Sample code for 30+ languages & platforms
Classic ASP Requires Chilkat v11.0.0+

Working with PEM Encrypted Private Keys

See more PEM Examples

Demonstrates how to load and save PEM encrypted private keys.

Chilkat Classic ASP Downloads

Classic ASP
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body>
<%
success = 0

'  This example assumes the Chilkat API to have been previously unlocked.
'  See Global Unlock Sample for sample code.

success = 0

set pem = Server.CreateObject("Chilkat.Pem")

pemPassword = "secret"

'  To load a PEM file containing encrypted private keys, simply
'  provide the password.
success = pem.LoadPemFile("/Users/chilkat/testData/pem/pemContainingEncryptedPrivateKeys.pem",pemPassword)
If (success = 0) Then
    Response.Write "<pre>" & Server.HTMLEncode( pem.LastErrorText) & "</pre>"
    Response.End
End If

set fac = Server.CreateObject("Chilkat.FileAccess")
pemText = fac.ReadEntireTextFile("/Users/chilkat/testData/pem/pemContainingEncryptedPrivateKeys.pem",pemPassword)

'  To load a PEM from a string, call LoadPem instead of LoadPemFile:
success = pem.LoadPem(pemText)
If (success = 0) Then
    Response.Write "<pre>" & Server.HTMLEncode( pem.LastErrorText) & "</pre>"
    Response.End
End If

'  A few notes:
'  The PEM may contain both private keys and certificates (or anything else).
'  The password is utilized for whatever content in the PEM is encrypted.  
'  It is OK to have both encrypted and non-encrypted content within a given PEM.

'  PEM private keys can be encrypted in different formats.  The LoadPem and LoadPemFile
'  methods automatically handle the different formats.
'  One format is PKCS8 and is indicated by this delimiter within the PEM:

'  -----BEGIN ENCRYPTED PRIVATE KEY-----
'  MIICoTAbBgkqhkiG9w0BBQMwDgQIfdD0zv24lgkCAggABIICgE0PdHJmRbNs6cBX
'  ...

'  Another format, we'll call "passphrase" looks like this in the PEM:
'  -----BEGIN RSA PRIVATE KEY-----
'  Proc-Type: 4,ENCRYPTED
'  DEK-Info: DES-EDE3-CBC,A4215544D11C5D0C
'  
'  paqy9XRexcSjurHfG0xhCaUD0HrvIdhuC0CbRxxxeMlkLaV6+uT80rBxt2AaibWG
'  ...

'  Show the bit length of each private key:

numPrivateKeys = pem.NumPrivateKeys
If (numPrivateKeys = 0) Then
    Response.Write "<pre>" & Server.HTMLEncode( ("Error: Expected the PEM to contain private keys.")) & "</pre>"
    Response.End
End If

set privKey = Server.CreateObject("Chilkat.PrivateKey")
For i = 1 To numPrivateKeys
    success = pem.PrivateKeyAt(i - 1,privKey)
    Response.Write "<pre>" & Server.HTMLEncode( i & ": " & privKey.BitLength & " bits") & "</pre>"
Next

%>
</body>
</html>