Delphi ActiveX Requires Chilkat v11.0.0+
Delphi ActiveX
Generate RSA Key and Export to PKCS1 / PKCS8
See more RSA Examples
_LANGUAGE_ example code showing how to generate an RSA public/private key and save to PKCS1 and PKCS8 format files. In a PKCS1 or PKCS8 formatted file, the key is stored in binary ASN.1 format (and ASN.1 is itself written according to DER -- Distinguished Encoding Rules). A PEM file simply contains the binary ASN.1 base64 encoded and delimited by BEGIN/END lines. PKCS1 format files are never encrypted. PKCS8 can be encrypted or unencrypted. Public keys are never encrypted (there is no need). Private keys *should* always be encrypted - unless perhaps the unencrypted private key is obtained and itself stored in some sort of secure place.Chilkat Delphi ActiveX Downloads
var
success: Integer;
rsa: TChilkatRsa;
privKey: TPrivateKey;
pubKey: TPublicKey;
pubKeyPem: WideString;
pubKeyPkcs8Base64: WideString;
pubKeyPkcs1Base64: WideString;
privKeyPem: WideString;
privKeyEncPem: WideString;
privKeyPkcs1Base64: WideString;
privKeyPkcs8Base64: WideString;
begin
success := 0;
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
rsa := TChilkatRsa.Create(Self);
// Generate a 2048-bit key. Chilkat RSA supports
// key sizes ranging from 512 bits to 8192 bits.
privKey := TPrivateKey.Create(Self);
success := rsa.GenKey(2048,privKey.ControlInterface);
if (success = 0) then
begin
Memo1.Lines.Add(rsa.LastErrorText);
Exit;
end;
// Get the public key
pubKey := TPublicKey.Create(Self);
privKey.ToPublicKey(pubKey.ControlInterface);
// Get the public key as a PKCS8 PEM string
pubKeyPem := pubKey.GetPem(0);
Memo1.Lines.Add(pubKeyPem);
// Get the public key in PKCS8 format, in a Base64 encoded string.
pubKeyPkcs8Base64 := pubKey.GetEncoded(0,'base64');
Memo1.Lines.Add(pubKeyPkcs8Base64);
// Get the public key in PKCS1 format, in a Base64 encoded string.
pubKeyPkcs1Base64 := pubKey.GetEncoded(1,'base64');
Memo1.Lines.Add(pubKeyPkcs1Base64);
// Get the private key in a PKCS8 PEM string.
privKeyPem := privKey.GetPkcs8Pem();
Memo1.Lines.Add(privKeyPem);
// Get the private key in a PKCS8 encrypted PEM string.
privKeyEncPem := privKey.GetPkcs8EncryptedPem('myPassword');
Memo1.Lines.Add(privKeyEncPem);
// Get the private key in PKCS1 Base64 format
privKeyPkcs1Base64 := privKey.GetPkcs1ENC('base64');
Memo1.Lines.Add(privKeyPkcs1Base64);
// Get the private key in PKCS8 Base64 format
privKeyPkcs8Base64 := privKey.GetPkcs8ENC('base64');
Memo1.Lines.Add(privKeyPkcs8Base64);
// Save to PKCS1 / PKCS8 / PEM files...
// Save the public key to PKCS8 binary DER
success := pubKey.SaveDerFile(0,'pubKey_pkcs8.der');
// Save the public key to PKCS1 binary DER
success := pubKey.SaveDerFile('pubKey_pkcs1.der');
// Save the private key to unencrypted binary PKCS1 DER.
// Note: PKCS1 is never found in an encrypted format.
success := privKey.SavePkcs1File('privKey_pkcs1.der');
// Save the private key to unencrypted binary PKCS8
success := privKey.SavePkcs8File('privKey_pkcs8.der');
// Save the private key to encrypted binary PKCS8
success := privKey.SavePkcs8EncryptedFile('myPassword','privKey_enc_pkcs8.der');
// Save the private key to unencrypted PKCS8 PEM
success := privKey.SavePkcs8PemFile('privKey.pem');
// Save the private key to encrypted PKCS8 PEM
success := privKey.SavePkcs8EncryptedPemFile('myPassword','privKey_enc.pem');