C
C
Load an Encrypted Private Key from PEM Text
See more Private Key Examples
Demonstrates the Chilkat PrivateKey.LoadEncryptedPem method, which loads a private key from PEM text, using a password when the PEM is encrypted. The first argument is the PEM string and the second is the password. Unencrypted PEM is also accepted.
Background: An encrypted PEM protects the key material at rest — a stolen file is useless without the passphrase — which is why encrypted keys are preferred for anything shipped or stored. This loader supplies that passphrase to decrypt a
BEGIN ENCRYPTED PRIVATE KEY block (and gracefully handles unencrypted PEM too), so it is a safe default when a PEM might be either. The password should come from a secure source, never a hard-coded literal.Chilkat C Downloads
#include <C_CkPrivateKey.h>
void ChilkatSample(void)
{
BOOL success;
HCkPrivateKey privKey;
const char *pemText;
const char *password;
success = FALSE;
// Demonstrates the PrivateKey.LoadEncryptedPem method, which loads a private key from PEM text.
// The 1st argument is the PEM string and the 2nd is the password (used when the PEM is
// encrypted). Unencrypted PEM is also accepted.
privKey = CkPrivateKey_Create();
// The PEM text of an encrypted private key.
pemText = "-----BEGIN ENCRYPTED PRIVATE KEY-----\nMIIFHzBJ...\n-----END ENCRYPTED PRIVATE KEY-----";
// The key password is not hard-coded in a real application; obtain it from an interactive
// prompt, environment variable, or a secrets vault.
password = "myKeyPassword";
success = CkPrivateKey_LoadEncryptedPem(privKey,pemText,password);
if (success == FALSE) {
printf("%s\n",CkPrivateKey_lastErrorText(privKey));
CkPrivateKey_Dispose(privKey);
return;
}
printf("Loaded a %s private key.\n",CkPrivateKey_keyType(privKey));
CkPrivateKey_Dispose(privKey);
}