Chilkat HOME Android™ AutoIt C C# C++ Chilkat2-Python CkPython Classic ASP DataFlex Delphi DLL Go Java Node.js Objective-C PHP Extension Perl PowerBuilder PowerShell PureBasic Ruby SQL Server Swift Tcl Unicode C Unicode C++ VB.NET VBScript Visual Basic 6.0 Visual FoxPro Xojo Plugin
(Delphi ActiveX) Generate RSA Key and Export to PKCS1 / PKCS8Delphi ActiveX example code showing how to generate an RSA public/private key and save to PKCS1 and PKCS8 format files. In a PKCS1 or PKCS8 formatted file, the key is stored in binary ASN.1 format (and ASN.1 is itself written according to DER -- Distinguished Encoding Rules). A PEM file simply contains the binary ASN.1 base64 encoded and delimited by BEGIN/END lines. PKCS1 format files are never encrypted. PKCS8 can be encrypted or unencrypted. Public keys are never encrypted (there is no need). Private keys *should* always be encrypted - unless perhaps the unencrypted private key is obtained and itself stored in some sort of secure place.
uses Winapi.Windows, Winapi.Messages, System.SysUtils, System.Variants, System.Classes, Vcl.Graphics, Vcl.Controls, Vcl.Forms, Vcl.Dialogs, Vcl.StdCtrls, Chilkat_TLB; ... procedure TForm1.Button1Click(Sender: TObject); var rsa: TChilkatRsa; success: Integer; pubKey: IPublicKey; privKey: IPrivateKey; pubKeyPem: WideString; pubKeyPkcs8Base64: WideString; pubKeyPkcs1Base64: WideString; privKeyPem: WideString; privKeyEncPem: WideString; privKeyPkcs1Base64: WideString; privKeyPkcs8Base64: WideString; begin // This example assumes the Chilkat API to have been previously unlocked. // See Global Unlock Sample for sample code. rsa := TChilkatRsa.Create(Self); // Generate a 2048-bit key. Chilkat RSA supports // key sizes ranging from 512 bits to 8192 bits. success := rsa.GenerateKey(2048); if (success <> 1) then begin Memo1.Lines.Add(rsa.LastErrorText); Exit; end; // Get the public and private key parts: pubKey := rsa.ExportPublicKeyObj(); privKey := rsa.ExportPrivateKeyObj(); // Get the public key as a PKCS8 PEM string pubKeyPem := pubKey.GetPem(0); Memo1.Lines.Add(pubKeyPem); // Get the public key in PKCS8 format, in a Base64 encoded string. pubKeyPkcs8Base64 := pubKey.GetEncoded(0,'base64'); Memo1.Lines.Add(pubKeyPkcs8Base64); // Get the public key in PKCS1 format, in a Base64 encoded string. pubKeyPkcs1Base64 := pubKey.GetEncoded(1,'base64'); Memo1.Lines.Add(pubKeyPkcs1Base64); // Get the private key in a PKCS8 PEM string. privKeyPem := privKey.GetPkcs8Pem(); Memo1.Lines.Add(privKeyPem); // Get the private key in a PKCS8 encrypted PEM string. privKeyEncPem := privKey.GetPkcs8EncryptedPem('myPassword'); Memo1.Lines.Add(privKeyEncPem); // Get the private key in PKCS1 Base64 format privKeyPkcs1Base64 := privKey.GetPkcs1ENC('base64'); Memo1.Lines.Add(privKeyPkcs1Base64); // Get the private key in PKCS8 Base64 format privKeyPkcs8Base64 := privKey.GetPkcs8ENC('base64'); Memo1.Lines.Add(privKeyPkcs8Base64); // Save to PKCS1 / PKCS8 / PEM files... // Save the public key to PKCS8 binary DER success := pubKey.SaveDerFile(0,'pubKey_pkcs8.der'); // Save the public key to PKCS1 binary DER success := pubKey.SaveDerFile('pubKey_pkcs1.der'); // Save the private key to unencrypted binary PKCS1 DER. // Note: PKCS1 is never found in an encrypted format. success := privKey.SavePkcs1File('privKey_pkcs1.der'); // Save the private key to unencrypted binary PKCS8 success := privKey.SavePkcs8File('privKey_pkcs8.der'); // Save the private key to encrypted binary PKCS8 success := privKey.SavePkcs8EncryptedFile('myPassword','privKey_enc_pkcs8.der'); // Save the private key to unencrypted PKCS8 PEM success := privKey.SavePkcs8PemFile('privKey.pem'); // Save the private key to encrypted PKCS8 PEM success := privKey.SavePkcs8EncryptedPemFile('myPassword','privKey_enc.pem'); end; |
© 2000-2025 Chilkat Software, Inc. All Rights Reserved.