Rust Requires Chilkat v11.0.0+
Rust
Generate RSA Key and Export to PKCS1 / PKCS8
See more RSA Examples
_LANGUAGE_ example code showing how to generate an RSA public/private key and save to PKCS1 and PKCS8 format files. In a PKCS1 or PKCS8 formatted file, the key is stored in binary ASN.1 format (and ASN.1 is itself written according to DER -- Distinguished Encoding Rules). A PEM file simply contains the binary ASN.1 base64 encoded and delimited by BEGIN/END lines. PKCS1 format files are never encrypted. PKCS8 can be encrypted or unencrypted. Public keys are never encrypted (there is no need). Private keys *should* always be encrypted - unless perhaps the unencrypted private key is obtained and itself stored in some sort of secure place.Chilkat Rust Downloads
// This example assumes the Chilkat API to have been previously unlocked.
// See Global Unlock Sample for sample code.
let rsa = chilkat::Rsa::new();
// Generate a 2048-bit key. Chilkat RSA supports
// key sizes ranging from 512 bits to 8192 bits.
let priv_key = chilkat::PrivateKey::new();
if rsa.gen_key(2048, &priv_key).is_err() {
println!("{}", rsa.last_error_text());
return;
}
// Get the public key
let pub_key = chilkat::PublicKey::new();
let _ = priv_key.to_public_key(&pub_key);
// Get the public key as a PKCS8 PEM string
let pub_key_pem = pub_key.get_pem(false).unwrap_or_default();
println!("{}", pub_key_pem);
// Get the public key in PKCS8 format, in a Base64 encoded string.
let pub_key_pkcs8_base64 = pub_key.get_encoded(false, "base64").unwrap_or_default();
println!("{}", pub_key_pkcs8_base64);
// Get the public key in PKCS1 format, in a Base64 encoded string.
let pub_key_pkcs1_base64 = pub_key.get_encoded(true, "base64").unwrap_or_default();
println!("{}", pub_key_pkcs1_base64);
// Get the private key in a PKCS8 PEM string.
let priv_key_pem = priv_key.get_pkcs8_pem().unwrap_or_default();
println!("{}", priv_key_pem);
// Get the private key in a PKCS8 encrypted PEM string.
let priv_key_enc_pem = priv_key.get_pkcs8_encrypted_pem("myPassword").unwrap_or_default();
println!("{}", priv_key_enc_pem);
// Get the private key in PKCS1 Base64 format
let priv_key_pkcs1_base64 = priv_key.get_pkcs1_enc("base64").unwrap_or_default();
println!("{}", priv_key_pkcs1_base64);
// Get the private key in PKCS8 Base64 format
let priv_key_pkcs8_base64 = priv_key.get_pkcs8_enc("base64").unwrap_or_default();
println!("{}", priv_key_pkcs8_base64);
// Save to PKCS1 / PKCS8 / PEM files...
// Save the public key to PKCS8 binary DER
let _ = pub_key.save_der_file(false, "pubKey_pkcs8.der").is_ok();
// Save the public key to PKCS1 binary DER
let _ = pub_key.save_der_file(true, "pubKey_pkcs1.der").is_ok();
// Save the private key to unencrypted binary PKCS1 DER.
// Note: PKCS1 is never found in an encrypted format.
let _ = priv_key.save_pkcs1_file("privKey_pkcs1.der").is_ok();
// Save the private key to unencrypted binary PKCS8
let _ = priv_key.save_pkcs8_file("privKey_pkcs8.der").is_ok();
// Save the private key to encrypted binary PKCS8
let _ = priv_key.save_pkcs8_encrypted_file("myPassword", "privKey_enc_pkcs8.der").is_ok();
// Save the private key to unencrypted PKCS8 PEM
let _ = priv_key.save_pkcs8_pem_file("privKey.pem").is_ok();
// Save the private key to encrypted PKCS8 PEM
let _ = priv_key.save_pkcs8_encrypted_pem_file("myPassword", "privKey_enc.pem").is_ok();