-
Notifications
You must be signed in to change notification settings - Fork 3
/
utils.go
107 lines (96 loc) · 2.42 KB
/
utils.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
package crypto
import (
"bytes"
"crypto/cipher"
"crypto/des"
"crypto/rsa"
"crypto/x509"
"encoding/base64"
"encoding/pem"
"errors"
"fmt"
)
// tripleDesEncrypt 3DES加密
func tripleDesEncrypt(originData, des3key []byte) ([]byte, error) {
block, err := des.NewTripleDESCipher(des3key)
if err != nil {
return nil, err
}
originData = pkcs5Padding(originData, block.BlockSize())
blockMode := cipher.NewCBCEncrypter(block, des3key[:8])
crypt := make([]byte, len(originData)) // nolint
blockMode.CryptBlocks(crypt, originData)
return crypt, nil
}
// tripleDesDecrypt 3DES解密
func tripleDesDecrypt(crypt, des3key []byte) ([]byte, error) {
block, err := des.NewTripleDESCipher(des3key)
if err != nil {
return nil, err
}
blockMode := cipher.NewCBCDecrypter(block, des3key[:8])
originData := make([]byte, len(crypt)) // nolint
blockMode.CryptBlocks(originData, crypt)
originData = pkcs5UnPadding(originData)
return originData, nil
}
// pkcs5Padding 填充
func pkcs5Padding(ciphertext []byte, blockSize int) []byte {
padding := blockSize - len(ciphertext)%blockSize
padtext := bytes.Repeat([]byte{byte(padding)}, padding)
return append(ciphertext, padtext...)
}
// pkcs5UnPadding 取消填充
func pkcs5UnPadding(origData []byte) []byte {
length := len(origData)
// 去掉最后一个字节 unpadding 次
unpadding := int(origData[length-1])
return origData[:(length - unpadding)]
}
// loadPublicKey 加载公钥
func loadPublicKey(data []byte) (pub *rsa.PublicKey, err error) {
block, _ := pem.Decode(data)
if block == nil {
err = fmt.Errorf("decode public key fail")
return
}
publicKey, err := x509.ParsePKIXPublicKey(block.Bytes)
if err != nil {
return
}
pub, ok := publicKey.(*rsa.PublicKey)
if !ok {
err = errors.New("load public key fail")
}
return
}
// loadPrivateKey 加载私钥
func loadPrivateKey(privateKey []byte) (priv *rsa.PrivateKey, err error) {
block, _ := pem.Decode(privateKey)
if block == nil {
err = fmt.Errorf("decode private key fail")
return
}
key, err := x509.ParsePKCS8PrivateKey(block.Bytes)
if err != nil {
return
}
priv, ok := key.(*rsa.PrivateKey)
if !ok {
err = errors.New("load private key fail")
}
return
}
func base64Encode(b []byte) ([]byte, error) {
buf := bytes.Buffer{}
en := base64.NewEncoder(base64.StdEncoding, &buf)
_, err := en.Write(b)
if err != nil {
return nil, err
}
err = en.Close()
if err != nil {
return nil, err
}
return buf.Bytes(), nil
}