将C#加密转换为Java

jla*_*s62 4 c# java encryption aes rijndael

我的任务是将C#加密方法转换为Java并且卡住了.我知道C#代码可以工作,但是我无法让我的Java代码工作.

这是C#代码:

private const int Nb = 4; // Legal values:  4 = 128-bit blocks

public static void Decrypt(byte[] input, Stream output)
    { 
        var s1 = new MemoryStream(input);
        const int BufferSize = 1024;
        byte[] buffer = new byte[BufferSize];

        input.Read(buffer, 0, 4);
        int pad = buffer[3];

        RijndaelManaged rijndael = new RijndaelManaged();
        rijndael.BlockSize = Nb * 32;
        rijndael.KeySize = buffer[1] * 32;

        rijndael.Mode = CipherMode.ECB;
        rijndael.Padding = PaddingMode.None;

        byte[] key = GetKey(buffer[1]);
        ICryptoTransform decryptor = rijndael.CreateDecryptor(key, GetIV());

        int bytes;
        while ((bytes = input.Read(buffer, 0, BufferSize)) > 0)
        {
            for (int i = 0; i < bytes; i += rijndael.BlockSize)
            {
                decryptor.TransformBlock(buffer, i, rijndael.BlockSize, buffer, i);
            }
            output.Write(buffer, 0, bytes);
        }
        output.SetLength(output.Length - pad - 4);
    }
Run Code Online (Sandbox Code Playgroud)

这是我到目前为止在Java中的尝试:

public static String decrypt(byte[] input) throws Exception {
    Cipher cipher = Cipher.getInstance("AES/ECB/NoPadding");
    byte[] key = getKey(input[1]);
    SecretKey secretKey = new SecretKeySpec(key, 0, key.length, "AES/ECB/NoPadding");
    cipher.init(Cipher.DECRYPT_MODE, secretKey, new IvParameterSpec(getIV()));
    // remove first 4 since C# code reads past those
    byte[] finalDecoded = Arrays.copyOfRange(input, 4, input.length);
    byte[] decryptedVal = cipher.doFinal(finalDecoded);
    return new String(decryptedVal);
}
Run Code Online (Sandbox Code Playgroud)

更多信息

  • 对于GetIVGetKey,我可以保证java中的结果是相同的(我比较了每个字节),但我不包括那些方法,因为我认为这是敏感信息.我还可以保证输入字节[]是相同的并且(冗余地)相同的长度.

  • 调试尝试: Java中的当前错误是ECB mode cannot use IV.

    • 当我删除此代码时:new IvParameterSpec(getIV())我收到此错误:Wrong algorithm: AES or Rijndael required
    • 如果我将算法更改为仅AES或仅Rijndael我得到此错误:Input length must be multiple of 16 when decrypting with padded cipher.输入长度起动是424420读取过去/卸下第一个4个字节之后.我已经验证了Java和C#的输入字节是相同的.

我在Java代码中哪里出错了?

Sab*_*bre 6

您收到错误ECB mode cannot use IV是因为ECB不执行链接,因此IV无意义.不同之处是Java会抛出错误而C#只会忽略IV.

当我删除此代码时:new IvParameterSpec(getIV())我收到此错误:Wrong algorithm:AES or Rijndaelrequired

如果我将算法更改为仅AES或仅Rijndael我得到此错误: Input length must be multiple of 16 when decrypting withpadded cipher.

你有正确的想法,但你走得太远了.此错误仅与SecretKeySpec处理模式有关,而与算法无关.Cipher是指定模式的位置.此外,Rijndael和AES并不完全相同.

首先,将前几行更改为:

Cipher cipher = Cipher.getInstance("Rijndael/ECB/NoPadding");
byte[] key = getKey(input[1]);
SecretKey secretKey = new SecretKeySpec(key, 0, key.length, "Rijndael");
cipher.init(Cipher.DECRYPT_MODE, secretKey);
Run Code Online (Sandbox Code Playgroud)

请注意,由于您使用的是整个key,因此不需要offset和length参数,因此您可以这样做

SecretKey secretKey = new SecretKeySpec(key, "Rijndael");
Run Code Online (Sandbox Code Playgroud)

原始的C#代码有一些不那么明显的行为:

while ((bytes = input.Read(buffer, 0, BufferSize)) > 0)
{
    for (int i = 0; i < bytes; i += rijndael.BlockSize)
    {
        decryptor.TransformBlock(buffer, i, rijndael.BlockSize, buffer, i);
    }
    output.Write(buffer, 0, bytes);
}
Run Code Online (Sandbox Code Playgroud)

当循环到达结束时input,它将复制,但是留下了很多buffer.除非最后一个Read恰好是1024个字节,否则在输入结束后,前一个循环(或初始化,如果它input通过一次Read操作获得整数)将有残留.

内循环一次解密一个16字节的块.对于420字节的示例,最后一个块将包含剩余的4个字节的输入和12个字节的垃圾.但它没关系,因为output.Write只能写入bytes截断垃圾的字节数.您必须在Java代码中复制此行为.


旁注:你绝对必须使用ECB吗?它不是很安全......