Sample code for 30+ languages & platforms
SQL Server

Demonstrate RSA Encrypt/Decrypt using BinData

See more RSA Examples

Demonstrates how to RSA encrypt and decrypt data contained in a Chilkat BinData object.

Chilkat SQL Server Downloads

SQL Server
-- Important: See this note about string length limitations for strings returned by sp_OAMethod calls.
--
CREATE PROCEDURE ChilkatSample
AS
BEGIN
    DECLARE @hr int
    DECLARE @iTmp0 int
    -- Important: Do not use nvarchar(max).  See the warning about using nvarchar(max).
    DECLARE @sTmp0 nvarchar(4000)
    DECLARE @success int
    SELECT @success = 0

    -- The RSA public key is used for encryption, and the private key for decryption.

    -- The public key's role is to make encryption accessible to anyone while ensuring that
    -- only the private key holder can decrypt the messages.
    -- The public key is designed to be widely distributed so anyone can use it to encrypt messages
    -- intended for the owner of the private key.

    -- Load our 2048-bit RSA public key.
    DECLARE @pubKey int
    EXEC @hr = sp_OACreate 'Chilkat.PublicKey', @pubKey OUT
    IF @hr <> 0
    BEGIN
        PRINT 'Failed to create ActiveX component'
        RETURN
    END

    -- In all Chilkat methods expecting a path, you pass either absolute or relative paths.
    EXEC sp_OAMethod @pubKey, 'LoadFromFile', @success OUT, 'rsaKeys/myTestRsaPublic.pem'
    IF @success = 0
      BEGIN
        EXEC sp_OAGetProperty @pubKey, 'LastErrorText', @sTmp0 OUT
        PRINT @sTmp0
        EXEC @hr = sp_OADestroy @pubKey
        RETURN
      END

    DECLARE @rsa int
    EXEC @hr = sp_OACreate 'Chilkat.Rsa', @rsa OUT

    -- Tell RSA to use the public key.
    EXEC sp_OAMethod @rsa, 'UsePublicKey', @success OUT, @pubKey

    -- RSA encryption is for small amounts of data, on the order of 200 bytes or less.
    -- The maximum number of bytes that can be RSA encrypted depends
    -- on the RSA key size and padding scheme (OAEP padding vs PKCS#1 v1.5 padding).
    -- For specific limits, see: RSA Encryption Maximum Number of Bytes

    -- Create some binary data to encrypt.
    DECLARE @bd int
    EXEC @hr = sp_OACreate 'Chilkat.BinData', @bd OUT

    DECLARE @i int
    SELECT @i = 0
    SELECT @i = 0
    WHILE @i <= 49
      BEGIN
        EXEC sp_OAMethod @bd, 'AppendByte', @success OUT, @i
        SELECT @i = @i + 1
      END

    -- Show the bytes to be encrypted in hex format:

    EXEC sp_OAMethod @bd, 'GetEncoded', @sTmp0 OUT, 'hex'
    PRINT 'To be encrypted: ' + @sTmp0

    -- To be encrypted: 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F3031

    -- RSA encrypt the contents of the bd, replacing the contents with the RSA encrypted data.
    EXEC sp_OAMethod @rsa, 'EncryptBd', @success OUT, @bd, 0

    -- Now it is encrypted.

    EXEC sp_OAGetProperty @bd, 'NumBytes', @iTmp0 OUT
    PRINT 'Encrypted size = ' + @iTmp0
    EXEC sp_OAMethod @bd, 'GetEncoded', @sTmp0 OUT, 'hex'
    PRINT @sTmp0

    -- Encrypted size = 256
    -- 749ED9D0A8767C06C09AD9697F654F86B145F966722F9714902C4175BDBD02E68984ECF111D4D461
    -- EDB4A8E677D399D19CCA60F35C6DE9972F4262880FE9D77DB75915393E8E7DB80AAB5E383013FAEB
    -- 60C77D1E6FECC9A7C8426976416C6218FE7DA998EE063CE709E79C240F8625F4A56A0A33AFD63F7A
    -- BA26F2A692B42E878C53B78602C725FE63FF961A46A2B9D436E5E3D9D64AE3F1D1F5AD5F5B47FCD69
    -- 447306B77F2FD6D766CCAA1A110A3371586B43DF0D7FFE2220D1B305CF9371AC342F849FB0C90CD99E
    -- C176928D877FE1C0DE1A7CB6EB824FEC7E1DCF90EF2C6BA9F1DFD3EBFBE89C51AF074DC6AE02E544A78
    -- 5018C36D3D48B2EF5202AF61AC

    -- ------------------------------------------------------------------------------------------------------------------------
    -- Let's decrypt, which requires the matching private key...

    -- Load the matching 2048-bit RSA private key.
    DECLARE @privKey int
    EXEC @hr = sp_OACreate 'Chilkat.PrivateKey', @privKey OUT

    DECLARE @password nvarchar(4000)
    SELECT @password = 'secret'
    EXEC sp_OAMethod @privKey, 'LoadAnyFormatFile', @success OUT, 'rsaKeys/myTestRsaPrivate.pem', @password
    IF @success = 0
      BEGIN
        EXEC sp_OAGetProperty @privKey, 'LastErrorText', @sTmp0 OUT
        PRINT @sTmp0
        EXEC @hr = sp_OADestroy @pubKey
        EXEC @hr = sp_OADestroy @rsa
        EXEC @hr = sp_OADestroy @bd
        EXEC @hr = sp_OADestroy @privKey
        RETURN
      END

    -- Tell the RSA object to use the private key.
    EXEC sp_OAMethod @rsa, 'UsePrivateKey', @success OUT, @privKey

    -- Decrypt
    EXEC sp_OAMethod @rsa, 'DecryptBd', @success OUT, @bd, 1
    IF @success = 0
      BEGIN
        EXEC sp_OAGetProperty @rsa, 'LastErrorText', @sTmp0 OUT
        PRINT @sTmp0
        EXEC @hr = sp_OADestroy @pubKey
        EXEC @hr = sp_OADestroy @rsa
        EXEC @hr = sp_OADestroy @bd
        EXEC @hr = sp_OADestroy @privKey
        RETURN
      END

    -- Examine the contents of bd to see if it now contains the unencrypted original data.

    EXEC sp_OAMethod @bd, 'GetEncoded', @sTmp0 OUT, 'hex'
    PRINT 'Decrypted: ' + @sTmp0

    -- Decrypted: 000102030405060708090A0B0C0D0E0F101112131415161718191A1B1C1D1E1F202122232425262728292A2B2C2D2E2F3031

    EXEC @hr = sp_OADestroy @pubKey
    EXEC @hr = sp_OADestroy @rsa
    EXEC @hr = sp_OADestroy @bd
    EXEC @hr = sp_OADestroy @privKey


END
GO