gnutls_x509_privkey_generate (3) - Linux Manuals

gnutls_x509_privkey_generate: API function


gnutls_x509_privkey_generate - API function


#include <gnutls/x509.h>

int gnutls_x509_privkey_generate(gnutls_x509_privkey_t key, gnutls_pk_algorithm_t algo, unsigned int bits, unsigned int flags);


gnutls_x509_privkey_t key
should contain a gnutls_x509_privkey_t structure
gnutls_pk_algorithm_t algo
is one of the algorithms in gnutls_pk_algorithm_t.
unsigned int bits
the size of the modulus
unsigned int flags
unused for now. Must be 0.


This function will generate a random private key. Note that this function must be called on an empty private key.

Note that when generating an elliptic curve key, the curve can be substituted in the place of the bits parameter using the GNUTLS_CURVE_TO_BITS() macro.

For DSA keys, if the subgroup size needs to be specified check the GNUTLS_SUBGROUP_TO_BITS() macro.

Do not set the number of bits directly, use gnutls_sec_param_to_pk_bits().


On success, GNUTLS_E_SUCCESS (0) is returned, otherwise a negative error value.


Report bugs to <bugs [at]>.
Home page:


Copyright © 2001-2014 Free Software Foundation, Inc..
Copying and distribution of this file, with or without modification, are permitted in any medium without royalty provided the copyright notice and this notice are preserved.


The full documentation for gnutls is maintained as a Texinfo manual. If the /usr/share/doc/gnutls/ directory does not contain the HTML form visit