Sample code for 30+ languages & platforms
Delphi ActiveX Requires Chilkat v11.0.0+

RSA Signature/Verify with .key and .cer

See more RSA Examples

Demonstrates how to use a .key file (private key) and digital certificate (.cer, public key) to create and verify an RSA signature.

Chilkat Delphi ActiveX Downloads

Delphi ActiveX
var
success: Integer;
privKey: TPrivateKey;
rsa: TChilkatRsa;
strData: WideString;
hexSig: WideString;
cert: TChilkatCert;
pubKey: TPublicKey;
rsa2: TChilkatRsa;

begin
success := 0;

//  This example assumes the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

privKey := TPrivateKey.Create(Self);

//  Load the private key from an RSA .key file:
success := privKey.LoadPemFile('privateKey.key');
if (success = 0) then
  begin
    Memo1.Lines.Add(privKey.LastErrorText);
    Exit;
  end;

rsa := TChilkatRsa.Create(Self);

//  Import the private key into the RSA component:
success := rsa.UsePrivateKey(privKey.ControlInterface);
if (success = 0) then
  begin
    Memo1.Lines.Add(rsa.LastErrorText);
    Exit;
  end;

//  Create the signature as a hex string:
rsa.EncodingMode := 'hex';

strData := 'This is the string to be signed.';

//  Sign the string using the sha256 hash algorithm.
//  Other valid choices are "md2", "sha1", "sha384",
//  "sha512", and "md5".
hexSig := rsa.SignStringENC(strData,'sha256');

Memo1.Lines.Add(hexSig);

//  Load a digital certificate from a .cer file:
cert := TChilkatCert.Create(Self);

success := cert.LoadFromFile('myCert.cer');
if (success = 0) then
  begin
    Memo1.Lines.Add(cert.LastErrorText);
    Exit;
  end;

pubKey := TPublicKey.Create(Self);
cert.GetPublicKey(pubKey.ControlInterface);

//  Now verify using a new instance of the RSA object:
rsa2 := TChilkatRsa.Create(Self);

//  Import the public key into the RSA object:
success := rsa2.UsePublicKey(pubKey.ControlInterface);
if (success = 0) then
  begin
    Memo1.Lines.Add(rsa2.LastErrorText);
    Exit;
  end;

//  The signature is a hex string, so make sure the EncodingMode is correct:
rsa2.EncodingMode := 'hex';

//  Verify the signature:
success := rsa2.VerifyStringENC(strData,'sha256',hexSig);
if (success = 0) then
  begin
    Memo1.Lines.Add(rsa2.LastErrorText);
    Exit;
  end;

Memo1.Lines.Add('Success.');