Delphi ActiveX
Delphi ActiveX
Export Selected PFX Contents as PEM
See more PFX/P12 Examples
Demonstrates Pfx.ToPemEx, which exports selected PFX contents as PEM-formatted text with control over which parts are included and how private keys are encrypted.
Background. Private keys are written in PKCS #8 form. Supported key-encryption algorithms include
aes128, aes192, aes256, and 3des; leaving the algorithm empty produces unencrypted keys.Chilkat Delphi ActiveX Downloads
var
success: Integer;
pfx: TChilkatPfx;
password: WideString;
bExtendedAttrs: Integer;
bNoKeys: Integer;
bNoCerts: Integer;
bNoCaCerts: Integer;
keyPassword: WideString;
pem: WideString;
begin
success := 0;
pfx := TChilkatPfx.Create(Self);
// The file path is relative to the application's current working directory. An absolute path
// may also be used. Supply the path appropriate to your own environment.
// The PFX password should come from a secure source rather than being hard-coded.
password := 'myPfxPassword';
success := pfx.LoadPfxFile('qa_data/identity.pfx',password);
if (success = 0) then
begin
Memo1.Lines.Add(pfx.LastErrorText);
Exit;
end;
// Export selected PFX contents as PEM-formatted text. The boolean arguments control what is
// included: extended attributes, and whether to omit private keys, certificates, or CA certificates.
bExtendedAttrs := 0;
bNoKeys := 0;
bNoCerts := 0;
bNoCaCerts := 0;
// Encrypt the exported private keys. Supported algorithms include aes128, aes192, aes256, and 3des;
// leave the algorithm empty for unencrypted keys. The key password should come from a secure source.
keyPassword := 'myKeyPassword';
pem := pfx.ToPemEx(bExtendedAttrs,bNoKeys,bNoCerts,bNoCaCerts,'aes256',keyPassword);
if (pfx.LastMethodSuccess = 0) then
begin
Memo1.Lines.Add(pfx.LastErrorText);
Exit;
end;
Memo1.Lines.Add(pem);