Sample code for 30+ languages & platforms
Lianja

Compute a Private Key's JWK Thumbprint

See more Private Key Examples

Demonstrates the Chilkat PrivateKey.GetJwkThumbprint method, which computes the RFC 7638 thumbprint of the key's public portion using a named hash algorithm. The only argument is the hash algorithm (for example sha256).

Note: The file paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.

Background: A JWK thumbprint is a stable, canonical hash of a key's public parameters — a short fingerprint that identifies the key independent of formatting. It is widely used as a key ID (kid) in JWK Sets and JWTs, and for comparing whether two representations are the same key. Because it hashes only the public portion, it can be shared freely even though it is computed here from the private key.

Chilkat Lianja Downloads

Lianja
llSuccess = .F.

//  Load a private key to export.
loPrivKey = createobject("CkPrivateKey")
llSuccess = loPrivKey.LoadPemFile("qa_data/private.pem")
if (llSuccess = .F.) then
    ? loPrivKey.LastErrorText
    release loPrivKey
    return
endif

//  Compute the RFC 7638 thumbprint of the key's public portion using the named hash algorithm.
//  Supported values include "sha256", "sha1", "md5", and others.
lcThumbprint = loPrivKey.GetJwkThumbprint("sha256")
if (loPrivKey.LastMethodSuccess = .F.) then
    ? loPrivKey.LastErrorText
    release loPrivKey
    return
endif

? "JWK thumbprint: " + lcThumbprint


release loPrivKey