Sps.Sips.XmlSecurity.Xades
1.0.4
dotnet add package Sps.Sips.XmlSecurity.Xades --version 1.0.4
NuGet\Install-Package Sps.Sips.XmlSecurity.Xades -Version 1.0.4
<PackageReference Include="Sps.Sips.XmlSecurity.Xades" Version="1.0.4" />
<PackageVersion Include="Sps.Sips.XmlSecurity.Xades" Version="1.0.4" />
<PackageReference Include="Sps.Sips.XmlSecurity.Xades" />
paket add Sps.Sips.XmlSecurity.Xades --version 1.0.4
#r "nuget: Sps.Sips.XmlSecurity.Xades, 1.0.4"
#:package Sps.Sips.XmlSecurity.Xades@1.0.4
#addin nuget:?package=Sps.Sips.XmlSecurity.Xades&version=1.0.4
#tool nuget:?package=Sps.Sips.XmlSecurity.Xades&version=1.0.4
SPS SIPS XML Security and XAdES
This package provides XML Digital Signature (XMLDSig) and XML Advanced Electronic Signatures (XAdES) for SIPS.
Explicit profiles
The package exposes two strongly typed profiles through XadesProfile:
IpsVendorLegacypreserves the historical SmartVista/IPS signature contract and is the default for existing overloads.WpSipsPapsspreserves the hardened identified-envelope WP-SIPS contract and must be selected explicitly by PAPSS callers.
var ipsSigned = signer.SignEnvelope(xml, XadesProfile.IpsVendorLegacy);
var ipsResult = await verifier.VerifySignature(xml, true, XadesProfile.IpsVendorLegacy, ct);
var papssSigned = signer.SignEnvelope(xml, XadesProfile.WpSipsPapss);
var papssResult = await verifier.VerifyWithProvenance(xml, XadesProfile.WpSipsPapss, ct);
No profile is inferred from XML. The original overloads remain compatible and route to IpsVendorLegacy. The package targets net8.0 and can be referenced by the PAPSS .NET 10 service; that service must use the explicit WpSipsPapss overloads at /sips/messages.
Overview
The SIPS XMLDSig Xades package provides XML Digital Signature (XMLDSig) and XML Advanced Electronic Signatures (XAdES) for SIPS. The package includes the following features:
- XMLDSig: Signs and verifies XML documents.
- XAdES: Signs and verifies XML documents with advanced electronic signatures.
- Key Management: Manages keys for XMLDSig and XAdES.
- Certificate Management: Manages certificates for XMLDSig and XAdES.
Installation
To install the package, follow these steps:
- Add the package to your project.
dotnet add package Sps.Sips.XmlSecurity.Xades --version 1.0.3
- Add the following configuration to your
appsettings.jsonfile:
{
"Xades": {
"CertificatePath": "",
"PrivateKeyPath": "",
"PrivateKeyPassphrase": "", // Use only if the private key is encrypted with a passphrase
"ChainPath": "",
"Algorithms": ["SHA256withRSA"],
"VerificationWindowMinutes": 100,
"BIC": "",
"WithoutPKI": false,
"BaseDN": ""
}
}
- Add the following configuration to your
Startup.csfile:
services.AddXades();
This package implements the qualified SPS-side WP-SIPS-01 trust profile. PAPSS consumers must not reuse SPS trust anchors, ownership rules, or profile policy; only mechanics proven compatible with authoritative PAPSS material are reusable.
| Product | Versions Compatible and additional computed target framework versions. |
|---|---|
| .NET | net8.0 is compatible. net8.0-android was computed. net8.0-browser was computed. net8.0-ios was computed. net8.0-maccatalyst was computed. net8.0-macos was computed. net8.0-tvos was computed. net8.0-windows was computed. net9.0 was computed. net9.0-android was computed. net9.0-browser was computed. net9.0-ios was computed. net9.0-maccatalyst was computed. net9.0-macos was computed. net9.0-tvos was computed. net9.0-windows was computed. net10.0 was computed. net10.0-android was computed. net10.0-browser was computed. net10.0-ios was computed. net10.0-maccatalyst was computed. net10.0-macos was computed. net10.0-tvos was computed. net10.0-windows was computed. |
-
net8.0
- BouncyCastle.NetCore (>= 2.2.1)
- Microsoft.Extensions.Logging (>= 9.0.1)
- System.Security.Cryptography.Xml (>= 9.0.19)
NuGet packages
This package is not used by any NuGet packages.
GitHub repositories
This package is not used by any popular GitHub repositories.