Sample code for 30+ languages & platforms
Dart Requires Chilkat v11.0.0+

Get Certificates from .p12 / .pfx

See more PFX/P12 Examples

A PKCS12 (.p12 / .pfx) is a container for holding a certificate, its private key, and the certs in the chain of authentication up to and possibly including the root CA cert. A .p12 is not required to contain certain things. It will contain whatever the creator of the .p12 decided to include. It's possible to contain just a private key, just a cert, many certs without private keys, or many certs with many private keys. Usually, a .p12 contains one certificate, its associated private key, and certificates in the chain of authentication.

Chilkat Dart Downloads

Dart
import 'package:chilkat/chilkat.dart';

void main() {
  final pfx = CkPfx();

  try {
    pfx.loadPfxFile('qa_data/pfx/test.pfx', 'pfx_password');
  } on ChilkatException catch (e) {
    print(e.lastErrorText);
    return;
  }

  // Iterate over the certs contained in the PFX
  final cert = CkCert();
  final numCerts = pfx.numCerts;
  var i = 0;
  while (i < numCerts) {

    pfx.certAt(i, cert);

    print('--- $i ---');
    print(cert.subjectDN);
    // Is this a root cert, or self-signed?
    print('Root: ${cert.isRoot}');
    print('Self-Signed: ${cert.selfSigned}');

    // If this certificate is not the root (self-signed), then get the issuer.
    // If the issuing certificate is contained in the PFX, then it will be found here..
    if (!cert.selfSigned) {
      try {
        final issuer = cert.findIssuer();
        print('Issuer: ${issuer.subjectDN}');
      } on ChilkatException {
        print('Issuer not found.');
      }
    }

    i++;
  }

  // Usually, the user certificate is at index 0, its issuer is at index 1, etc. until we get to the root certificate.
}