加载RSA公钥错误DerInputStream.getLength():lengthTag = 109,太大

时间:2019-12-04 07:52:09

标签: java spring-boot file base64 rsa

我需要加密JSON数据,以便使用公共RSA密钥在http正文中发送它,我加载了公共RSA密钥文件(.der),并且工作正常。

客户端向我发送了一个公共RSA密钥文件(.bin)。因此,当我运行程序时,出现此错误

Caused by: java.security.InvalidKeyException: IOException: DerInputStream.getLength(): lengthTag=109, too big.
    at sun.security.x509.X509Key.decode(X509Key.java:380) ~[na:1.6.0_45]
    at sun.security.x509.X509Key.decode(X509Key.java:386) ~[na:1.6.0_45]
    at sun.security.rsa.RSAPublicKeyImpl.<init>(RSAPublicKeyImpl.java:66) ~[na:1.6.0_45

我的PublicKeyReader类:

public class PublicKeyReader {

  public static PublicKey getpublicKey(String filename)
    throws Exception {

      File file = new File(filename);
      FileInputStream fis = new FileInputStream(filename);
      DataInputStream dis = new DataInputStream(fis);
      byte[] keyBytes = new byte[(int) file.length()];
      dis.readFully(keyBytes);
      dis.close();


    X509EncodedKeySpec spec =
      new X509EncodedKeySpec(keyBytes);
    KeyFactory kf = KeyFactory.getInstance("RSA");

    return kf.generatePublic(spec);
  }
}

我的主类中的加密部分是:

    // Encrypt Data with AES
        byte[] keyData = random.generateSeed(16);
        SecretKey skeySpec = new SecretKeySpec(keyData, "AES");
        Cipher aes = Cipher.getInstance("AES/CBC/PKCS5Padding");
        byte[] ivParams = new byte[aes.getBlockSize()];
        IvParameterSpec iv = new IvParameterSpec(ivParams);
        aes.init(Cipher.ENCRYPT_MODE, skeySpec, iv);

        // Lecture du certificat (cle publique RSA)
        PublicKey clePublique = PublicKeyReader.getpublicKey("./src/main/resources/publique.bin");
        //String clePublique1 = Base64.encodeBase64String(clePublique.getEncoded()).replaceAll(
        //      "(\\r|\\n)", "");
        Cipher cipher = Cipher.getInstance("RSA");
        cipher.init(Cipher.WRAP_MODE, clePublique);
        byte[] wrappedKey = cipher.wrap(skeySpec);

        // encodedToken : Mot de passe symétrique crypté avec le certificat
        // public (RSA) mis à la disposition de la banque par BAM
        String encodedToken = Base64.encodeBase64String(wrappedKey).replaceAll(
                "(\\r|\\n)", "");
        ;

1 个答案:

答案 0 :(得分:0)

经过几番研究,我找到了答案以及我弄乱的代码部分。

在PublicReaderKey类中,我更改了读取RSA公钥的方式

具有这部分代码:

 public static PublicKey getpublicKey(String filename)
    throws Exception {

      InputStream in = new FileInputStream(filename);
        ObjectInputStream oin = new ObjectInputStream(new BufferedInputStream(
                in));
        try {
            BigInteger m = (BigInteger) oin.readObject();
            BigInteger e = (BigInteger) oin.readObject();
            KeyFactory fact = KeyFactory.getInstance("RSA");
                return fact.generatePublic(new RSAPublicKeySpec(m, e));

        } catch (Exception e) {
            throw new RuntimeException("Erreur de sérialisation parasite", e);
        } finally {
            oin.close();
            System.out.println("Fermeture de lecture fichier .");
        }

  }
}