Sample code for 30+ languages & platforms
Zig

Load an Encrypted Private Key from PEM Text

See more Private Key Examples

Demonstrates the Chilkat PrivateKey.LoadEncryptedPem method, which loads a private key from PEM text, using a password when the PEM is encrypted. The first argument is the PEM string and the second is the password. Unencrypted PEM is also accepted.

Background: An encrypted PEM protects the key material at rest — a stolen file is useless without the passphrase — which is why encrypted keys are preferred for anything shipped or stored. This loader supplies that passphrase to decrypt a BEGIN ENCRYPTED PRIVATE KEY block (and gracefully handles unencrypted PEM too), so it is a safe default when a PEM might be either. The password should come from a secure source, never a hard-coded literal.

Chilkat Zig Downloads

Zig
const std = @import("std");
const chilkat = @import("chilkat");

pub fn main(init: std.process.Init) !void {
    const alloc = init.arena.allocator();

    // Demonstrates the PrivateKey.LoadEncryptedPem method, which loads a private key from PEM text.
    // The 1st argument is the PEM string and the 2nd is the password (used when the PEM is
    // encrypted).  Unencrypted PEM is also accepted.

    const priv_key = try chilkat.PrivateKey.init();
    defer priv_key.deinit();

    // The PEM text of an encrypted private key.
    const pem_text = "-----BEGIN ENCRYPTED PRIVATE KEY-----\nMIIFHzBJ...\n-----END ENCRYPTED PRIVATE KEY-----";

    // The key password is not hard-coded in a real application; obtain it from an interactive
    // prompt, environment variable, or a secrets vault.
    const password = "myKeyPassword";

    priv_key.loadEncryptedPem(pem_text, password) catch {
        std.debug.print("{s}\n", .{try priv_key.getLastErrorText(alloc)});
        return;
    };

    std.debug.print("Loaded a {s} private key.\n", .{try priv_key.getKeyType(alloc)});
}