Chilkat HOME Android™ AutoIt C C# C++ Chilkat2-Python CkPython Classic ASP DataFlex Delphi DLL Go Java Node.js Objective-C PHP Extension Perl PowerBuilder PowerShell PureBasic Ruby SQL Server Swift Tcl Unicode C Unicode C++ VB.NET VBScript Visual Basic 6.0 Visual FoxPro Xojo Plugin
(PowerShell) Working with PEM Encrypted Private KeysDemonstrates how to load and save PEM encrypted private keys.
Add-Type -Path "C:\chilkat\ChilkatDotNet47-9.5.0-x64\ChilkatDotNet47.dll" # Starting in v9.5.0.49, all Chilkat classes can be unlocked at once at the beginning of a program # by calling UnlockBundle. It requires a Bundle unlock code. $chilkatGlob = New-Object Chilkat.Global $success = $chilkatGlob.UnlockBundle("Anything for 30-day trial.") if ($success -ne $true) { $($chilkatGlob.LastErrorText) exit } $pem = New-Object Chilkat.Pem $pemPassword = "secret" # To load a PEM file containing encrypted private keys, simply # provide the password. $success = $pem.LoadPemFile("/Users/chilkat/testData/pem/pemContainingEncryptedPrivateKeys.pem",$pemPassword) if ($success -ne $true) { $($pem.LastErrorText) exit } $fac = New-Object Chilkat.FileAccess $pemText = $fac.ReadEntireTextFile("/Users/chilkat/testData/pem/pemContainingEncryptedPrivateKeys.pem",$pemPassword) # To load a PEM from a string, call LoadPem instead of LoadPemFile: $success = $pem.LoadPem($pemText) if ($success -ne $true) { $($pem.LastErrorText) exit } # A few notes: # The PEM may contain both private keys and certificates (or anything else). # The password is utilized for whatever content in the PEM is encrypted. # It is OK to have both encrypted and non-encrypted content within a given PEM. # PEM private keys can be encrypted in different formats. The LoadPem and LoadPemFile # methods automatically handle the different formats. # One format is PKCS8 and is indicated by this delimiter within the PEM: # -----BEGIN ENCRYPTED PRIVATE KEY----- # MIICoTAbBgkqhkiG9w0BBQMwDgQIfdD0zv24lgkCAggABIICgE0PdHJmRbNs6cBX # ... # Another format, we'll call "passphrase" looks like this in the PEM: # -----BEGIN RSA PRIVATE KEY----- # Proc-Type: 4,ENCRYPTED # DEK-Info: DES-EDE3-CBC,A4215544D11C5D0C # # paqy9XRexcSjurHfG0xhCaUD0HrvIdhuC0CbRxxxeMlkLaV6+uT80rBxt2AaibWG # ... # Show the bit length of each private key: $numPrivateKeys = $pem.NumPrivateKeys if ($numPrivateKeys -eq 0) { $(("Error: Expected the PEM to contain private keys.")) exit } for ($i = 1; $i -le $numPrivateKeys; $i++) { $privKey = $pem.GetPrivateKey($i - 1) $([string]$i + ": " + $privKey.BitLength + " bits") } |
© 2000-2025 Chilkat Software, Inc. All Rights Reserved.