Sample code for 30+ languages & platforms
Xbase++

Convert a PFX to a Java KeyStore

See more PFX/P12 Examples

Demonstrates Pfx.ToJksObj, which populates a JavaKeyStore with a JKS representation of the PFX, then writes it to a file.

The file path is relative to the application's current working directory. An absolute path may also be used. Supply the path appropriate to your own environment.

Background. One private-key entry is created for each private key, with certificate chains built from the PFX certificates. The password protects the generated Java KeyStore.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oPfx
LOCAL cPassword
LOCAL cJksPassword
LOCAL oJks

nSuccess := 0

oPfx := CreateObject("Chilkat.Pfx")

//  The file path is relative to the application's current working directory.  An absolute path
//  may also be used.  Supply the path appropriate to your own environment.
//  The PFX password should come from a secure source rather than being hard-coded.
cPassword := "myPfxPassword"
nSuccess := oPfx:LoadPfxFile("qa_data/identity.pfx", cPassword)
IF (nSuccess == 0)
    ? oPfx:LastErrorText
    oPfx:destroy()
    RETURN
ENDIF

//  Populate a Java KeyStore (JKS) representation of this PFX.  One private-key entry is created for
//  each private key, and the PFX certificates are used to build the certificate chains.  The 1st
//  argument is the alias for the first private-key entry, and the 2nd protects the generated JKS.
//  The JKS password should come from a secure source rather than being hard-coded.
cJksPassword := "myJksPassword"
oJks := CreateObject("Chilkat.JavaKeyStore")
nSuccess := oPfx:ToJksObj("myalias", cJksPassword, oJks)
IF (nSuccess == 0)
    ? oPfx:LastErrorText
    oPfx:destroy()
    oJks:destroy()
    RETURN
ENDIF

//  The Java KeyStore object can then be written to a .jks file.
nSuccess := oJks:ToFile(cJksPassword, "qa_output/identity.jks")
IF (nSuccess == 0)
    ? oJks:LastErrorText
    oPfx:destroy()
    oJks:destroy()
    RETURN
ENDIF

? "Wrote a Java KeyStore with " + Str(oJks:NumPrivateKeys) + " private key(s)."

oPfx:destroy()
oJks:destroy()