Free PKI tool

Free PFX / PKCS#12 Generator — for IIS, Windows & Java

Combine a certificate, its private key, and an optional chain into a single password-protected .pfx (PKCS#12) file — the format IIS, Windows Certificate Store, and many Java deployments expect.

Open in full-page tool suite →
How it works

Three steps, nothing leaves your browser

Paste certificate, key & chain

Your leaf certificate, matching private key, and any intermediate certificates.

Set a password

Choose the password that will protect the .pfx bundle.

Download the .pfx

Built and encrypted locally in your browser, ready to import into IIS or the Windows cert store.

Questions

Common questions

What is a PFX / PKCS#12 file used for?

It's a single encrypted file bundling a certificate, private key, and chain — used to import a certificate into IIS, the Windows Certificate Store, or many Java applications.

Is my private key uploaded to build the .pfx?

No — the bundle is built entirely client-side in your browser using forge.js; nothing is transmitted.

What password should I use?

Any password you'll remember when importing it — the same password is required to open the .pfx file later.