Sample code for 30+ languages & platforms
Xbase++

Load an Encrypted Private Key from PEM Text

See more Private Key Examples

Demonstrates the Chilkat PrivateKey.LoadEncryptedPem method, which loads a private key from PEM text, using a password when the PEM is encrypted. The first argument is the PEM string and the second is the password. Unencrypted PEM is also accepted.

Background: An encrypted PEM protects the key material at rest — a stolen file is useless without the passphrase — which is why encrypted keys are preferred for anything shipped or stored. This loader supplies that passphrase to decrypt a BEGIN ENCRYPTED PRIVATE KEY block (and gracefully handles unencrypted PEM too), so it is a safe default when a PEM might be either. The password should come from a secure source, never a hard-coded literal.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL oPrivKey
LOCAL cPemText
LOCAL cPassword

nSuccess := 0

//  Demonstrates the PrivateKey.LoadEncryptedPem method, which loads a private key from PEM text.
//  The 1st argument is the PEM string and the 2nd is the password (used when the PEM is
//  encrypted).  Unencrypted PEM is also accepted.

oPrivKey := CreateObject("Chilkat.PrivateKey")

//  The PEM text of an encrypted private key.
cPemText := "-----BEGIN ENCRYPTED PRIVATE KEY-----" + Chr(10) + "MIIFHzBJ..." + Chr(10) + "-----END ENCRYPTED PRIVATE KEY-----"

//  The key password is not hard-coded in a real application; obtain it from an interactive
//  prompt, environment variable, or a secrets vault.
cPassword := "myKeyPassword"

nSuccess := oPrivKey:LoadEncryptedPem(cPemText, cPassword)
IF (nSuccess == 0)
    ? oPrivKey:LastErrorText
    oPrivKey:destroy()
    RETURN
ENDIF

? "Loaded a " + oPrivKey:KeyType + " private key."

oPrivKey:destroy()