ZTAeFw0xODA1MzExMDIxNTNaFw0yMjA1MzExMDIxNTNaMHgxCzAJBgNVBAYTAkZyMQ8wDQYDVQQIDAZWaWVubmUxDzANBgNVBAcMBlZpZW5uZTEPMA0GA1UECgwGSWRvcHRlMQ4wDAYDVQQDDAVaSVRBTjEmMCQGCSqGSIb3DQEJARYXeW91c3NlZi56aXRhbkBpZG9wdGUuZnIwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCqPMenM1biCZbzAiaOt9rIoc7sHVEXGwex1yehBVfZi+P3B4bMY3h1i6k7YwfM2wdRRn/7vDbEwiT4tPc7MHnkWoFmrpIEVcSQzgNwBVY8yPNDxtVu3wtemCcnk7MT6c4F68cCnSsE9b2Jl2YzHOB3Ls+LSYRCscmCQTzLfIq3woW+PSgRBNiNDUZWiY1QyQWARqmyND0eD9hMeeEa/pvofZgEgiZPuCJT8QJSSOIp04Wok8wofZULc0GRImlV2QJiwogcJoExCpiVSBY+V0nC3JmITIXYzLZ+ojhTOCEETCnlmjPodQk0tiZM3NdgRA/zTCBCTqVu220/9Ik+LMnXAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBACqfHAhEQr988fVxksK5weg744wwYXoVZBCT9aIjEwjoTkP1EJEoUr8WHBvOJ9yXa6JSqRaaLzPE4E3Og62wIln39DIfAYf4OKo0noJ1Y4pT4b+nz3Hk+t3wIaUO53bnNxGaB8R5jWcMBv/sniPCAJ60/UO5NF6+D1yqCuR8fjL/WXpftSmL0Q1IFQJ/d0Xn+5VNEW4FB1/uIjZEXoAOxnsOOWUpoFKoePO6vvchE9cyL6T+1Ww36gOELT8k7g/WrnldPbc8sg4gW1UsW12kjLP9Pa3jzkRt31WZUISuTg1SSJO/QfshCY2luJNMNtSFkPcQ2tDoRNahA8xsXq8MKJI=\n-----END CERTIFICATE-----";

  // Ron Weasley
  window.p12_example_2k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
  // Minerva McGonagall
  window.p12_example_3k
  // Lucius Malefoy
  window.p12_example_4k

function log(msg) {
	window.infodiv.insertAdjacentHTML('beforeend', msg + '<br>');
	window.infodiv.scrollTop += 1000;
}

window.certlistObject = [];

window.onload = function() {
	window.infodiv = document.getElementById("infodiv");
	window.certlist = document.getElementById("certificatelist");
	window.scandlg = document.getElementById("scandlg");
	window.scanfield = document.getElementById("scanfield");
	window.scandlg.style.visibility = "hidden";

	var promise = new Promise(function(resolve, reject) {
		var req = new XMLHttpRequest();
		req.onreadystatechange = function () {
			if (this.readyState === 4) {
				if (this.status === 200){
					resolve(req.responseText);
				}
				else
					reject(new Error("Challenge generation failed"));
			}
		};
		req.open("GET", "generatechallenge.php", true);
		req.send();
	}).then(function(challenge) {
		/* connecting to SCWS */
		log("Connecting to SCWS...");
		SCWS.findService(window.webappcert, challenge).then(function(findServiceData) {
			log("Connection to SCWS succeeded");
			return new Promise(function(resolve, reject) {
				var req = new XMLHttpRequest();
				req.onreadystatechange = function () {
					if (this.readyState === 4) {
						if (this.status === 200)
							resolve(req.responseText);
						else
							reject(new Error("Cryptogram verification failed"));
					}
				};
				req.open("GET", "verifycryptogramsignchallenge.php?keyID=" + findServiceData.keyID + "&cryptogram=" + findServiceData.cryptogram + "&rnd=" + findServiceData.challenge, true);
				req.send();
			}).then(function(signature) {
				log("create environment...");
				return SCWS.createEnvironment(signature);
			});
		}).then(function() {
			log("SCWS environment created successfully");
			SCWS.onserviceunresponsive = function() {
				log("Service became unresponsive");
			}
		}).catch(function(err){
			log("ERROR: " + err.message);
			window.certlist.clearChildren();
		});
	}).catch(function(err) {
		log("ERROR: " + err.message);
		window.certlist.clearChildren();
	});
}

if( typeof Element.prototype.clearChildren === 'undefined' ) {
	Object.defineProperty(Element.prototype, 'clearChildren', {
		configurable: true,
		enumerable: false,
		value: function() {
			while(this.firstChild) this.removeChild(this.lastChild);
		}
	});
}

function requestCertificates() {
	log("request certificates...");
	var options = {
	};
	var enableSoftToken = getEnableSoftToken();
	if (enableSoftToken != "default") 
		options["enableSoftToken"] = enableSoftToken;
	var scanDialogMode = getScanDialogMode();
	if (scanDialogMode == "synchronous") {
		options["showScanDlg"] = showScanDlg;
		options["closeScanDlg"] = closeScanDlg;
		options["setScanDlgMsg"] = setScanDlgMsg;
	}
	else if (scanDialogMode == "asynchronous") {
		options["showScanDlg"] = showScanDlgAsynchronous;
		options["closeScanDlg"] = closeScanDlgAsynchronous;
		options["setScanDlgMsg"] = setScanDlgMsgAsynchronous;
	}
	if (getScanMessageMode() == "customized") {
		options["waitingMsg"] = "Veuillez insérer une carte.";
		options["connectingMsg"] = "Connexion à la carte.";
		options["readingMsg"] = "Lecture de la carte";
	}

	return SCWS.requestCertificates(function(certificates) {
		log("update list of certificates...");
		window.certlist.clearChildren();
		for (var i = 0; i < certificates.length; i++) {
			var certificate = certificates[i];
			var elt = document.createElement("option");
			elt.id = window.certlistObject.length;
			window.certlistObject.push(certificate);
			var readerName = "soft token";
			if (certificate.parent.reader)
				readerName = certificate.parent.reader.name;
			elt.textContent = certificate.subject + " (" + certificate.issuer + ") - " + readerName ;
			window.certlist.appendChild(elt);
		}
		log("Found " + certificates.length + " certificates");
		return certificates;
	}, options).then(function(certificates){
		log("requestCertificates finished");
		log("Found " + certificates.length + " certificates");
		log("");
	}).catch(function(err) {
		log("ERROR on request certificates: " + err.message);
		window.certlist.clearChildren();
		log("");
	});
}

