Sample code for 30+ languages & platforms
Xbase++ Requires Chilkat v11.0.0+

Generate RSA Key and Export to PKCS1 / PKCS8

See more RSA Examples

_LANGUAGE_ example code showing how to generate an RSA public/private key and save to PKCS1 and PKCS8 format files. In a PKCS1 or PKCS8 formatted file, the key is stored in binary ASN.1 format (and ASN.1 is itself written according to DER -- Distinguished Encoding Rules). A PEM file simply contains the binary ASN.1 base64 encoded and delimited by BEGIN/END lines. PKCS1 format files are never encrypted. PKCS8 can be encrypted or unencrypted. Public keys are never encrypted (there is no need). Private keys *should* always be encrypted - unless perhaps the unencrypted private key is obtained and itself stored in some sort of secure place.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oRsa
LOCAL oPrivKey
LOCAL oPubKey
LOCAL cPubKeyPem
LOCAL cPubKeyPkcs8Base64
LOCAL cPubKeyPkcs1Base64
LOCAL cPrivKeyPem
LOCAL cPrivKeyEncPem
LOCAL cPrivKeyPkcs1Base64
LOCAL cPrivKeyPkcs8Base64

nSuccess := 0

//  This example assumes the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

oRsa := CreateObject("Chilkat.Rsa")

//  Generate a 2048-bit key.  Chilkat RSA supports
//  key sizes ranging from 512 bits to 8192 bits.
oPrivKey := CreateObject("Chilkat.PrivateKey")
nSuccess := oRsa:GenKey(2048, oPrivKey)
IF (nSuccess == 0)
    ? oRsa:LastErrorText
    oRsa:destroy()
    oPrivKey:destroy()
    RETURN
ENDIF

//  Get the public key
oPubKey := CreateObject("Chilkat.PublicKey")
oPrivKey:ToPublicKey(oPubKey)

//  Get the public key as a PKCS8 PEM string
cPubKeyPem := oPubKey:GetPem(0)
? cPubKeyPem

//  Get the public key in PKCS8 format, in a Base64 encoded string.
cPubKeyPkcs8Base64 := oPubKey:GetEncoded(0, "base64")
? cPubKeyPkcs8Base64

//  Get the public key in PKCS1 format, in a Base64 encoded string.
cPubKeyPkcs1Base64 := oPubKey:GetEncoded(1, "base64")
? cPubKeyPkcs1Base64

//  Get the private key in a PKCS8 PEM string.
cPrivKeyPem := oPrivKey:GetPkcs8Pem()
? cPrivKeyPem

//  Get the private key in a PKCS8 encrypted PEM string.
cPrivKeyEncPem := oPrivKey:GetPkcs8EncryptedPem("myPassword")
? cPrivKeyEncPem

//  Get the private key in PKCS1 Base64 format
cPrivKeyPkcs1Base64 := oPrivKey:GetPkcs1ENC("base64")
? cPrivKeyPkcs1Base64

//  Get the private key in PKCS8 Base64 format
cPrivKeyPkcs8Base64 := oPrivKey:GetPkcs8ENC("base64")
? cPrivKeyPkcs8Base64

//  Save to PKCS1 / PKCS8 / PEM files...

//  Save the public key to PKCS8 binary DER
nSuccess := oPubKey:SaveDerFile(0, "pubKey_pkcs8.der")

//  Save the public key to PKCS1 binary DER
nSuccess := oPubKey:SaveDerFile("pubKey_pkcs1.der")

//  Save the private key to unencrypted binary PKCS1 DER.
//  Note: PKCS1 is never found in an encrypted format. 
nSuccess := oPrivKey:SavePkcs1File("privKey_pkcs1.der")

//  Save the private key to unencrypted binary PKCS8
nSuccess := oPrivKey:SavePkcs8File("privKey_pkcs8.der")

//  Save the private key to encrypted binary PKCS8
nSuccess := oPrivKey:SavePkcs8EncryptedFile("myPassword", "privKey_enc_pkcs8.der")

//  Save the private key to unencrypted PKCS8 PEM
nSuccess := oPrivKey:SavePkcs8PemFile("privKey.pem")

//  Save the private key to encrypted PKCS8 PEM
nSuccess := oPrivKey:SavePkcs8EncryptedPemFile("myPassword", "privKey_enc.pem")

oRsa:destroy()
oPrivKey:destroy()
oPubKey:destroy()