Sample code for 30+ languages & platforms
Xbase++ Requires Chilkat v11.0.0+

Convert Java KeyStore to PEM

See more Java KeyStore (JKS) Examples

Loads a Java keystore file and saves the trusted certificate entries to a PEM file.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oJks
LOCAL cJksPassword
LOCAL oFac
LOCAL nNumCerts
LOCAL oCert
LOCAL cPem
LOCAL i

nSuccess := 0

//  This requires the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

oJks := CreateObject("Chilkat.JavaKeyStore")

cJksPassword := "myJksPassword"

//  Load the Java keystore from a file.  The JKS file password is used
//  to verify the keyed digest that is found at the very end of the keystore.
//  It verifies that the keystore has not been modified.
nSuccess := oJks:LoadFile(cJksPassword, "/someDir/keyStore.jks")
IF (nSuccess == 0)
    ? oJks:LastErrorText
    oJks:destroy()
    RETURN
ENDIF

//  Open/create the output PEM file. 
//  This example uses Chilkat's file access class for writing the output file.
//  You may replace the file I/O lines of code with whatever is most convenient for you.
oFac := CreateObject("Chilkat.FileAccess")
nSuccess := oFac:OpenForWrite("/pemFiles/caCerts.pem")
IF (nSuccess == 0)
    ? oFac:LastErrorText
    oJks:destroy()
    oFac:destroy()
    RETURN
ENDIF

nNumCerts := oJks:NumTrustedCerts

oCert := CreateObject("Chilkat.Cert")

//  Iterate over the trusted certs, get the PEM for each,
//  and append it to the output file.
i := 0
DO WHILE i < nNumCerts
    oJks:TrustedCertAt(i, oCert)

    //  Get the certificate in PEM format.  
    cPem := oCert:ExportCertPem()

    //  Append the PEM string to the open file.
    nSuccess := oFac:AppendText(cPem, "utf-8")
    IF (nSuccess != 1)
        ? oFac:LastErrorText
        oJks:destroy()
        oFac:destroy()
        oCert:destroy()
        RETURN
    ENDIF

    i := i + 1
ENDDO

//  Close the output file.
oFac:FileClose()

? "Trusted certificates saved to PEM."

oJks:destroy()
oFac:destroy()
oCert:destroy()