Perl
Perl
Export Selected PFX Contents as PEM
See more PFX/P12 Examples
Demonstrates Pfx.ToPemEx, which exports selected PFX contents as PEM-formatted text with control over which parts are included and how private keys are encrypted.
Background. Private keys are written in PKCS #8 form. Supported key-encryption algorithms include
aes128, aes192, aes256, and 3des; leaving the algorithm empty produces unencrypted keys.Chilkat Perl Downloads
use chilkat();
$success = 0;
$pfx = chilkat::CkPfx->new();
# The file path is relative to the application's current working directory. An absolute path
# may also be used. Supply the path appropriate to your own environment.
# The PFX password should come from a secure source rather than being hard-coded.
$password = "myPfxPassword";
$success = $pfx->LoadPfxFile("qa_data/identity.pfx",$password);
if ($success == 0) {
print $pfx->lastErrorText() . "\r\n";
exit;
}
# Export selected PFX contents as PEM-formatted text. The boolean arguments control what is
# included: extended attributes, and whether to omit private keys, certificates, or CA certificates.
$bExtendedAttrs = 0;
$bNoKeys = 0;
$bNoCerts = 0;
$bNoCaCerts = 0;
# Encrypt the exported private keys. Supported algorithms include aes128, aes192, aes256, and 3des;
# leave the algorithm empty for unencrypted keys. The key password should come from a secure source.
$keyPassword = "myKeyPassword";
$pem = $pfx->toPemEx($bExtendedAttrs,$bNoKeys,$bNoCerts,$bNoCaCerts,"aes256",$keyPassword);
if ($pfx->get_LastMethodSuccess() == 0) {
print $pfx->lastErrorText() . "\r\n";
exit;
}
print $pem . "\r\n";