昨天韓國總部來人對網站進行了Security Review, 看到很多連結字串我們都沒有加密,批評了一下。
要把之前用的字串加解密程式拿出來用用了,順便共用,希望能協助需要的朋友:
密碼編譯演算法使用3DES,key經過MD5雜湊過,強度應該能滿足一般需要了,代碼很少,很方便:
using System;
using System.Collections.Generic;
using System.Text;
using System.Security.Cryptography;
namespace NOP.Security
{
public class Encrypt
{
public static string DecryptString(string strText, string key)
{
byte[] buffer = new MD5CryptoServiceProvider().ComputeHash(Encoding.ASCII.GetBytes(key));
TripleDESCryptoServiceProvider provider = new TripleDESCryptoServiceProvider();
provider.Key = buffer;
provider.Mode = CipherMode.ECB;
byte[] inputBuffer = Convert.FromBase64String(strText);
return Encoding.ASCII.GetString(provider.CreateDecryptor().TransformFinalBlock(inputBuffer, 0, inputBuffer.Length));
}
public static string DecryptUTF8String(string strText, string key)
{
byte[] buffer = new MD5CryptoServiceProvider().ComputeHash(Encoding.UTF8.GetBytes(key));
TripleDESCryptoServiceProvider provider = new TripleDESCryptoServiceProvider();
provider.Key = buffer;
provider.Mode = CipherMode.ECB;
byte[] inputBuffer = Convert.FromBase64String(strText);
return Encoding.UTF8.GetString(provider.CreateDecryptor().TransformFinalBlock(inputBuffer, 0, inputBuffer.Length));
}
public static string EncryptString(string strText, string key)
{
byte[] buffer = new MD5CryptoServiceProvider().ComputeHash(Encoding.ASCII.GetBytes(key));
TripleDESCryptoServiceProvider provider = new TripleDESCryptoServiceProvider();
provider.Key = buffer;
provider.Mode = CipherMode.ECB;
byte[] bytes = Encoding.ASCII.GetBytes(strText);
string str = Convert.ToBase64String(provider.CreateEncryptor().TransformFinalBlock(bytes, 0, bytes.Length));
provider = null;
return str;
}
public static string EncryptUTF8String(string strText, string key)
{
byte[] buffer = new MD5CryptoServiceProvider().ComputeHash(Encoding.UTF8.GetBytes(key));
TripleDESCryptoServiceProvider provider = new TripleDESCryptoServiceProvider();
provider.Key = buffer;
provider.Mode = CipherMode.ECB;
byte[] bytes = Encoding.UTF8.GetBytes(strText);
string str = Convert.ToBase64String(provider.CreateEncryptor().TransformFinalBlock(bytes, 0, bytes.Length));
provider = null;
return str;
}
}
}