Sample code for 30+ languages & platforms
PureBasic

Export an Encrypted PKCS #8 Private Key as PEM

See more Private Key Examples

Demonstrates the Chilkat PrivateKey.GetPkcs8EncryptedPem method, which exports the key as password-protected PKCS #8 PEM (-----BEGIN ENCRYPTED PRIVATE KEY-----). The only argument is the password; the cipher is selected by the Pkcs8EncryptAlg property.

Note: The file paths are relative to the application's current working directory. Absolute paths may also be used. Supply the paths appropriate to your own environment.

Background: This is the safe way to export a key for storage or transfer — the private material is encrypted under a passphrase, so a leaked file is not immediately usable. It is the format to reach for whenever a key leaves your process. Control the encryption cipher with Pkcs8EncryptAlg, and source the password securely rather than hard-coding it.

Chilkat PureBasic Downloads

PureBasic
IncludeFile "CkPrivateKey.pb"

Procedure ChilkatExample()

    success.i = 0

    ;  Load a private key to export.
    privKey.i = CkPrivateKey::ckCreate()
    If privKey.i = 0
        Debug "Failed to create object."
        ProcedureReturn
    EndIf

    success = CkPrivateKey::ckLoadPemFile(privKey,"qa_data/private.pem")
    If success = 0
        Debug CkPrivateKey::ckLastErrorText(privKey)
        CkPrivateKey::ckDispose(privKey)
        ProcedureReturn
    EndIf

    ;  The key password is not hard-coded in a real application; obtain it from an interactive
    ;  prompt, environment variable, or a secrets vault.
    password.s = "myKeyPassword"

    ;  Export as password-protected PKCS #8 PEM ("-----BEGIN ENCRYPTED PRIVATE KEY-----").  The
    ;  encryption cipher is selected by the Pkcs8EncryptAlg property.
    pem.s = CkPrivateKey::ckGetPkcs8EncryptedPem(privKey,password)
    If CkPrivateKey::ckLastMethodSuccess(privKey) = 0
        Debug CkPrivateKey::ckLastErrorText(privKey)
        CkPrivateKey::ckDispose(privKey)
        ProcedureReturn
    EndIf

    Debug pem


    CkPrivateKey::ckDispose(privKey)


    ProcedureReturn
EndProcedure