2016-06-14 159 views
3

我知道有相当多的讨论围绕计算器关于PHP的Java AES CBC加密的,但它们都没有解决我的问题使用PHP来获得相同的AES-128-CBC加密,Java并

这里是用java功能:

public static String encrypt(String input, String key){ 
    byte[] crypted = null; 

    SecretKeySpec skey = new SecretKeySpec(getHash("MD5", key), "AES"); 
    IvParameterSpec iv = new IvParameterSpec(new byte[] { 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0 }); 
    Cipher cipher = Cipher.getInstance("AES/CBC/PKCS5Padding"); 
    cipher.init(Cipher.ENCRYPT_MODE, skey, iv); 
    crypted = cipher.doFinal(input.getBytes()); 
    return new String(Base64.encodeBase64(crypted)); 
} 

private static byte[] getHash(String algorithm, String text) { 
    try { 
     byte[] bytes = text.getBytes("UTF-8"); 
     final MessageDigest digest = MessageDigest.getInstance(algorithm); 
     digest.update(bytes); 
     return digest.digest(); 
    } catch (final Exception ex) { 
     throw new RuntimeException(ex.getMessage()); 
    } 
} 

以下是我在PHP

所做
public static function encrypt($input, $key) { 

    $key = hash('md5', $key, true); 
    $iv = '0000000000000000'; 
    return openssl_encrypt($input, 'aes-128-cbc', $key, 0, $iv); 
} 

让我们看看结果

key:"790757e76c8942f995675b247aa57c2a" 
input:"1234" 

result in java:UfczMtIAm8ewSuIGRdPTDQ== 
result in PHP:wd/OTHoIXwgHGDHcj8OTgg==  

在PHP中,我也有使用其他方法,如mcrypt_encryptmcrypt_generic与PKCS5填充(见代码的打击),所有的人都可以得到相同的加密为openssl_encrypt做了,但还是不一样的Java函数结果

public static function encrypt($input, $key) { 

    $key = hash('md5', $key, true); 


    $iv = '0000000000000000'; 

    $size = mcrypt_get_block_size(MCRYPT_RIJNDAEL_128, MCRYPT_MODE_CBC); 
    $input = Security::pkcs5_pad($input, $size); 


    $encrypted = mcrypt_encrypt(MCRYPT_RIJNDAEL_128, $key, $input, MCRYPT_MODE_CBC, $iv); 

    // output wd/OTHoIXwgHGDHcj8OTgg== 
    echo base64_encode($encrypted); 

    $td = mcrypt_module_open(MCRYPT_RIJNDAEL_128, '', MCRYPT_MODE_CBC, ''); 

    mcrypt_generic_init($td, $key, $iv); 
    $data = mcrypt_generic($td, $input); 
    mcrypt_generic_deinit($td); 
    mcrypt_module_close($td); 
    $data = base64_encode($data); 

    // output wd/OTHoIXwgHGDHcj8OTgg== 
    echo $data; 
} 

private static function pkcs5_pad ($text, $blocksize) { 
    $pad = $blocksize - (strlen($text) % $blocksize); 
    return $text . str_repeat(chr($pad), $pad); 
} 

我有通知,如果我更改加密方法从CBC到欧洲央行的另一种奇怪的东西,Java和PHP的加密功能是一样的,但可悲的是访问第三方API,我都用CBC

+0

你如何确保他们有相同的填充? – Rahul

+0

@Rahul我使用PKCS#5 –

回答

2

终于搞清楚了

$iv = '0000000000000000'; 

$iv = str_repeat(chr(0), 16); 

取代它,我从别的地方复制它,以为'0000000000000000'等于IvParameterSpec(new byte[] { 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0 }),那是完全错误的..

相关问题