About RSA Key Generator and Encryption
This online RSA tool covers the jobs that come up when you wire up login encryption, a payment callback or a license check. Generate a 2048, 3072 or 4096-bit key pair in PEM format, with the private key as PKCS#8 and the public key as SPKI. Keys in the older PKCS#1 format, the ones starting with BEGIN RSA PRIVATE KEY, are accepted too.
Encrypt and decrypt with RSA-OAEP, using SHA-256 or SHA-1, or with PKCS#1 v1.5. The latter matches jsencrypt and PHP's openssl_public_encrypt with default settings, so you can test a login form that encrypts passwords in the browser. Sign and verify with SHA-256, using PKCS#1 v1.5 or PSS padding. Ciphertext and signatures come out as Base64. Keys are generated in your browser and never sent anywhere. Tokens signed with RS256 can be checked against your public key in the JWT Decoder.
How to use RSA Key Generator and Encryption
- 1Generate or paste keys
Create a 2048, 3072 or 4096-bit pair, or paste your own PEM keys.
- 2Pick the operation
Encrypt, decrypt, sign or verify.
- 3Choose the padding
RSA-OAEP with SHA-256 or SHA-1, or PKCS#1 v1.5. For signatures, PKCS#1 v1.5 or PSS.
- 4Copy the result
Ciphertext and signatures come out as Base64.
Why use Cubfile for this
- Keys up to 4096 bits
PEM output with a PKCS#8 private key and an SPKI public key.
- Works with existing code
PKCS#1 v1.5 matches the defaults of jsencrypt and PHP openssl_public_encrypt.
- Sign and verify
SHA-256 signatures with PKCS#1 v1.5 or PSS padding.
- Private keys stay private
Generated and used in your browser, never uploaded.