function getEnableSoftToken()
{
	var elt = document.querySelector('input[name="softToken"]:checked');
	if (!elt || !elt.value)
		return "default";
	return elt.value;
}

function getScanDialogMode()
{
	var elt = document.querySelector('input[name="scandlg"]:checked');
	if (!elt || !elt.value)
		return "asynchronous";
	return elt.value;
}

function getScanMessageMode()
{
	var elt = document.querySelector('input[name="scanMessage"]:checked');
	if (!elt || !elt.value)
		return "asynchronous";
	return elt.value;
}

function showScanDlg() {
	window.scandlg.style.visibility = "visible";
}

function closeScanDlg(message) {
	window.scanfield.value = getCloseScanMessage(message);
	window.scandlg.style.visibility = "hidden";
}

function getCloseScanMessage(message) {
	if (message)
		return message;
	else if (getScanMessageMode() == "nominal")
		return "The operation is finished with success.";
	else
		return "L'opération s'est terminée avec succés.";
}

function setScanDlgMsg(message) {
	window.scanfield.value = message;
}

function showScanDlgAsynchronous() {
	return new Promise(function(resolve, reject) {
		window.scandlg.style.visibility = "visible";
		resolve();
	});
}

function closeScanDlgAsynchronous(message) {
	return new Promise(function(resolve, reject) {
		window.scanfield.value = getCloseScanMessage(message);
		return setTimeout(function() {
			window.scandlg.style.visibility = "hidden";
			resolve();
		}, 2000);
	});
}

function setScanDlgMsgAsynchronous(message) {
	return new Promise(function(resolve, reject) {
		window.scanfield.value = message;
		resolve();
	});
}

function reconnectCertificate(certificate)
{
	return new Promise(function(resolve, reject){
		var reader = SCWS.getReader(certificate.parent.reader.name);
		if(!reader)
			reject("reader not found");
		reader.connect().then(function(token) {
			token.getObjects().then(function(objects){
				for (var i = 0; i < objects.length; ++i) {
					var object = objects[i];
					if(object.type === "certificate" && object.ckId === certificate.ckId)
						resolve([certificate,token]);
				}
			}).catch(reject)
		}).catch(reject)
	});
}

function chooseCert()
{
	/* get selected certificate element */
	var elt = window.certlist.options[window.certlist.selectedIndex];
	/* enumerate through connections and certificate items to retrieved corresponding certificate object */
	var conn = null;
	var certificate = window.certlistObject[elt.id];
	
	/* remember selected elements */
	window.choosenCertificate = certificate;
	if (certificate) {
		/* updating pin name label */
		document.getElementById("pinname").textContent = certificate.parent.pins[certificate.pinNumber].label || "(Default PIN)";
		/* updating certificate value */
		certificate.getValue().then(function(value) {
			document.getElementById("certificatevalue").textContent = value;
		/* build software certificate and public key using forge library */
			window.forgeCert = forge.pki.certificateFromPem(value);
			window.forgePubKey = window.forgeCert.publicKey;
		})
	}
}

function getGlobalPin()
{
	return new Promise(function (resolve, reject) {
		if (!window.choosenCertificate)
			throw "no certificate selected";
		reconnectCertificate(window.choosenCertificate).then(function(res) {
			window.connection = res[1];
			resolve(res[1].pins[res[0].pinNumber]);
		});
	});
}

function getGlobalToken()
{
	return new Promise(function (resolve, reject) {
		if (!window.choosenCertificate)
			throw "no certificate selected";
		reconnectCertificate(window.choosenCertificate).then(function(res) {
			window.connection = res[1];
			resolve(window.connection);
		});
	});
}

function disconnectAll()
{
	if(window.connection)
		return window.connection.disconnect();
	else
		return Promise.resolve();
}

function startAutoLogin()
{
	getGlobalPin().then(function(pin) {
		log("startAutoLogin ...");
		pin.startAutoLogin(document.getElementById("auto-login-counter").value).then(function() {
			disconnectAll().then(function() {
				log("startAutoLogin successful");
			});
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR: " + err.message);
			});
		});
	});
}

function stopAutoLogin()
{
	getGlobalPin().then(function(pin) {
		log("stopAutoLogin ...");
		pin.stopAutoLogin().then(function() {
			disconnectAll().then(function() {
				log("stopAutoLogin successful");
			});
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR: " + err.message);
			});
		});
	});
}

function login()
{
	getGlobalPin().then(function(pin) {
		log("Login...");
		pin.login(document.getElementById("pin").value).then(function() {
			disconnectAll().then(function() {
				log("Login successful");
			});
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR: " + err.message);
			});
		});
	});
}

function change()
{
	getGlobalPin().then(function(pin) {
		log("change pin...");
		pin.change().then(function() {
			disconnectAll().then(function() {
				log("change pin successful");
			});
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR: " + err.message);
			});
		});
	});
}

function init()
{
	getGlobalPin().then(function(pin) {
		log("Login PUK...");
		pin.login(false, true).then(function() {
			disconnectAll().then(function() {
				log("Login PUK successful");
			});
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR: " + err.message);
			});
		});

		log("init pin...");
		pin.init().then(function() {
			disconnectAll().then(function() {
				log("Init pin successful");
			});
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR: " + err.message);
			});
		});
	});
}

function loginWithPinDialog()
{
	getGlobalPin().then(function(pin) {
		log("Login...");
		pin.login(false).then(function() {
			disconnectAll().then(function() {
				log("Login successful");
			});
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR: " + err.message);
			});
		});
	});
}

function loginWithPinPad()
{
	getGlobalPin().then(function(pin) {
		log("Login...");
		pin.login().then(function() {
			disconnectAll().then(function() {
				log("Login successful");
			});
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR: " + err.message);
			});
		});	
	});
}

