2015-10-07 108 views
0

我得到的错误在gradle测试代码。此行代码生成异常:account.setAccountNumber(encryptor.encrypt(“999999999”))。错误:导致:java.security.InvalidKeyException在AccountLookupSpec.groovy

这个帖子可能涉及:

What is the correct way to configure a spring TextEncryptor for use on Heroku

com.distributedfinance.mbi.bai.lookup.AccountLookupSpec > constructor missing encryptor FAILED 
19:05:00.431 [DEBUG] [TestEventLogger]  java.lang.IllegalArgumentException: Unable to initialize due to invalid secret key 
19:05:00.431 [DEBUG] [TestEventLogger]   at org.springframework.security.crypto.encrypt.CipherUtils.initCipher(CipherUtils.java:110) 
19:05:00.431 [DEBUG] [TestEventLogger]   at org.springframework.security.crypto.encrypt.AesBytesEncryptor.encrypt(AesBytesEncryptor.java:65) 
19:05:00.431 [DEBUG] [TestEventLogger]   at org.springframework.security.crypto.encrypt.HexEncodingTextEncryptor.encrypt(HexEncodingTextEncryptor.java:36) 
19:05:00.431 [DEBUG] [TestEventLogger]   at com.distributedfinance.mbi.bai.lookup.AccountLookupSpec.setup(AccountLookupSpec.groovy:26) 
19:05:00.431 [DEBUG] [TestEventLogger] 
19:05:00.431 [DEBUG] [TestEventLogger]   Caused by: 
19:05:00.431 [DEBUG] [TestEventLogger]   java.security.InvalidKeyException: Illegal key size 
19:05:00.431 [DEBUG] [TestEventLogger]    at javax.crypto.Cipher.checkCryptoPerm(Cipher.java:1034) 
19:05:00.431 [DEBUG] [TestEventLogger]    at javax.crypto.Cipher.implInit(Cipher.java:800) 
19:05:00.431 [DEBUG] [TestEventLogger]    at javax.crypto.Cipher.chooseProvider(Cipher.java:859) 
19:05:00.432 [DEBUG] [TestEventLogger]    at javax.crypto.Cipher.init(Cipher.java:1370) 
19:05:00.432 [DEBUG] [TestEventLogger]    at javax.crypto.Cipher.init(Cipher.java:1301) 
19:05:00.432 [DEBUG] [TestEventLogger]    at org.springframework.security.crypto.encrypt.CipherUtils.initCipher(CipherUtils.java:105) 
19:05:00.432 [DEBUG] [TestEventLogger]    ... 3 more 

我在的IntelliJ IDEA

$ gradle -version 

------------------------------------------------------------ 
Gradle 2.3-20141027185330+0000 
------------------------------------------------------------ 

Build time: 2014-10-27 18:53:30 UTC 
Build number: none 
Revision:  f8200ecfed690fe7e2183d60a2afa85069678fa3 

Groovy:  2.3.6 
Ant:   Apache Ant(TM) version 1.9.3 compiled on December 23 2013 
JVM:   1.8.0_05 (Oracle Corporation 25.5-b02) 
OS:   Mac OS X 10.11 x86_64 

$ gradle clean build 

运行Java 1.8 ...

:测试

com.distributedfinance.mbi.bai.lookup.AccountLookupSpec > constructor missing encryptor                  FAILED 
    java.lang.IllegalArgumentException at AccountLookupSpec.groovy:26 
     Caused by: java.security.InvalidKeyException at AccountLookupSpec.groovy:26 

唯一的例外是在Groovy代码:

AccountLookup accountLookup 
    List<Account> accounts 
    AccountRepository accountRepository 
    TextEncryptor encryptor 

    def setup() { 
     accountRepository = Mock() 

encryptor = Encryptors.text("password", "blahblahbla") 
***account.setAccountNumber(encryptor.encrypt("999999999"))*** 

...

def "constructor missing encryptor"() { 
     when: 
     new AccountLookup(null, accountRepository) 

     then: 
     IllegalArgumentException e = thrown() 
     e.getMessage() == "Encryptor is null" 
    } 

我试图通过在Groovy代码(设置断点在 '连接' 从IntelliJ IDEA的调试这一点,也“听”模式):

enter image description here

enter image description here

enter image description here

$ export GRADLE_OPTS="-Xdebug -Xrunjdwp:transport=dt_socket,server=y,suspend=y,address=5005" 
$ gradle build 
Listening for transport dt_socket at address: 5005 

但我从来没有达到我的断点。

任何想法?

+0

如果您列出了Spring标签,您可能会省下一些努力。以前从未见过TextEncryptor。 – billjamesdev

回答

0

看起来你的盐不好,除非这只是一个坏例子?

从文档:https://docs.spring.io/spring-security/site/docs/3.2.0.RELEASE/apidocs/org/springframework/security/crypto/encrypt/Encryptors.html

的第二arg是“盐”,其被定义为: 盐 - 一个十六进制编码的,随机的,现场全局盐值用来生成密钥

你的是“blahblahbla”...这是不是十六进制编码。

+0

我改变了第二个参数(例如 - salt)为“blahblahbla”,因为我不想把真正的十六进制值放在Stack Overflow中。 – dbl001

+0

在真正的groovy代码中,有一个真正的十六进制值。这是否意味着它不好?它应该如何生成? – dbl001

+0

第二个参数(例如 - 'salt')是否与特定的SSH证书相对应? – dbl001