Sample code for 30+ languages & platforms
Java

Convert a PFX to a Java KeyStore

See more PFX/P12 Examples

Demonstrates Pfx.ToJksObj, which populates a JavaKeyStore with a JKS representation of the PFX, then writes it to a file.

The file path is relative to the application's current working directory. An absolute path may also be used. Supply the path appropriate to your own environment.

Background. One private-key entry is created for each private key, with certificate chains built from the PFX certificates. The password protects the generated Java KeyStore.

Chilkat Java Downloads

Java
import com.chilkatsoft.*;

public class ChilkatExample {

  static {
    try {
        System.loadLibrary("chilkat");
    } catch (UnsatisfiedLinkError e) {
      System.err.println("Native code library failed to load.\n" + e);
      System.exit(1);
    }
  }

  public static void main(String argv[])
  {
    boolean success = false;

    CkPfx pfx = new CkPfx();

    //  The file path is relative to the application's current working directory.  An absolute path
    //  may also be used.  Supply the path appropriate to your own environment.
    //  The PFX password should come from a secure source rather than being hard-coded.
    String password = "myPfxPassword";
    success = pfx.LoadPfxFile("qa_data/identity.pfx",password);
    if (success == false) {
        System.out.println(pfx.lastErrorText());
        return;
        }

    //  Populate a Java KeyStore (JKS) representation of this PFX.  One private-key entry is created for
    //  each private key, and the PFX certificates are used to build the certificate chains.  The 1st
    //  argument is the alias for the first private-key entry, and the 2nd protects the generated JKS.
    //  The JKS password should come from a secure source rather than being hard-coded.
    String jksPassword = "myJksPassword";
    CkJavaKeyStore jks = new CkJavaKeyStore();
    success = pfx.ToJksObj("myalias",jksPassword,jks);
    if (success == false) {
        System.out.println(pfx.lastErrorText());
        return;
        }

    //  The Java KeyStore object can then be written to a .jks file.
    success = jks.ToFile(jksPassword,"qa_output/identity.jks");
    if (success == false) {
        System.out.println(jks.lastErrorText());
        return;
        }

    System.out.println("Wrote a Java KeyStore with " + jks.get_NumPrivateKeys() + " private key(s).");
  }
}