function RequestCredentialLoop() {
	getGlobalPin().then(function(pin) {
		var state = pin.initSubmissionsState;
		log("--------------------------");
		log("Request credential loop...");

		var iter = 0;

		let requestLoop = function() {
			log(" - requestCredential (" + ++iter +")...");
			pin.requestCredential(
				pin.credentialProperties,
				state,
				pin.token.reader.name,
				pin.token.label).then(function(credential) {
					log(" - requestCredential (" + iter +") done");

					if (credential) {
						log(" - login (" + iter +")...");
						pin.login(credential, state).then(function() {
							disconnectAll().then(function() {
								log("Login successful");
								log("--------------------------");
							});
						}, function(err) {
							log("\tlogin error: " + err.message);
							const noFatalErrors = [
								"CKR_PIN_INCORRECT",
								"CKR_PIN_INVALID",
								"CKR_PIN_LEN_RANGE",
								// for test only, we accept this error to check request credential/pin dialog behaviors if a credential is being blocked
								"CKR_PIN_LOCKED"
							];
							if (noFatalErrors.indexOf(err.code) !== -1)
								requestLoop();
							else
								disconnectAll().then(function() {
									log("ERROR: " + err.message);
									log("--------------------------");
								});
						});
					}
					else {
						disconnectAll().then(function() {
							log("Canceled by the user.");
							log("--------------------------");
						});
					}
				}, function(err) {
					disconnectAll().then(function() {
						log("ERROR requestCredential: " + err.message);
						log("--------------------------");
					});
				}
			);
		};

		requestLoop();
	});
}



function bioEnroll() {
	getGlobalPin().then(function(pin) {
		log("Bio enroll...");
		pin.bioEnroll().then(
			function() {
				log("bio enroll successful");
			},
			function(err) {
				log("ERROR bio enroll: " + err.message);
			}
		);
	});
}

function ActivateBiometry() {
	getGlobalPin().then(function(pin) {
		log("Activating biometry feature...");
		pin.login(false, true).then(function() {
			pin.ActivateBiometry().then(
				function() {
					log("Biometry successfully activated");
				},
				function(err) {
					log("ERROR Activate biometry: " + err.message);
				}
			);
		}, function(err) {
			disconnectAll().then(function() {
				log("ERROR login SO: " + err.message);
			});
		});
	});
}

function initToken() {
	log("Initializing token...");
	SCWS.readers[0].connect().then(function(token) {
		// Check if pins have been entered
		pin = new SCWS.Pin(token, 0);
		let constraints = {
			label: document.getElementById("labelfield").value,
			minUpperCase: document.getElementById("minUpperCase").value,
			minLowerCase: document.getElementById("minLowerCase").value,
			minDigit: document.getElementById("minDigit").value,
			minSpecial: document.getElementById("minSpecial").value,
			maxIdenticalSequence: document.getElementById("maxIdenticalSequence").value,
			maxIncDecSequence: document.getElementById("maxIncDecSequence").value,
			minLength: document.getElementById("minLength").value,
			maxLength: document.getElementById("maxLength").value,
			minAlphabetic: document.getElementById("minAlphabetic").value,
			minAlphanumeric: document.getElementById("minAlphanumeric").value,
			pinDuration: document.getElementById("pinDuration").value,
			maxUnlock: document.getElementById("maxUnlock").value,
			maxTriesSoftware: document.getElementById("maxTriesSoftware").value,
			historyCount: document.getElementById("historyCount").value,
		};

		// Check compatibility
		if (constraints[minLength] > constraints[maxLength])
			log("ERROR: min length is larger than max length.");
		var sumMinLength = constraints[minUpperCase] + constraints[minLowerCase] + constraints[minDigit] +
			constraints[minSpecial] + constraints[minAlphabetic] + constraints[minAlphanumeric];
		if (constraints[sumMinLength] > constraints[maxLength])
			log("ERROR: max length and required minimum are not compatible");
		if (constraints[minAlphabetic] < constraints[minUpperCase] + constraints[minLowerCase])
			log("ERROR: minAlphabetic must be ≥ minUpperCase + minLowerCase");
		if (constraints[minAlphanumeric] < (constraints[minAlphabetic] + constraints[minDigit]))
			log("ERROR: minAlphanumeric must be ≥ minAlphabetic + minDigit");

		token.initToken(constraints).then(function(response) {
			log("SUCCESS: Token initialized.");
		}).catch(function(error) {
			error("ERROR: Failed to init token... ", error);
		});
	})
}

function getHashAlg()
{
	var elt = document.querySelector('input[name="hashalg"]:checked');
	if (!elt || !elt.value)
		return null;
	return elt.value;
}

function getKeyType()
{
	var elt = document.querySelector('input[name="keytype"]:checked');
	if (!elt || !elt.value)
		return null;
	return elt.value;
}

function fillOptions()
{
	var options = {
	};
	var enableSoftToken = getEnableSoftToken();
	if (enableSoftToken != "default") 
		options["enableSoftToken"] = enableSoftToken;
	var scanDialogMode = getScanDialogMode();
	if (scanDialogMode == "synchronous") {
		options["showScanDlg"] = showScanDlg;
		options["closeScanDlg"] = closeScanDlg;
		options["setScanDlgMsg"] = setScanDlgMsg;
	}
	else if (scanDialogMode == "asynchronous") {
		options["showScanDlg"] = showScanDlgAsynchronous;
		options["closeScanDlg"] = closeScanDlgAsynchronous;
		options["setScanDlgMsg"] = setScanDlgMsgAsynchronous;
	}
	if (getScanMessageMode() == "customized") {
		options["waitingMsg"] = "Veuillez insérer une carte.";
		options["connectingMsg"] = "Connexion à la carte.";
		options["readingMsg"] = "Lecture de la carte";
	}
	return options;
}

function sign()
{
	/* sign the input data using the selected hash algorithm */
	log("request private key...")
	var options = fillOptions();

