gpt4 book ai didi

安卓 8.0 : IllegalBlocksizeException when using RSA/ECB/OAEPWithSHA-512AndMGF1Padding

转载 作者:塔克拉玛干 更新时间:2023-11-02 08:29:12 27 4
gpt4 key购买 nike

我通常会在这里找到大部分问题的答案,但这次我需要问 :-)。

我们在 Android 8.0(API 级别 26)上运行的一个应用程序中遇到了 RSA 加密/解密问题。

我们一直在将 RSA 与“RSA/ECB/OAEPWithSHA-256AndMGF1Padding”一起使用,它在 Android 7.1 之前的所有版本上都能正常工作。在 Android 8.0 上运行的相同代码在调用 Cipher.doFinal() 时抛出 IllegalBlocksizeException。

这里是重现问题的代码:

private KeyStore mKeyStore;

private static final String KEY_ALIAS = "MyKey";
void testEncryption() throws NoSuchProviderException, NoSuchAlgorithmException, InvalidAlgorithmParameterException, KeyStoreException, IOException, CertificateException, BadPaddingException, IllegalBlockSizeException, InvalidKeyException, UnrecoverableEntryException, NoSuchPaddingException {

mKeyStore = KeyStore.getInstance("AndroidKeyStore");
mKeyStore.load(null);

// Generate Key Pair -------------------------------------
KeyPairGenerator kpg = KeyPairGenerator.getInstance(KeyProperties.KEY_ALGORITHM_RSA, "AndroidKeyStore");
kpg.initialize(new KeyGenParameterSpec.Builder(
KEY_ALIAS,
KeyProperties.PURPOSE_ENCRYPT | KeyProperties.PURPOSE_DECRYPT)
.setDigests(KeyProperties.DIGEST_SHA256, KeyProperties.DIGEST_SHA512)
.setEncryptionPaddings(KeyProperties.ENCRYPTION_PADDING_RSA_OAEP)
.setKeySize(2048)
.build());
KeyPair kp = kpg.generateKeyPair();

// Encrypt -----------------------------------------------
KeyStore.PrivateKeyEntry privateKeyEntry = (KeyStore.PrivateKeyEntry)mKeyStore.getEntry(KEY_ALIAS, null);
PublicKey publicKey = (PublicKey) privateKeyEntry.getCertificate().getPublicKey();
Cipher cipher = Cipher.getInstance("RSA/ECB/OAEPWithSHA-256AndMGF1Padding");
cipher.init(Cipher.ENCRYPT_MODE, publicKey);
String x = "It doesn't have to be perfect, it's just for demonstration.";

byte [] vals = cipher.doFinal(x.getBytes("UTF-8"));

byte[] encryptedBytes = Base64.encode(vals, Base64.DEFAULT);
String encryptedText = new String(encryptedBytes, "UTF-8");


// Decrypt -----------------------------------------------
PrivateKey privateKey = privateKeyEntry.getPrivateKey();

Cipher output = Cipher.getInstance("RSA/ECB/OAEPWithSHA-256AndMGF1Padding");
output.init(Cipher.DECRYPT_MODE, privateKey/*, spec */);

byte[] bxx = Base64.decode(encryptedText, Base64.DEFAULT);
byte[] bytes = output.doFinal(bxx); // <= throws IllegalBlocksizeException

String finalText = new String(bytes, 0, bytes.length, "UTF-8");
}

我也尝试了其他填充算法。 “RSA/ECB/OAEPWithSHA-1AndMGF1Padding”工作正常,“RSA/ECB/PKCS1Padding”工作正常。作为一种解决方法,我可以更改填充,但这可能会在从使用“RSA/ECB/OAEPWithSHA-256AndMGF1Padding”的应用程序的先前版本更新时导致问题,因为无法再读取存储的数据。

有没有人遇到同样的问题,也许知道如何在不更改填充的情况下解决它?

提前致谢。

最佳答案

2017 年 9 月 8 日下午 7:08 的评论 #15 中描述了一种可能的解决方案:

https://issuetracker.google.com/issues/36708951#comment15

我更改了密码初始化

Cipher cipher = Cipher.getInstance("RSA/ECB/OAEPWithSHA-256AndMGF1Padding");
cipher.init(Cipher.DECRYPT_MODE, this.getPrivateKey(context));

OAEPParameterSpec sp = new OAEPParameterSpec("SHA-256", "MGF1", new MGF1ParameterSpec("SHA-1"), PSource.PSpecified.DEFAULT);
Cipher cipher = Cipher.getInstance("RSA/ECB/OAEPWithSHA-256AndMGF1Padding");
cipher.init(Cipher.DECRYPT_MODE, this.getPrivateKey(context), sp);

我在 Android 6 到 Android 8(模拟器)上对此进行了测试,问题似乎已经消失。您还应该更改 Cipher.ENCRYPT_MODE-Implementation。

关于安卓 8.0 : IllegalBlocksizeException when using RSA/ECB/OAEPWithSHA-512AndMGF1Padding,我们在Stack Overflow上找到一个类似的问题: https://stackoverflow.com/questions/46042127/

27 4 0
Copyright 2021 - 2024 cfsdn All Rights Reserved 蜀ICP备2022000587号
广告合作:1813099741@qq.com 6ren.com