繁体   English   中英

Java AES/GCM/NoPadding 加密因特殊字符而失败

[英]Java AES/GCM/NoPadding encryption fails with special characters

我遵循了一些示例,并且在尝试实现此处引用的AES/GCM/NoPadding时: https://www.strongauth.com/samplecode/GCM.java我无法加密任何包含特殊字符的文本(即ø ) .

最终它在 doFinal 内部失败并出现javax.crypto.ShortBufferException: Output buffer must be (at least) 30 bytes long ,但似乎我一定做错了什么。 我错过了什么?

简单的 POC:

public class Example {

    private static final String CIPHER_TRANSFORM = "AES/GCM/NoPadding";

    public static void main(String[] args) {

        String key = generateKey("AES", 256, "seed");
        encryptText("text containing a ø character", key, "TOKENTOKENTOKENTOKEN", "AES");
    }

    private static String generateKey(String alg, int size, String seed) {

        try {
            SecureRandom securerandom = SecureRandom.getInstance("SHA1PRNG");
            securerandom.setSeed(seed.getBytes("UTF-8"));
            KeyGenerator kg = KeyGenerator.getInstance(alg);
            kg.init(size, securerandom);
            SecretKey sk = kg.generateKey();
            return new String(Base64.getEncoder().encode(sk.getEncoded()), "UTF-8");
        }
        catch (UnsupportedEncodingException | NoSuchAlgorithmException ex) {
            System.err.println(ex);
        }
        return null;
    }

    private static String encryptText(String PLAINTEXT, String PLAINTEXTKEY, String TOKEN, String alg) {

        try {
            // Create SecretKey & Cipher
            SecretKeySpec sks = new SecretKeySpec(Base64.getDecoder().decode(PLAINTEXTKEY), alg);
            Cipher cipher = Cipher.getInstance(CIPHER_TRANSFORM);

            // Setup byte arrays
            byte[] input = PLAINTEXT.getBytes("UTF-8");
            byte[] tkb = TOKEN.getBytes("UTF-8");
            byte[] iv = new byte[12];
            System.arraycopy(tkb, 4, iv, 0, 12);
            cipher.init(Cipher.ENCRYPT_MODE, sks, new GCMParameterSpec(128, iv));
            cipher.updateAAD(tkb);
            byte[] opbytes = new byte[cipher.getOutputSize(PLAINTEXT.length())];

            // Perform crypto
            int ctlen = cipher.update(input, 0, input.length, opbytes);
            ctlen += cipher.doFinal(opbytes, ctlen);
            byte[] output = new byte[ctlen];
            System.arraycopy(opbytes, 0, output, 0, ctlen);
            return new String(Base64.getEncoder().encode(output), "UTF-8");

        }
        catch (InvalidAlgorithmParameterException | UnsupportedEncodingException |
            IllegalBlockSizeException | BadPaddingException | InvalidKeyException |
            NoSuchAlgorithmException | NoSuchPaddingException | ShortBufferException ex) {
            System.err.println(ex);
        }
        return null;
    }
}

你的问题是这一行:

byte[] opbytes = new byte[cipher.getOutputSize(PLAINTEXT.length())];

UTF-8 符文中的字符串长度并不总是与底层字节数组的长度相同。 您应该在这里使用input的长度,而不是PLAINTEXT

暂无
暂无

声明:本站的技术帖子网页,遵循CC BY-SA 4.0协议,如果您需要转载,请注明本站网址或者原文地址。任何问题请咨询:yoyou2525@163.com.

 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM