Sample code for 30+ languages & platforms
CkPython

Convert a PFX to a Java KeyStore

See more PFX/P12 Examples

Demonstrates Pfx.ToJksObj, which populates a JavaKeyStore with a JKS representation of the PFX, then writes it to a file.

The file path is relative to the application's current working directory. An absolute path may also be used. Supply the path appropriate to your own environment.

Background. One private-key entry is created for each private key, with certificate chains built from the PFX certificates. The password protects the generated Java KeyStore.

Chilkat CkPython Downloads

CkPython
import sys
import chilkat

success = False

pfx = chilkat.CkPfx()

#  The file path is relative to the application's current working directory.  An absolute path
#  may also be used.  Supply the path appropriate to your own environment.
#  The PFX password should come from a secure source rather than being hard-coded.
password = "myPfxPassword"
success = pfx.LoadPfxFile("qa_data/identity.pfx",password)
if (success == False):
    print(pfx.lastErrorText())
    sys.exit()

#  Populate a Java KeyStore (JKS) representation of this PFX.  One private-key entry is created for
#  each private key, and the PFX certificates are used to build the certificate chains.  The 1st
#  argument is the alias for the first private-key entry, and the 2nd protects the generated JKS.
#  The JKS password should come from a secure source rather than being hard-coded.
jksPassword = "myJksPassword"
jks = chilkat.CkJavaKeyStore()
success = pfx.ToJksObj("myalias",jksPassword,jks)
if (success == False):
    print(pfx.lastErrorText())
    sys.exit()

#  The Java KeyStore object can then be written to a .jks file.
success = jks.ToFile(jksPassword,"qa_output/identity.jks")
if (success == False):
    print(jks.lastErrorText())
    sys.exit()

print("Wrote a Java KeyStore with " + str(jks.get_NumPrivateKeys()) + " private key(s).")