GAE中的AES-256实现

时间:2012-10-11 06:53:21

标签: java google-app-engine cryptography aes

256 但它似乎没有在GAE中工作。我已经下载了“Java Cryptography Extension(JCE)Unlimited Strength Jurisdiction Policy Files”和local_policy.jar,US_export_policy.jar存在于C:\ Program Files \ Java \ jdk1.6.0_29中\ jre \ lib \安全位置。

这是代码:

import java.security.spec.KeySpec;
import org.apache.commons.codec.binary.Base64;
import org.apache.commons.*;

import javax.crypto.Cipher;
import javax.crypto.SecretKey;
import javax.crypto.SecretKeyFactory;
import javax.crypto.spec.IvParameterSpec;
import javax.crypto.spec.PBEKeySpec;
import javax.crypto.spec.SecretKeySpec;

public class AESEncrypter {

private static final byte[] SALT = {
    (byte) 0xA9, (byte) 0x9B, (byte) 0xC8, (byte) 0x32,
    (byte) 0x56, (byte) 0x35, (byte) 0xE3, (byte) 0x03
};
private static final int ITERATION_COUNT = 65536;
private static final int KEY_LENGTH = 256;
private Cipher ecipher;
private Cipher dcipher;

AESEncrypter(String passPhrase) throws Exception {
    SecretKeyFactory factory = SecretKeyFactory.getInstance("PBKDF2WithHmacSHA1");
    KeySpec spec = new PBEKeySpec(passPhrase.toCharArray(), SALT, ITERATION_COUNT, KEY_LENGTH);
    SecretKey tmp = factory.generateSecret(spec);
    SecretKey secret = new SecretKeySpec(tmp.getEncoded(), "AES");

    ecipher = Cipher.getInstance("AES/CBC/PKCS5Padding");
    ecipher.init(Cipher.ENCRYPT_MODE, secret);

    dcipher = Cipher.getInstance("AES/CBC/PKCS5Padding");
    byte[] iv = ecipher.getParameters().getParameterSpec(IvParameterSpec.class).getIV();
    dcipher.init(Cipher.DECRYPT_MODE, secret, new IvParameterSpec(iv));
}

public String encrypt(String encrypt) throws Exception {
    byte[] bytes = encrypt.getBytes("UTF8");
    byte[] encrypted = encrypt(bytes);
    return new Base64().encodeBase64String(encrypted);
}

public byte[] encrypt(byte[] plain) throws Exception {
    return ecipher.doFinal(plain);
}

public String decrypt(String encrypt) throws Exception {
    byte[] bytes = new Base64().decodeBase64(encrypt);
    byte[] decrypted = decrypt(bytes);
    return new String(decrypted, "UTF8");
}

public byte[] decrypt(byte[] encrypt) throws Exception {
    return dcipher.doFinal(encrypt);
}

public static void main(String[] args) throws Exception {

    String message = "MESSAGE";
    String password = "PASSWORD";

    AESEncrypter encrypter = new AESEncrypter(password);
    String encrypted = encrypter.encrypt(message);
    String decrypted = encrypter.decrypt(encrypted);

    System.out.println("Encrypt(\"" + message + "\", \"" + password + "\") = \"" + encrypted + "\"");
    System.out.println("Decrypt(\"" + encrypted + "\", \"" + password + "\") = \"" + decrypted + "\"");
}

}

任何帮助将不胜感激 谢谢!

1 个答案:

答案 0 :(得分:1)

您的例外肯定是由于缺少无限强度的管辖权文件造成的。

您已声明这些已下载并存储在Java 6 JDK中。我确保您也将副本存储在JRE安装的lib/security文件夹中(如果有的话)。

确保在执行应用程序时确切知道调用了哪个java命令。