Skip to content

编码与加密

RSA / ECDSA 密钥对生成器

PEM + PKCS#8 + JWK — Web Crypto in your browser.

Runs in your browser
Private key (PEM / PKCS#8)
(click generate)
Public key (PEM / SPKI)
(click generate)
Private JWK
(click generate)
Public JWK
(click generate)

编辑注

Understanding · Big primes vs elliptic curves — same job, different maths.

本深度章节目前仅有英文版本。上方的转换工具支持您的语言;长篇说明文章尚未翻译。

常见问题

Quick answers.

Is it safe to generate private keys in a browser?

Yes, provided the tool uses the standard Web Crypto API and does not transmit data. This tool runs entirely client-side, meaning your private key is never sent to a server or stored in a database.

What is the difference between RSA and ECDSA?

RSA is the traditional standard based on large prime numbers, widely compatible but requiring larger key sizes for security. ECDSA uses elliptic curve cryptography to provide equivalent security with much smaller keys, resulting in faster computations and less storage.

Which curve should I choose for ECDSA?

P-256 (prime256v1) is the most common choice for general web applications and is widely supported by cloud providers. P-384 and P-521 offer higher security margins if required by specific compliance standards.

What format should I download?

Use PEM or PKCS#8 for server-side environments like Node.js, Python, or OpenSSL. Choose JWK (JSON Web Key) if you are building browser-based applications that need to import keys directly back into the Web Crypto API.

大家也在搜索

相关工具

More in this room.

查看所有 编码与加密