使用 RSA 公钥在 Openssl 中生成私钥?

Aak*_*ary 6 openssl rsa digital-certificate digital-signature

我知道可以使用此链接为 OpenSSL 中的自签名证书生成公钥和私钥。但是对于给定的公钥,我是否有可能找出相应的私钥?我一直在使用 1024 位 RSA 公钥。

因为我的作业中有这个问题说:

为句子“我的名字是 . 我的声音就是我的护照。” 使用带有以下 1024 位 RSA 公钥的 OpenSSL 进行正确验证。(提示:模数可能不像正常的 RSA 模数那样生成。):

----- BEGIN PUBLIC KEY ----- MIGdMA0GCSqGSIb3DQEBAQUAA4GLADCBhwKBgQCgF35rHhOWi9 + r4n9xM / ejvMEs Q8h6lams962k4U0WSdfySUevhyI1bd3FRIb5fFqSBt6qPTiiiIw0KXte5dANB6lP e6HdUPTA / U4xHWi2FB / BfAyPsOlUBfFp6dtkEEcEKt + Z8KTJYJEerRie24y + nsfZ MnLBst6tsEBfx / U75wIBAw ==

-----结束公钥-----

Rob*_*sen 10

解决方案的关键(双关语)在提示中:

模数可能不像正常的 RSA 模数那样生成。

这是我采取的方法。

第 1 步:导出素数

  1. 我首先把你的文件保存为public.pem.
  2. 为了获得模数 ( n) 和公共指数 ( e) 的值,我运行:
    openssl rsa -pubin -in pub -text -noout
  3. 我将十六进制模数和指数转换为十进制数,这产生了
    n=112420265940019545385580931264662691888876377549063413938338239508058300548918731393322848876821656910452908064089039911552450302375557565600923056341141750687524704844725632296552824986371719004485250857447936962589230504662333990648942759862805127715014382377701044586628936249950092121536791020138692688871
    e=3
  4. 我将该数字插入在线阶乘计算器中,发现用于计算模数的两个素数之一相对较小:
    p=55685342628135644993
    q=2018848419246646476894946094575564515176862561629979956283227393349426117194195173357244644821277073710795134539986018769393928719340504755806449531413017314396784334912136112253736003497362080917517151753555605597776865614151048604681116557282512513238254935296910445878892354969335089447

步骤 2:计算其他所需值

  1. 我计算的欧拉n作为?(n) = (p - 1) * (q - 1)使用Python REPL:
    ?(n)=112420265940019545383562082845416045411981431454487849423161376946428320592635503999973422759627461737095663419267762837841655167835571546831529127621801245931718255313312614982156040651459582892231514853950574881671713352908778385051165894248654079110333265820418532073390681314653181675602213322541221954432
  2. 然后我使用这个答案中的 python 脚本来计算私有指数 ( d) 和系数 ( c),结果如下:
    d=74946843960013030255708055230277363607987620969658566282107584630952213728423669333315615173084974491397108946178508558561103445223714364554352751747867497287812170208875076654770693767639721928154343235967049921114475568605852256700777262832436052740222177213612354715593787543102121117068142215027481302955
    c=1040291110785843997

第 3 步:创建私钥的 ASN.1 结构

然后我使用计算出的值在一个文件中创建一个ASN.1结构,asn本答案所述

asn1=SEQUENCE:rsa_key

[rsa_key]
version=INTEGER:0
modulus=INTEGER:112420265940019545385580931264662691888876377549063413938338239508058300548918731393322848876821656910452908064089039911552450302375557565600923056341141750687524704844725632296552824986371719004485250857447936962589230504662333990648942759862805127715014382377701044586628936249950092121536791020138692688871
pubExp=INTEGER:3
privExp=INTEGER:74946843960013030255708055230277363607987620969658566282107584630952213728423669333315615173084974491397108946178508558561103445223714364554352751747867497287812170208875076654770693767639721928154343235967049921114475568605852256700777262832436052740222177213612354715593787543102121117068142215027481302955
p=INTEGER:55685342628135644993
q=INTEGER:2018848419246646476894946094575564515176862561629979956283227393349426117194195173357244644821277073710795134539986018769393928719340504755806449531413017314396784334912136112253736003497362080917517151753555605597776865614151048604681116557282512513238254935296910445878892354969335089447
e1=INTEGER:37123561752090429995
e2=INTEGER:903312890059631
coeff=INTEGER:1040291110785843997
Run Code Online (Sandbox Code Playgroud)

第 4 步:创建私钥

基于ASN.1结构,我生成私钥如下:

  1. 以 DER 格式创建私钥:
    openssl asn1parse -genconf asn -out private.der
  2. 将私钥转换为 PEM 格式:
    openssl rsa -in private.der -inform der -out private.pem -outform pem

这会导致private.pem创建一个包含以下内容的文件:

-----BEGIN RSA PRIVATE KEY-----
MIIBsAIBAAKBgQCgF35rHhOWi9+r4n9xM/ejvMEsQ8h6lams962k4U0WSdfySUev
hyI1bd3FRIb5fFqSBt6qPTiiiIw0KXte5dANB6lPe6HdUPTA/U4xHWi2FB/BfAyP
sOlUBfFp6dtkEEcEKt+Z8KTJYJEerRie24y+nsfZMnLBst6tsEBfx/U75wIBAwKB
gGq6VEdpYmRdHGzsbmP7vDiYe2zYHLwQ0AKnPKNErq6KQyQC5eEngbgT4WpWl+J2
Xn+R9m0vwNbaiDam0uD3p5192BaN2tdaW5P5JjfGa95ytRBCQ/cr+z03FjG9C6zQ
QZG5eyOoMloHAfnYiJMV5SZarfTiF9BGFvtcfrjhbterAgkDBMoUFjHxL0ECeDUI
f9nbOl1O2AgI/51gfHGo/NKv+kcQenM8RO7dy9+hUAulwqMlyszSq+0GdZdgQL/i
Lz8NclSgyuUtptmaSWtjB5Tdc8boaBApGKac7vB4M1AfTkng1+SplKbkdFlCVg4n
6EvCOrUFFsLp308JSbkv2240Q93JJwIJAgMxYrl2oMorAgcDNY7r7ttvAggOb9tA
6WMDHQ==
-----END RSA PRIVATE KEY-----
Run Code Online (Sandbox Code Playgroud)

第 5 步:验证结果

为了检查创建的私钥(in private.pem)是否与提供的公钥匹配,我刚刚从私钥生成了一个新的公钥:

openssl rsa -in private.pem -pubout
Run Code Online (Sandbox Code Playgroud)

这会产生以下输出:

writing RSA key
-----BEGIN PUBLIC KEY-----
MIGdMA0GCSqGSIb3DQEBAQUAA4GLADCBhwKBgQCgF35rHhOWi9+r4n9xM/ejvMEs
Q8h6lams962k4U0WSdfySUevhyI1bd3FRIb5fFqSBt6qPTiiiIw0KXte5dANB6lP
e6HdUPTA/U4xHWi2FB/BfAyPsOlUBfFp6dtkEEcEKt+Z8KTJYJEerRie24y+nsfZ
MnLBst6tsEBfx/U75wIBAw==
-----END PUBLIC KEY-----
Run Code Online (Sandbox Code Playgroud)

此输出与您提供的公钥完全匹配。