[openssl-users] reading DER format public keys

Michael Richardson mcr at sandelman.ca
Fri Sep 15 15:57:17 UTC 2017

The PEM_* routines, as documented at:
do not claim to read DER format input. (Actually they don't say anything about DER).
Ruby's library uses:
    pkey = PEM_read_bio_PUBKEY(bio, NULL, ossl_pem_passwd_cb, (void *)pass);

It's documentation claims it read DER, which either it's wrong, or the
underlying ruby extension or SSL code has changed.

There must be a way to read DER format public keys.
I'm suspecting that maybe the magic is in the way the BIO is created?
(FAQ question PROG03, hints this for PKCS7 processing).

Going to read the source code.

