Sample code for 30+ languages & platforms
SQL Server

PBKDF2 - Derive Key from Password

See more Encryption Examples

Demonstrates how to derive a symmetric encryption key from a password using PBKDF2.

Chilkat SQL Server Downloads

SQL Server
-- Important: See this note about string length limitations for strings returned by sp_OAMethod calls.
--
CREATE PROCEDURE ChilkatSample
AS
BEGIN
    DECLARE @hr int
    -- This example assumes the Chilkat API to have been previously unlocked.
    -- See Global Unlock Sample for sample code.

    DECLARE @crypt int
    EXEC @hr = sp_OACreate 'Chilkat.Crypt2', @crypt OUT
    IF @hr <> 0
    BEGIN
        PRINT 'Failed to create ActiveX component'
        RETURN
    END

    DECLARE @pw nvarchar(4000)
    SELECT @pw = 'password'

    DECLARE @pwCharset nvarchar(4000)
    SELECT @pwCharset = 'utf-8'

    -- Such as sha256, sha512
    DECLARE @hashAlg nvarchar(4000)
    SELECT @hashAlg = 'sha256'

    -- 16 bytes
    DECLARE @saltHex nvarchar(4000)
    SELECT @saltHex = '78578E5A5D63CB0668AB39B21C8637FA'

    DECLARE @iterationCount int
    SELECT @iterationCount = 100000

    -- Derive a 256-bit key from the password.
    DECLARE @outputBitLen int
    SELECT @outputBitLen = 256

    -- The derived key is returned as a hex or base64 encoded string.
    -- (Note: The salt argument must be a string that also uses
    -- the same encoding.)
    DECLARE @enc nvarchar(4000)
    SELECT @enc = 'hex'

    DECLARE @hexKey nvarchar(4000)
    EXEC sp_OAMethod @crypt, 'Pbkdf2', @hexKey OUT, @pw, @pwCharset, @hashAlg, @saltHex, @iterationCount, @outputBitLen, @enc


    PRINT @hexKey

    -- Sample output:
    -- AE96E261E32792D0FD6F0E72F8E872D046F7DB4C1FA7C83892EC73C49F461B70

    EXEC @hr = sp_OADestroy @crypt


END
GO