標籤:
本文採取128位AES-CBC模式加密和解密
1.首先對服務端安裝mcrypt:
sudo apt-get install php5-mcrypt php5-dev
sudo php5enmod mcrypt
sudo service apache2 restart
2.PHP服務端AES加密類代碼
class MCrypt { private $iv = ‘fedcba9876543210‘; //初始化向量iv public $key;//AES加密的密鑰key//將密鑰$key傳進本類 function __construct($key) {$this->key=$key; }//加密 function encrypt($str) { //$key = $this->hex2bin($key); $iv = $this->iv; $td = mcrypt_module_open(‘rijndael-128‘, ‘‘, ‘cbc‘, $iv); mcrypt_generic_init($td, $this->key, $iv); $encrypted = mcrypt_generic($td, $str); \OCP\Util::writeLog(‘***MCrypt $key***‘, $this->key, \OCP\Util::ERROR); mcrypt_generic_deinit($td); mcrypt_module_close($td); return bin2hex($encrypted); }//解密 function decrypt($code) { //$key = $this->hex2bin($key); $code = $this->hex2bin($code); $iv = $this->iv; $td = mcrypt_module_open(‘rijndael-128‘, ‘‘, ‘cbc‘, $iv); mcrypt_generic_init($td, $this->key, $iv); $decrypted = mdecrypt_generic($td, $code); mcrypt_generic_deinit($td); mcrypt_module_close($td); return utf8_encode(trim($decrypted)); } protected function hex2bin($hexdata) { $bindata = ‘‘; for ($i = 0; $i < strlen($hexdata); $i += 2) { $bindata .= chr(hexdec(substr($hexdata, $i, 2))); } return $bindata; } }
4.PHP服務端調用ASE加密類代碼:
$key="";//自己添加AES密鑰//將加密的key傳進AES類$mcrypt = new MCrypt($key);//對資料庫中的密碼進行AES加密$psw = $mcrypt->encrypt();
5.Android服務端AES解密代碼:
在Android中建立一個AESUtil類,需要用時調用
/** * AES解密: * 對伺服器發回來的密碼進行解密 * */import java.io.UnsupportedEncodingException;import java.security.MessageDigest;import java.security.NoSuchAlgorithmException;import javax.crypto.Cipher;import javax.crypto.NoSuchPaddingException;import javax.crypto.spec.IvParameterSpec;import javax.crypto.spec.SecretKeySpec;import com.pcloud.android.ui.activity.FirstAuthenActivity;public class AESUtil { private String iv = "fedcba9876543210";//虛擬 iv。和服務端要保持一致 private IvParameterSpec ivspec; private SecretKeySpec keyspec; private Cipher cipher; // private String SecretKey = "";//虛擬 密鑰 String msgToken=FirstAuthenActivity.msgToken; //String msgUrl=FirstAuthenActivity.msgUrl; String msgRandom=FirstAuthenActivity.msgRandom; //把隨機數和tokenid進行MD5操作來作為AES密鑰,和服務端的AES加密金鑰要保持一致 String SecretKey=stringToMD5(msgToken+msgRandom); public AESUtil() { ivspec = new IvParameterSpec(iv.getBytes()); keyspec = new SecretKeySpec(SecretKey.getBytes(), "AES"); try { cipher = Cipher.getInstance("AES/CBC/NoPadding"); } catch (NoSuchAlgorithmException e) { // TODO Auto-generated catch block e.printStackTrace(); } catch (NoSuchPaddingException e) { // TODO Auto-generated catch block e.printStackTrace(); } } public byte[] encrypt(String text) throws Exception { if(text == null || text.length() == 0) throw new Exception("Empty string"); byte[] encrypted = null; try { cipher.init(Cipher.ENCRYPT_MODE, keyspec, ivspec); encrypted = cipher.doFinal(padString(text).getBytes()); } catch (Exception e) { throw new Exception("[encrypt] " + e.getMessage()); } return encrypted; } public byte[] decrypt(String code) throws Exception { if(code == null || code.length() == 0) throw new Exception("Empty string"); byte[] decrypted = null; try { cipher.init(Cipher.DECRYPT_MODE, keyspec, ivspec); decrypted = cipher.doFinal(hexToBytes(code)); } catch (Exception e) { throw new Exception("[decrypt] " + e.getMessage()); } return decrypted; } public static String bytesToHex(byte[] data) { if (data==null) { return null; } int len = data.length; String str = ""; for (int i=0; i<len; i++) { if ((data[i]&0xFF)<16) str = str + "0" + java.lang.Integer.toHexString(data[i]&0xFF); else str = str + java.lang.Integer.toHexString(data[i]&0xFF); } return str; } public static byte[] hexToBytes(String str) { if (str==null) { return null; } else if (str.length() < 2) { return null; } else { int len = str.length() / 2; byte[] buffer = new byte[len]; for (int i=0; i<len; i++) { buffer[i] = (byte) Integer.parseInt(str.substring(i*2,i*2+2),16); } return buffer; } } private static String padString(String source) { char paddingChar = ‘ ‘; int size = 16; int x = source.length() % size; int padLength = size - x; for (int i = 0; i < padLength; i++) { source += paddingChar; } return source; }
6.Android用戶端調用AES類進行解密:
//調用AES解密 AESUtil mcrypt; mcrypt = new AESUtil(); try { //對收到的密碼進行AES解密 String decrypted = new String( mcrypt.decrypt( rec[1]) ); Log.d("解密的:",decrypted); } catch (Exception e) { // TODO 自動產生的 catch 塊 e.printStackTrace(); }
[PHP]AES加密----PHP服務端和Android用戶端