Sample code for 30+ languages & platforms
B4X Requires Chilkat v11.0.0+

Get Certificates from .p12 / .pfx

See more PFX/P12 Examples

A PKCS12 (.p12 / .pfx) is a container for holding a certificate, its private key, and the certs in the chain of authentication up to and possibly including the root CA cert. A .p12 is not required to contain certain things. It will contain whatever the creator of the .p12 decided to include. It's possible to contain just a private key, just a cert, many certs without private keys, or many certs with many private keys. Usually, a .p12 contains one certificate, its associated private key, and certificates in the chain of authentication.

Chilkat B4X Downloads

B4X
Dim success As Boolean = False

Dim pfx As ChilkatPfx
pfx.Initialize

success = pfx.LoadPfxFile("qa_data/pfx/test.pfx", "pfx_password")
If success = False Then
    Log(pfx.LastErrorText)
    Return
End If


'  Iterate over the certs contained in the PFX
Dim cert As ChilkatCert
cert.Initialize("cert")
Dim numCerts As Int = pfx.NumCerts
Dim i As Int = 0
Do While i < numCerts

    pfx.CertAt(i, cert)

    Log("--- " & i & " ---")
    Log(cert.SubjectDN)
    '  Is this a root cert, or self-signed?
    Log("Root: " & cert.IsRoot)
    Log("Self-Signed: " & cert.SelfSigned)

    '  If this certificate is not the root (self-signed), then get the issuer.
    '  If the issuing certificate is contained in the PFX, then it will be found here..
    If cert.SelfSigned <> True Then
        Dim issuer As ChilkatCert = cert.FindIssuer
        If cert.LastMethodSuccess = False Then
            Log("Issuer not found.")
        Else
            Log("Issuer: " & issuer.SubjectDN)

        End If

    End If

    i = i + 1
Loop

'  Usually, the user certificate is at index 0, its issuer is at index 1, etc. until we get to the root certificate.