Sample code for 30+ languages & platforms
AutoIt

Export Selected PFX Contents as PEM

See more PFX/P12 Examples

Demonstrates Pfx.ToPemEx, which exports selected PFX contents as PEM-formatted text with control over which parts are included and how private keys are encrypted.

Background. Private keys are written in PKCS #8 form. Supported key-encryption algorithms include aes128, aes192, aes256, and 3des; leaving the algorithm empty produces unencrypted keys.

Chilkat AutoIt Downloads

AutoIt
Local $bSuccess = False

$oPfx = ObjCreate("Chilkat.Pfx")

;  The file path is relative to the application's current working directory.  An absolute path
;  may also be used.  Supply the path appropriate to your own environment.
;  The PFX password should come from a secure source rather than being hard-coded.
Local $sPassword = "myPfxPassword"
$bSuccess = $oPfx.LoadPfxFile("qa_data/identity.pfx",$sPassword)
If ($bSuccess = False) Then
    ConsoleWrite($oPfx.LastErrorText & @CRLF)
    Exit
EndIf

;  Export selected PFX contents as PEM-formatted text.  The boolean arguments control what is
;  included: extended attributes, and whether to omit private keys, certificates, or CA certificates.
Local $bExtendedAttrs = False
Local $bNoKeys = False
Local $bNoCerts = False
Local $bNoCaCerts = False

;  Encrypt the exported private keys.  Supported algorithms include aes128, aes192, aes256, and 3des;
;  leave the algorithm empty for unencrypted keys.  The key password should come from a secure source.
Local $sKeyPassword = "myKeyPassword"
Local $sPem = $oPfx.ToPemEx($bExtendedAttrs,$bNoKeys,$bNoCerts,$bNoCaCerts,"aes256",$sKeyPassword)
If ($oPfx.LastMethodSuccess = False) Then
    ConsoleWrite($oPfx.LastErrorText & @CRLF)
    Exit
EndIf

ConsoleWrite($sPem & @CRLF)