	SCWS.requestPrivateKey(window.choosenCertificate, false, function(pkey){
		log("Signature...");
		try {
			var data = document.getElementById("datafield").value;
			var hashAlg = getHashAlg();
			window.signatureKeyType = pkey._keyAlg;
			if (hashAlg) {
				return pkey.hashAndSign(data, hashAlg).then(function(data) {
					data = SCWS.toHexString(data);
					log("Signature done:<br>&nbsp;&nbsp;" + data);
					window.lastRet = forge.util.hexToBytes(data);
				});
			}
			else {
				return pkey.sign(SCWS.fromHexString(data)).then(function(data) {
					data = SCWS.toHexString(data);
					disconnectAll().then(function() {
						log("Signature done:<br>&nbsp;&nbsp;" + data);
						window.lastRet = forge.util.hexToBytes(data);
					});
				});
			}
		}
		catch(err)	{
			log("ERROR: " + err.message);
			throw err;
		}
	}, options).then(function() {
		log("request private key succeeded.");
		log("");
	}).catch(function(error) {
		log("request private key failed: " + error.message);
		log("");
	});
}

function verify()
{
	if (window.signatureKeyType === "ECDSA")
		verifyEC();
	else if (window.signatureKeyType === "RSA")
		verifyRSA();
}

function verifyRSA()
{
	/* verify the previously generated signature, using the input data and hash algorithm */
	var r;
	try {
		var hash, scheme;
		var data = document.getElementById("datafield").value;
		var hashAlg = getHashAlg();
		if (hashAlg) {
			hash = forge.md[hashAlg].create();
			hash.update(data);
			hash = hash.digest().bytes();
			scheme = "RSASSA-PKCS1-V1_5";
		}
		else {
			hash = forge.util.hexToBytes(data);
			scheme = null;
		}
		log("Recovered data:<br>&nbsp;&nbsp;" + forge.util.bytesToHex(forge.rsa.decrypt(window.lastRet, window.forgePubKey, true, true)));
		r = window.forgePubKey.verify(hash, window.lastRet, scheme) ? "OK" : "failed";
	}
	catch (ex) {
		r = "failed (" + ex + ")";
	}
	log("Verification " + r);
}

function makeASN1Integer(hexStr) {
    // Remove leading zeros
    hexStr = hexStr.replace(/^00+/, '');

    // Add leading 00 if high bit is set (to indicate positive integer)
    if (parseInt(hexStr[0], 16) >= 8) {
        hexStr = '00' + hexStr;
    }

    const bytes = forge.util.hexToBytes(hexStr);

    return forge.asn1.create(forge.asn1.Class.UNIVERSAL, forge.asn1.Type.INTEGER, false, bytes);
}

function RawToDERSignature(rawSig) {
    // rawSig: Forge binary string or Uint8Array with r||s
    if (rawSig instanceof Uint8Array) {
        rawSig = forge.util.createBuffer(rawSig).getBytes();
    }

    const len = rawSig.length;
    if (len % 2 !== 0) {
        throw new Error("Invalid raw signature length");
    }

    const r = rawSig.substring(0, len / 2);
    const s = rawSig.substring(len / 2);

    const rBytes = forge.util.createBuffer(r, 'raw').toHex();
    const sBytes = forge.util.createBuffer(s, 'raw').toHex();

    return forge.asn1.toDer(forge.asn1.create(forge.asn1.Class.UNIVERSAL, forge.asn1.Type.SEQUENCE, true, [
        makeASN1Integer(rBytes),
        makeASN1Integer(sBytes)
    ])).getBytes();
}

function verifyEC() {
    let r;
	console.log(typeof window.lastRet);
    try {
        const data = document.getElementById("datafield").value;
        const hashAlg = getHashAlg();
        if (!hashAlg) throw "No hash algorithm selected";

        // Hash the message
        const md = forge.md[hashAlg].create();
        md.update(data, 'utf8');
        const digest = md.digest().bytes();

		const signatureDer = RawToDERSignature(window.lastRet);

        const verified = window.forgePubKey.verify(digest, signatureDer);
        r = verified ? "OK" : "failed";
    } catch (ex) {
        r = "failed (" + ex + ")";
    }
    log("Verification " + r);
}

function encrypt()
{
	/* encrypt the input data */
	var data = document.getElementById("datafield").value;
	var r = window.forgePubKey.encrypt(forge.util.hexToBytes(data));
	window.lastRet = r;
	r = forge.util.bytesToHex(r);
	log("Encryption done:<br>&nbsp;&nbsp;" + r);
}

function decrypt()
{
	var options = fillOptions();

	/* decrypt the result of the last encryption */
	SCWS.requestPrivateKey(window.choosenCertificate, false, function(pkey){
		try {
			//var a = forge.util.binary.raw.decode(window.lastRet);  Ligne utile pour essayer décrypt en IE
			//log("Decryption... :<br>&nbsp;&nbsp" + a );
			log("Decryption...");
			return pkey.decrypt(forge.util.binary.raw.decode(window.lastRet)).then(function(data) {
				data = SCWS.toHexString(data);
				log("Decryption done:<br>&nbsp;&nbsp;" + data);
			});
		}
		catch(err) {
			log("ERROR: " + err.message);
		}
	}, options);
}

function loadFile(file, callback)
{
	var xobj = new XMLHttpRequest();
	xobj.open('GET', file, true);
	xobj.onreadystatechange = function () {
		if (xobj.readyState == 4 && xobj.status == "200") {
			callback(xobj.responseText);
		}
	};
	xobj.send(null);
}

loadFile('rootCA.crt', function(file) {
	window.caCert = forge.pki.certificateFromPem(file);
});

loadFile('rootCA.key', function(file) {
	window.caKey = forge.pki.privateKeyFromPem(file);
});

function changePage()
{
	localStorage.setItem("arr", JSON.stringify(SCWS.saveEnvironment()));
	window.location.href = "restore_environment.html";
}

function generatekeypair()
{
	SCWS.readers[0].connect().then(function(token) {
    pin = new SCWS.Pin(token, 0);
    pin.login(false, false).then(function(value){
		if (getKeyType() == "RSA")
		{
			token.generateKeyPair(document.getElementById("keysize").value, {container: document.getElementById("containername").value, label: "test"}).then(function(){
           log("key pair generated."); 
        });
		}
		if (getKeyType() == "EC"){
			token.generateKeyPair(document.getElementById("keysize").value, {container: document.getElementById("containername").value, label: "test", parameters: {curveName: document.getElementById("keyparam").value}}).then(function(){
           log("key pair generated."); 
        });
		}
    }, function(err) {console.log(err);});
});
		
