Sample code for 30+ languages & platforms
B4X Requires Chilkat v11.0.0+

PKCS11 Import an Existing RSA Public Key onto the HSM

See more PKCS11 Examples

Demonstrates how to import an existing RSA Public Key onto a smart card or token.

Note: This example requires Chilkat v9.5.0.96 or later.

Chilkat B4X Downloads

B4X
Dim success As Boolean = False

'  This example requires the Chilkat API to have been previously unlocked.
'  See Global Unlock Sample for sample code.

'  Note: Chilkat's PKCS11 implementation runs on Windows, Linux, Mac OS X, and other supported operating systems.

Dim pkcs11 As ChilkatPkcs11
pkcs11.Initialize

'  Use the PKCS11 driver (.dll, .so, .dylib) for your particular HSM.
'  (The format of the path will change with the operating system.  Obviously, "C:/" is not used on non-Windows systems.
pkcs11.SharedLibPath = "C:/Program Files (x86)/Gemalto/IDGo 800 PKCS#11/IDPrimePKCS1164.dll"

'  Establish a logged-on session.
Dim pin As String = "0000"
Dim userType As Int = 1
success = pkcs11.QuickSession(userType, pin)
If success = False Then
    Log(pkcs11.LastErrorText)
    Return
End If


'  Generate a new 2048-bit RSA key.
Dim rsa As ChilkatRsa
rsa.Initialize
Dim privKey As ChilkatPrivateKey
privKey.Initialize("privKey")
success = rsa.GenKey(2048, privKey)
If success = False Then
    Log(rsa.LastErrorText)
    Return
End If


'  Get the public key information as XML, so we can access the modulus and exponent.
Dim xml As ChilkatXml
xml.Initialize
Dim pubKey As ChilkatPublicKey
pubKey.Initialize
privKey.ToPublicKey(pubKey)
xml.LoadXml(pubKey.GetXml)

Dim attrs As ChilkatJsonObject
attrs.Initialize
'  Specify the type of object, and the type of key.
attrs.UpdateString("class", "CKO_PUBLIC_KEY")
attrs.UpdateString("key_type", "CKK_RSA")
'  Add an optional label if desired.
attrs.UpdateString("label", "RSA Public Key 1")
'  Allow the key to be use for verify, wrapping, and encryption operations.
attrs.UpdateBool("verify", True)
attrs.UpdateBool("wrap", True)
attrs.UpdateBool("encrypt", True)

'  Make this a session-only public key.
'  To store the public key on the token so that it persists after the PKCS11 session, set token = True.
attrs.UpdateBool("token", False)

'  Provide the RSA public key material
attrs.UpdateString("modulus", xml.GetChildContent("Modulus"))
attrs.UpdateString("public_exponent", xml.GetChildContent("Exponent"))

'  Create the RSA public key.
'  Returns the PKCS11 object handle of the created key.
Dim objHandle As Long = pkcs11.CreatePkcs11Object(attrs)
If objHandle = 0 Then
    Log(pkcs11.LastErrorText)
    Log("Failed.")
Else
    Log("PKCS11 object handle = " & objHandle)
    Log("Successfully imported an RSA key..")
End If


pkcs11.Logout
pkcs11.CloseSession