BCryptFinalizeKeyPair

The BCryptFinalizeKeyPair function completes a public/private key pair. The key cannot be used until this function has been called. After this function has been called, the BCryptSetProperty function can no longer be used for this key.

Syntax

NTSTATUS BCryptFinalizeKeyPair(
         BCRYPT_KEY_HANDLE hKey,
         ULONG dwFlags
)  

Parameters

hKey
Type: BCRYPT_KEY_HANDLE 

[in, out] The handle of the key to complete. This handle is obtained by calling the BCryptGenerateKeyPair function.

dwFlags
Type: ULONG 

[in] A set of flags that modify the behavior of this function. No flags are currently defined, so this parameter should be zero.

Return value

Type: NTSTATUS 

Returns a status code that indicates the success or failure of the function.

Return codes

Possible return codes include, but are not limited to, the following.

Return code Description
STATUS_SUCCESS The function was successful.
STATUS_INVALID_HANDLE The key handle in the hKey parameter is not valid.
STATUS_INVALID_PARAMETER One or more parameters are not valid.
STATUS_NOT_SUPPORTED The specified provider does not support asymmetric key encryption.

Remarks

Depending on what processor modes a provider supports, BCryptFinalizeKeyPair can be called either from user mode or kernel mode. Kernel mode callers can execute either at PASSIVE_LEVELIRQL or DISPATCH_LEVEL IRQL. If the current IRQL level is DISPATCH_LEVEL, the handle provided in the hKey parameter must be derived from an algorithm handle returned by a provider that was opened with the BCRYPT_PROV_DISPATCH flag.

Requirements

Header: Declared in bcrypt.h.

Library: Use bcrypt.lib.