}

function signCSR(csrPath)
{
	return new Promise(function(resolve, reject) {
		var req = new XMLHttpRequest();
		req.onreadystatechange = function () {
			if (this.readyState === 4) {
				if (this.status === 200)
					resolve(req.responseText);
				else
					reject(new Error("read file failed"));
			}
		};
		req.open("GET", csrPath, true);
		req.send();
	}).then(function(csrPem) {
		var csr = forge.pki.certificationRequestFromPem(csrPem);
		var certificate = forge.pki.createCertificate();
		certificate.serialNumber = '01';
		certificate.validity.notBefore = new Date();
		certificate.validity.notAfter = new Date();
		certificate.validity.notAfter.setFullYear(certificate.validity.notBefore.getFullYear() + 1);
		certificate.setSubject(csr.subject.attributes);
		certificate.setIssuer(window.caCert.subject.attributes);
		certificate.setExtensions([{
			name: 'keyUsage',
			keyCertSign: true,
			digitalSignature: true,
			nonRepudiation: true,
			keyEncipherment: true,
			dataEncipherment: true
		}]);
		certificate.publicKey = csr.publicKey;
		// sign certificate with CA key
		certificate.sign(window.caKey);
		return certificate;
	});
}

// bout de code pour détruire un objet dans la carte via SCWS
// A mettre dans la console
/*
SCWS.readers[0].connect().then(function(token) {
    pin = new SCWS.Pin(token, 0);
    pin.login(false, false).then(function(value){
        token.getObjects().then(function(objects){
            console.log(objects);
            SCWS.destroyObjects(objects[1]).then(function(){
                console.log("object destroyed");
            });
        });
    }, function(err) {console.log(err);});
});
*/

// A mettre dans la console
//Genere une paire de clés
/*
SCWS.readers[0].connect().then(function(token) {
    pin = new SCWS.Pin(token, 0);
    pin.login(false, false).then(function(value){
        token.generateKeyPair(2048, {container: "auth", label: "test"}).then(function(){
           console.log("key pair generated."); 
        });
    }, function(err) {console.log(err);});
});
*/

// A mettre dans la console
//importe le certficat Voldemort (Pour l'utiliser sur IE il faut le passer par Babel)
/*
var formData = new FormData();
var p
var byteArray1 = new Uint8Array(p12_1.match(/.{2}/g).map(e => parseInt(e, 16)));
var blob1 = new Blob([byteArray1], {type: "application/octet-stream"});
formData.append("file", blob1);
formData.append("password", "yyoussef");

SCWS.readers[0].connect().then(function(token) {
    pin = new SCWS.Pin(token, 0);
    pin.login(false, false).then(function(value){
        token.getObjects().then(function(objects){
            token.import(formData, {label: "P12"}).then(() => {
                console.log("object imported.");
            });
        });
    }, function(err) {console.log(err);});
});
*/

var testSoftToken2k = function() {
	log("Test Softtoken import 2k...");
	return getSoftTokenAndImport(window.p12_example_2k);
}
var testSoftToken3k = function() {
	log("Test Softtoken import 3k...");
	return getSoftTokenAndImport(window.p12_example_3k);
}
var testSoftToken4k = function() {
	log("Test Softtoken import 4k...");
	return getSoftTokenAndImport(window.p12_example_4k);
}

function softtoken() 
{
	testSoftToken2k()
		.then(testSoftToken3k)
		.then(testSoftToken4k);
}


function removeTestP12FromStore() {
	return SCWS.getSoftToken().then(
		function(token) {
			token.getObjects().then(function(objects) {
				
				var ckIdsToRemove = [];
				var subjectsToRemove = [
					"Ron Weasley", //  (2025)
					"Minerva McGonagall", //  (2025)
					"Lucius Malefoy"  //  (2025)
				];
				
				var objectNb = objects.length;

				for (var i = 0; i < objectNb; i++) {
					if (subjectsToRemove.includes(objects[i].subject)) {
						ckIdsToRemove.push(objects[i].ckId);
					}
				}
				
				var promises = [];
				for (var i = 0; i < objectNb; i++) {
					if (ckIdsToRemove.includes(objects[i].ckId) ) {
						promises.push(SCWS.destroyObjects(objects[i]));
					}
				}
				Promise.allSettled(promises).then(function() {
					log("test p12 removed from store");
				});
			})
		}
	);
}


function getSoftTokenAndImport(p12)
{
	return new Promise(function(resolve, reject) {
		SCWS.getSoftToken().then(function(token) {
			var attributes = {"label": "test"};
			var data = {"subjectName":{"CN":"Test Sign","OU":"Dev","O":"Idopte","L":"Vienne","ST":"Isere","C":"FR", "emailAddress":"test@idopte.fr"}};

			var formData = new FormData()
			var byteArray = new Uint8Array(p12.match(/.{2}/g).map(function(e) { return parseInt(e, 16);}));
			var blob = new Blob([byteArray], {type: "application/octet-stream"});
			formData.append("file", blob);
			formData.append("password", window.password);
			token.import(formData, attributes).then(function(objects) {
				log("Softoken imported");
				resolve();
			}).catch(function (err) {
				log(err);
				log("try 'SoftToken Clear test P12 From Store' first");
			});
		});
	});
}

function getCertStores() {
	log ("Test SCWS.getCertStores()");
	SCWS.getCertStores().then(function(stores){
		var storeNb = stores.length;
		log("Found " + storeNb + " stores");
		for (var i = 0; i<storeNb; i++) {
			var store = stores[i];
			store.getObjects().then(function(objects){
				log("Store name: "+ store.name);
				log("Store systemName: "+ store.systemName);
				var objectNb = objects.length;
				log("Found " + objectNb + " objects");
				for (var j=0; j<objectNb && j<5; j++) {
					log ("[" + j + "] Certificate: " + objects[j].subject);
					log ("[" + j + "]   issued by: "+ objects[j].issuer);
				}
				if (objectNb > 5) {
					log ("...");
				}
			})
		}
	}
	);
}

function callbackChipAuth(pubKey) {
	return pubKey;
}

function ChipAuth() {
	SCWS.readers[0].connect().then(function(token) {
    token.chipAuthenticate("534D","3","0.4.0.127.0.7.2.2.3.2.4",callbackChipAuth).then(function(){
		log("chip auth success"); 
	});
});
}

