Sample code for 30+ languages & platforms
PowerBuilder Requires Chilkat v11.0.0+

Working with PEM Encrypted Private Keys

See more PEM Examples

Demonstrates how to load and save PEM encrypted private keys.

Chilkat PowerBuilder Downloads

PowerBuilder
integer li_rc
integer li_Success
oleobject loo_Pem
string ls_PemPassword
oleobject loo_Fac
string ls_PemText
integer i
integer li_NumPrivateKeys
oleobject loo_PrivKey

li_Success = 0

//  This example assumes the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

li_Success = 0

loo_Pem = create oleobject
li_rc = loo_Pem.ConnectToNewObject("Chilkat.Pem")
if li_rc < 0 then
    destroy loo_Pem
    MessageBox("Error","Connecting to COM object failed")
    return
end if

ls_PemPassword = "secret"

//  To load a PEM file containing encrypted private keys, simply
//  provide the password.
li_Success = loo_Pem.LoadPemFile("/Users/chilkat/testData/pem/pemContainingEncryptedPrivateKeys.pem",ls_PemPassword)
if li_Success = 0 then
    Write-Debug loo_Pem.LastErrorText
    destroy loo_Pem
    return
end if

loo_Fac = create oleobject
li_rc = loo_Fac.ConnectToNewObject("Chilkat.FileAccess")

ls_PemText = loo_Fac.ReadEntireTextFile("/Users/chilkat/testData/pem/pemContainingEncryptedPrivateKeys.pem",ls_PemPassword)

//  To load a PEM from a string, call LoadPem instead of LoadPemFile:
li_Success = loo_Pem.LoadPem(ls_PemText)
if li_Success = 0 then
    Write-Debug loo_Pem.LastErrorText
    destroy loo_Pem
    destroy loo_Fac
    return
end if

//  A few notes:
//  The PEM may contain both private keys and certificates (or anything else).
//  The password is utilized for whatever content in the PEM is encrypted.  
//  It is OK to have both encrypted and non-encrypted content within a given PEM.

//  PEM private keys can be encrypted in different formats.  The LoadPem and LoadPemFile
//  methods automatically handle the different formats.
//  One format is PKCS8 and is indicated by this delimiter within the PEM:

//  -----BEGIN ENCRYPTED PRIVATE KEY-----
//  MIICoTAbBgkqhkiG9w0BBQMwDgQIfdD0zv24lgkCAggABIICgE0PdHJmRbNs6cBX
//  ...

//  Another format, we'll call "passphrase" looks like this in the PEM:
//  -----BEGIN RSA PRIVATE KEY-----
//  Proc-Type: 4,ENCRYPTED
//  DEK-Info: DES-EDE3-CBC,A4215544D11C5D0C
//  
//  paqy9XRexcSjurHfG0xhCaUD0HrvIdhuC0CbRxxxeMlkLaV6+uT80rBxt2AaibWG
//  ...

//  Show the bit length of each private key:

li_NumPrivateKeys = loo_Pem.NumPrivateKeys
if li_NumPrivateKeys = 0 then
    Write-Debug ("Error: Expected the PEM to contain private keys.")
    destroy loo_Pem
    destroy loo_Fac
    return
end if

loo_PrivKey = create oleobject
li_rc = loo_PrivKey.ConnectToNewObject("Chilkat.PrivateKey")

for i = 1 to li_NumPrivateKeys
    loo_Pem.PrivateKeyAt(i - 1,loo_PrivKey)
    Write-Debug string(i) + ": " + string(loo_PrivKey.BitLength) + " bits"
next


destroy loo_Pem
destroy loo_Fac
destroy loo_PrivKey