Sample code for 30+ languages & platforms
PHP ActiveX

Export Selected PFX Contents as PEM

See more PFX/P12 Examples

Demonstrates Pfx.ToPemEx, which exports selected PFX contents as PEM-formatted text with control over which parts are included and how private keys are encrypted.

Background. Private keys are written in PKCS #8 form. Supported key-encryption algorithms include aes128, aes192, aes256, and 3des; leaving the algorithm empty produces unencrypted keys.

Chilkat PHP ActiveX Downloads

PHP ActiveX
<?php

$success = 0;

$pfx = new COM("Chilkat.Pfx");

//  The file path is relative to the application's current working directory.  An absolute path
//  may also be used.  Supply the path appropriate to your own environment.
//  The PFX password should come from a secure source rather than being hard-coded.
$password = 'myPfxPassword';
$success = $pfx->LoadPfxFile('qa_data/identity.pfx',$password);
if ($success == 0) {
    print $pfx->LastErrorText . "\n";
    exit;
}

//  Export selected PFX contents as PEM-formatted text.  The boolean arguments control what is
//  included: extended attributes, and whether to omit private keys, certificates, or CA certificates.
$bExtendedAttrs = 0;
$bNoKeys = 0;
$bNoCerts = 0;
$bNoCaCerts = 0;

//  Encrypt the exported private keys.  Supported algorithms include aes128, aes192, aes256, and 3des;
//  leave the algorithm empty for unencrypted keys.  The key password should come from a secure source.
$keyPassword = 'myKeyPassword';
$pem = $pfx->toPemEx($bExtendedAttrs,$bNoKeys,$bNoCerts,$bNoCaCerts,'aes256',$keyPassword);
if ($pfx->LastMethodSuccess == 0) {
    print $pfx->LastErrorText . "\n";
    exit;
}

print $pem . "\n";

?>