// SignEncrypt functions

/* Download file content from a blob client side */
function downloadBlobLocal(blob, fileName) {
	var a = document.createElement("a");
	document.body.appendChild(a);
	a.style = "display: none";
	var url = window.URL.createObjectURL(blob);
	a.href = url;
	a.download = fileName;
	a.click();
	window.URL.revokeObjectURL(url);
};

function isIE(){
	var ua = window.navigator.userAgent;
	var pf = window.navigator.platform ;
	return window.document.documentMode || (!!ua.match(/MSIE/i) && !!pf.match(/win/i));
}

/* Send a Blob object to web server running locally on 127.0.0.1:1234 */
function sendBlobToServer(blob, fileName) {
	var xhr = new XMLHttpRequest();
	xhr.open("POST", 'http://127.0.0.1:1234/test/saveFile.php?fileName=' + fileName);
	xhr.send(blob);
}

/* Download file content from a blob */
function downloadBlob(blob, fileName) {
	if (isIE()) {
		log ("Downloading " + fileName + " server side (scwsapi/javascript/test/downloads)")
		sendBlobToServer(blob, fileName)
	} else
		downloadBlobLocal(blob, fileName)
};

/* Get PDF from local storage as a Blob */
function getBlobFromLocal(inputID) {
	var selectedFile = document.getElementById(inputID).files[0];
	return selectedFile;
}

function getFormatName(format) {
	if (format == "PADES") {
		return "pades";
	}
	else if (format == "PKCS7") {
		return "p7";
	}
	else if (format == "CADES_ATTACHED") {
		return "cades_att";
	}
	else if (format == "CADES_DETACHED") {
		return "cades_det";
	}
	else if (format == "XADES_DETACHED") {
		return "xades";
	}
	else {
		console.log("unsupported format: "+ format);
		return "undefined";
	}
}


function getDownloadExtension(format) {
	if (format == "PADES"){
		return ".pdf";
	}
	else if (format == "PKCS7" || format == "CADES_ATTACHED" || format == "CADES_DETACHED") {
		return ".p7s";
	}
	else if (format == "XADES_DETACHED") {
		return ".xml";
	}
	else {
		console.log("unsupported format: "+ format);
		return;
	}
}

function signDoc() {
	var blob = getBlobFromLocal("inputFile");
	var options = {format: document.querySelector('input[name="signEncryptFormat"]:checked').value, hashAlgorithm: document.querySelector('input[name="signEncryptHashAlg"]:checked').value};
	if (options.format == "XADES_DETACHED"){
		for(var key in {fileName: "filename"}){
			if({fileName: "filename"}.hasOwnProperty(key)){
				options[key] = {fileName: "filename"}[key];
			}
		}
	}
	var options2 = fillOptions();
	SCWS.requestCertificates(function(certificates) {
		return certificates;
	},options2).then(function(certificates) {
		var index = 0;
		if (window.certlist != undefined && window.certlist.selectedIndex != undefined) {
			index = window.certlist.selectedIndex;
		}
		SCWS.requestPrivateKey(certificates[index], false, function(pKey, cert) {
			return SCWS.signDocument(blob, pKey, cert, options).then(function(signedBlob) {
				log("Signature has succeeded.");
				downloadBlob(
					signedBlob,
					"Test_sign_" + blob.name + "_" + getFormatName(options.format) + 
					"_" + options.hashAlgorithm + getDownloadExtension(options.format));
			}, function(err) {log(err);});
		},options2);
	});
}


function encryptDoc() {
	var options = fillOptions();
	var blob = getBlobFromLocal("inputFile");

	SCWS.requestCertificates(function(certificates) {
		var certsForEncryption = certificates;
		if (window.certlist != undefined && window.certlist.selectedIndex != undefined) {
			certsForEncryption = certificates[window.certlist.selectedIndex];
		}
		return SCWS.encryptDocument(blob, certsForEncryption).then(function(signedBlob) {
			log("Encryption has succeeded.");
			downloadBlob(signedBlob, "Test_encrypted_" + blob.name + ".p7");
		}, function(err) {log(err);});
		return certificates;
	},options);
}

function signEncryptDoc() {
	var blob = getBlobFromLocal("inputFile");
	var options = {hashAlgorithm: document.querySelector('input[name="signEncryptHashAlg"]:checked').value};
	var options2 = fillOptions();

	// var x509_raw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
	// var byteArray = new Uint8Array(x509_raw.match(/.{2}/g).map(e => parseInt(e, 16)));
	// var blobCert = new Blob([byteArray], {type: "application/octet-stream"});
	// SCWS.createCertificate(blobCert).then(function(certificate) {
	// 	console.log(certificate);
	// });

	SCWS.requestCertificates(function(certificates) {
		return certificates;
	},options2).then(function(certificates) {
		var index = 0;
		if (window.certlist != undefined && window.certlist.selectedIndex != undefined) {
			index = window.certlist.selectedIndex;
		}

		SCWS.requestPrivateKey(certificates[index], false, function(pKey, cert) {
			return SCWS.signEncryptDocument(blob, pKey, cert, cert, options).then(function(signEncryptedBlob) {
				log("SignEncryption has succeeded.");
				downloadBlob(signEncryptedBlob, "Test_signEncrypted.p7");
			}, function(err) {log(err);});
		},options2);
	});
}


function verifyDoc() {
	var blob = getBlobFromLocal("inputFile");
	var originalBlob = undefined;
	var originalBlobCallback = undefined;

	var options = {format: document.querySelector('input[name="signEncryptFormat"]:checked').value};

	if (options.format == "CADES_DETACHED" || options.format == "XADES_DETACHED") {
		originalBlob = document.getElementById("originalFile").files[0];
	}

	if (options.format == "CADES_ATTACHED" || options.format == "PKCS7") {
		originalBlobCallback = downloadBlob;
	}

