Sample code for 30+ languages & platforms
Unicode C

Load an Encrypted Private Key from PEM Text

See more Private Key Examples

Demonstrates the Chilkat PrivateKey.LoadEncryptedPem method, which loads a private key from PEM text, using a password when the PEM is encrypted. The first argument is the PEM string and the second is the password. Unencrypted PEM is also accepted.

Background: An encrypted PEM protects the key material at rest — a stolen file is useless without the passphrase — which is why encrypted keys are preferred for anything shipped or stored. This loader supplies that passphrase to decrypt a BEGIN ENCRYPTED PRIVATE KEY block (and gracefully handles unencrypted PEM too), so it is a safe default when a PEM might be either. The password should come from a secure source, never a hard-coded literal.

Chilkat Unicode C Downloads

Unicode C
#include <C_CkPrivateKeyW.h>

void ChilkatSample(void)
    {
    BOOL success;
    HCkPrivateKeyW privKey;
    const wchar_t *pemText;
    const wchar_t *password;

    success = FALSE;

    //  Demonstrates the PrivateKey.LoadEncryptedPem method, which loads a private key from PEM text.
    //  The 1st argument is the PEM string and the 2nd is the password (used when the PEM is
    //  encrypted).  Unencrypted PEM is also accepted.

    privKey = CkPrivateKeyW_Create();

    //  The PEM text of an encrypted private key.
    pemText = L"-----BEGIN ENCRYPTED PRIVATE KEY-----\nMIIFHzBJ...\n-----END ENCRYPTED PRIVATE KEY-----";

    //  The key password is not hard-coded in a real application; obtain it from an interactive
    //  prompt, environment variable, or a secrets vault.
    password = L"myKeyPassword";

    success = CkPrivateKeyW_LoadEncryptedPem(privKey,pemText,password);
    if (success == FALSE) {
        wprintf(L"%s\n",CkPrivateKeyW_lastErrorText(privKey));
        CkPrivateKeyW_Dispose(privKey);
        return;
    }

    wprintf(L"Loaded a %s private key.\n",CkPrivateKeyW_keyType(privKey));


    CkPrivateKeyW_Dispose(privKey);

    }