	SCWS.verifyDocument(blob, options, originalBlob, originalBlobCallback).then(function(verifResult){
		log("");
		log("Verification has succeeded.");
		log("globalSignatureValidity: " + verifResult.globalSignatureValidity);
		for (var i = 0; i < verifResult.signatories.length; i++) {
			log("");
			log("\nSignatory " + i + ":");
			log("Name: " + verifResult.signatories[i].certificate._subjectName);
			log("Certificate handle: " + verifResult.signatories[i].certificate._handle);
			log("signatureValidity: " + verifResult.signatories[i].signatureValidity);
			log("signerTrust: " + verifResult.signatories[i].signerTrust);
			log("cadesBESCompliance: " + verifResult.signatories[i].cadesBESCompliance);

		}
	}, function(err) {log(err);});
}

function decryptDoc() {
	var blob = document.getElementById("inputFile").files[0];
	var options = fillOptions();
	function callbackDecrypt(recipientsList, decryptWith) {
		SCWS.requestCertificates(function(certificates) {
			return SCWS.matchIssuerAndSerialsWithCerts(recipientsList, certificates).then(function(result) {
				for (var i = 0; i < certificates.length; i++) {
					const index = result.indexOf(certificates[i]._handle);
					if (index != -1)
						return certificates[i];
				}
			});
		},options).then(function(certificate) {
			return SCWS.requestPrivateKey(certificate, false, function(pKey, cert) {
				return decryptWith(pKey, cert);
			},options);
		});
	}

	SCWS.decryptDocument(blob, callbackDecrypt).then(function(blob){
		log("Decryption has succeeded.");
		downloadBlob(blob, "Test_decrypted");
	}, function(err) {log(err);});
}


function decryptVerifyDoc() {
	var blob = document.getElementById("inputFile").files[0];
	var options = fillOptions();
	function callbackDecrypt(recipientsList, decryptWith) {
		SCWS.requestCertificates(function(certificates) {
			return SCWS.matchIssuerAndSerialsWithCerts(recipientsList, certificates).then(function(result) {
				for (var i = 0; i < certificates.length; i++) {
					const index = result.indexOf(certificates[i]._handle);
					if (index != -1)
						return certificates[i];
				}
			});
		},options).then(function(certificate) {
			return SCWS.requestPrivateKey(certificate, false, function(pKey, cert) {
				return decryptWith(pKey, cert);
			},options);
		});
	}

	SCWS.decryptVerifyDocument(blob, callbackDecrypt, downloadBlob).then(function(verifResult){
		log("");
		log("DecryptVerification has succeeded.");
		log("globalSignatureValidity: " + verifResult.globalSignatureValidity);
		for (var i = 0; i < verifResult.signatories.length; i++) {
			log("");
			log("\nSignatory " + i + ":");
			log("Name: " + verifResult.signatories[i].certificate._subjectName);
			log("Certificate handle: " + verifResult.signatories[i].certificate._handle);
			log("signatureValidity: " + verifResult.signatories[i].signatureValidity);
			log("signerTrust: " + verifResult.signatories[i].signerTrust);
			log("cadesBESCompliance: " + verifResult.signatories[i].cadesBESCompliance);

		}
	}, function(err) {log(err);});
}

		</script>
	</head>

	<body>
		<table>
			<tr>
				<td>
					<form id="certificateform">
						<table>
							<tr>
								<td>
									Enable soft token:<br>
									<label><input type="radio" name="softToken" value="default" checked="checked">default</label><br>
									<label><input type="radio" name="softToken" value="true">true</label><br>
									<label><input type="radio" name="softToken" value="false">false</label><br/>
								</td>
								<td>
									Scan dialog:<br>
									<label><input type="radio" name="scandlg" value="nominal">nominal</label><br>
									<label><input type="radio" name="scandlg" value="synchronous">synchronous</label><br>
									<label><input type="radio" name="scandlg" value="asynchronous" checked="checked">asynchronous</label><br/>
								</td>
								<td>
									message:<br>
									<label><input type="radio" name="scanMessage" value="nominal" checked="checked">nominal</label><br>
									<label><input type="radio" name="scanMessage" value="customized">customized</label><br/>
								</td>
								<td id="scandlg">
									Scan dialog:<br/>
									<form id="scanform">
										<textarea id="scanfield" name="scan" cols="40" rows="4"></textarea><br>
									</form>
								</td>
							</tr>
						</table>
						<input type="button" onclick="requestCertificates()" value="request certificates"/><br/>
						Certificate to use:<br>
						<div style="display:inline-block;vertical-align:top;">
							<select style="height:8rem;" size="4" id="certificatelist" onchange="chooseCert()">
							</select>
						</div>
						<div id="certificatevalue" style="white-space:pre;display:inline-block;vertical-align:top;width:20em;height:8rem;overflow:auto;border:1px solid gray;">

						</div>
					</form>
			
					<p><form id="dataform">
						Input data:<br>
						<textarea id="datafield" name="data" cols="40" rows="8"></textarea><br>
					</form></p>
			
					<p><form id="loginform">
						Counter (0 or less equals infinity) :<input id="auto-login-counter" type="number"/>
						<input type="button" onclick="startAutoLogin()" value="startAutoLogin"/>
						<input type="button" onclick="stopAutoLogin()" value="stopAutoLogin"/><br/>
						Pin <span id="pinname"></span>:<br>
						<input id="pin" type="password" />
						<input type="button" onclick="login()" value="Login"/>
						<input type="button" onclick="loginWithPinDialog()" value="LoginWithPinDialog"/>
						<input type="button" onclick="loginWithPinPad()" value="LoginWithPinPad"/>
						<input type="button" onclick="RequestCredentialLoop()" value="Request credential loop"/><br>
						<input type="button" onclick="change()" value="Change Pin"/>
						<input type="button" onclick="init()" value="Init Pin"/>
						<input type="button" onclick="ChipAuth()" value="Chip authenticate"/><br>
						Key size <span id="keypara"></span>: <input id="keysize" type="number" />  
						Curve Name : <input id="keyparam" type="text" /><br>
						Container Name <span id="container"></span>: <input id="containername" type="text" />
						Keytype: <label><input type="radio" name="keytype" value="RSA" checked="checked">RSA</label>
						<label><input type="radio" name="keytype" value="EC">EC</label><br>
						<input type="button" onclick="generatekeypair()" value="Generate key pair"/><br>
					</form></p>
					
					<p>
						<div style="display:inline-block;text-align:center;margin:0.5em 2em;">
							<input type="button" onclick="sign()" value="Sign"/>
							<input type="button" onclick="verify()" value="Verify"/>
							<input type="button" onclick="encrypt()" value="Encrypt"/>
							<input type="button" onclick="decrypt()" value="Decrypt"/><br>
							<input type="button" onclick="removeTestP12FromStore()" value="SoftToken Clear test P12 From Store"/>
							<input type="button" onclick="softtoken()" value="SoftToken"/><br>
							<input type="button" onclick="bioEnroll()" value="Bio Enroll"/>
							<input type="button" onclick="ActivateBiometry()" value="Activate biometry"/><br>
							<input type="button" onclick="changePage()" value="ChangePage"/>
							<input type="button" onclick="getCertStores()" value="CertStores"/><br>
						</div>
						<div style="display:inline-block"><form id="hashcfgform">
							Hashing algorithm:<br>
							<label><input type="radio" name="hashalg" value="" checked="checked">None (hex block as input)</label><br>
							<label><input type="radio" name="hashalg" value="sha1">SHA-1</label><br>
							<label><input type="radio" name="hashalg" value="sha256">SHA-256</label>
						</form></div>
					</p>
				</td>
				<td>
					<p>Information logs:</p>
					<div id="infodiv" style="display:inline-block;vertical-align:top;width:100%;height:30rem;overflow:auto;border:1px solid gray;"></div>
				</td>
			</tr>
		</table>

		<h3>
			SignEncrypt high level entry points
		</h3>

		<p>
			<div style="display:inline-block">
				Input file(s) :<br>
				<label for="inputFile">Input file</label><br>
				<input type="file" id="inputFile" name="inputFile"/><br>
		
				<label for="originalFile">Original file (for detached verification)</label><br>
				<input type="file" id="originalFile" name="originalFile"/>
			</div>

			<div style="display:inline-block">
				Format:<br>
				<label><input type="radio" name="signEncryptFormat" value="PKCS7">PKCS7</label><br>
				<label><input type="radio" name="signEncryptFormat" value="CADES_ATTACHED">Attached CADES</label><br>
				<label><input type="radio" name="signEncryptFormat" value="CADES_DETACHED">Detached CADES</label><br>
				<label><input type="radio" name="signEncryptFormat" value="PADES">PADES</label><br>
				<label><input type="radio" name="signEncryptFormat" value="XADES_DETACHED">Detached XADES</label>
			</div>

			<div style="display:inline-block">
				Hashing algorithm:<br>
				<label><input type="radio" name="signEncryptHashAlg" value="sha1">SHA-1</label><br>
				<label><input type="radio" name="signEncryptHashAlg" value="sha256">SHA-256</label><br>
				<label><input type="radio" name="signEncryptHashAlg" value="sha384">SHA-384</label><br>
				<label><input type="radio" name="signEncryptHashAlg" value="sha512">SHA-512</label>
			</div>

			<div style="display:inline-block;text-align:center;margin:0.5em 2em;">
				<input type="button" onclick="signDoc()" value="SignDocument"/><br>
				<input type="button" onclick="encryptDoc()" value="EncryptDocument"/><br>
				<input type="button" onclick="signEncryptDoc()" value="SignEncryptDocument"/><br>
				<input type="button" onclick="verifyDoc()" value="VerifyDocument"/><br>
				<input type="button" onclick="decryptDoc()" value="DecryptDocument"/>
				<input type="button" onclick="decryptVerifyDoc()" value="DecryptVerifyDocument"/>
			</div>
		</p>

		<h3>Pin Policies Choice</h3>

		<div style="display: flex; gap: 30px; align-items: flex-start;">
			<div id="pinConstraints" style="display: flex; flex-direction: column;"></div>
			<div id="others" style="display: flex; flex-direction: column;"></div>
			<div id="others" style="display: flex; flex-direction: column;">
				Token Label:<br>
				<textarea id="labelfield" name="data" cols="30" rows="1">Token label</textarea><br>
				<input type="button" onclick="initToken()" value="initToken"/>
			</div>
		</div>

		<script>
		function createPolicySelect(labelText, selectId, min, max, divId) {
			container = document.getElementById(divId);

			wrapper = document.createElement('div');
			wrapper.style.marginBottom = "10px";

			label = document.createElement('label');
			label.setAttribute('for', selectId);
			label.textContent = labelText;
			label.style.marginRight = "10px";

			select = document.createElement('select');
			select.id = selectId;
			select.name = selectId;

			for (var value = min; value <= max; value++) {
				var option = document.createElement('option');
				option.value = value;
				option.textContent = value;
				select.appendChild(option);
			}

			wrapper.appendChild(label);
			wrapper.appendChild(select);
			container.appendChild(wrapper);
		}

		createPolicySelect("Min Upper Case:", "minUpperCase", 0, 16, 'pinConstraints');
		createPolicySelect("Min Lower Case:", "minLowerCase", 0, 16, 'pinConstraints');
		createPolicySelect("Min Digit:", "minDigit", 0, 16, 'pinConstraints');
		createPolicySelect("Min Special:", "minSpecial", 0, 16, 'pinConstraints');
		createPolicySelect("Max Identical Sequence:", "maxIdenticalSequence", 0, 16, 'pinConstraints');
		createPolicySelect("Max Inc Dec Sequence:", "maxIncDecSequence", 0, 16, 'pinConstraints');
		createPolicySelect("Min Length:", "minLength", 4, 16, 'pinConstraints');
		createPolicySelect("Max Length:", "maxLength", 4, 16, 'pinConstraints');
		createPolicySelect("Min Alphabetic:", "minAlphabetic", 0, 16, 'pinConstraints');
		createPolicySelect("Min Alphanumeric:", "minAlphanumeric", 0, 16, 'pinConstraints');

		createPolicySelect("Pin Duration:", "pinDuration", 0, 60, 'others');
		createPolicySelect("Pin Max Unlock:", "maxUnlock", 0, 255, 'others');
		createPolicySelect("Pin Max Attempts:", "maxTriesSoftware", 1, 15, 'others');
		createPolicySelect("Pin History Count:", "historyCount", 0, 255, 'others');
		</script>
	</body>
</html>