RSA.cs 7.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250
  1. using Masuit.Tools.Systems;
  2. using System;
  3. using System.Security.Cryptography;
  4. using System.Text;
  5. namespace Masuit.Tools.Security
  6. {
  7. /// <summary>
  8. /// RSA操作类
  9. /// </summary>
  10. public class RSA
  11. {
  12. /// <summary>
  13. /// 导出XML格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  14. /// </summary>
  15. public string ToXML(bool convertToPublic = false)
  16. {
  17. return RSAObject.ToXmlString(!RSAObject.PublicOnly && !convertToPublic);
  18. }
  19. /// <summary>
  20. /// 导出PEM PKCS#1格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  21. /// </summary>
  22. public string ToPEM_PKCS1(bool convertToPublic = false)
  23. {
  24. return new RsaPem(RSAObject).ToPEM(convertToPublic, false);
  25. }
  26. /// <summary>
  27. /// 导出PEM PKCS#8格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  28. /// </summary>
  29. public string ToPEM_PKCS8(bool convertToPublic = false)
  30. {
  31. return new RsaPem(RSAObject).ToPEM(convertToPublic, true);
  32. }
  33. /// <summary>
  34. /// 将密钥对导出成PEM对象,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  35. /// </summary>
  36. public RsaPem ToPEM(bool convertToPublic = false)
  37. {
  38. return new RsaPem(RSAObject, convertToPublic);
  39. }
  40. /// <summary>
  41. /// 加密字符串(utf-8),出错抛异常
  42. /// </summary>
  43. public string Encrypt(string str)
  44. {
  45. return Convert.ToBase64String(Encrypt(Encoding.UTF8.GetBytes(str)));
  46. }
  47. /// <summary>
  48. /// 加密数据,出错抛异常
  49. /// </summary>
  50. public byte[] Encrypt(byte[] data)
  51. {
  52. int blockLen = RSAObject.KeySize / 8 - 11;
  53. if (data.Length <= blockLen)
  54. {
  55. return RSAObject.Encrypt(data, false);
  56. }
  57. using var dataStream = new PooledMemoryStream(data);
  58. using var enStream = new PooledMemoryStream();
  59. var buffer = new byte[blockLen];
  60. int len = dataStream.Read(buffer, 0, blockLen);
  61. while (len > 0)
  62. {
  63. var block = new byte[len];
  64. Array.Copy(buffer, 0, block, 0, len);
  65. var enBlock = RSAObject.Encrypt(block, false);
  66. enStream.Write(enBlock, 0, enBlock.Length);
  67. len = dataStream.Read(buffer, 0, blockLen);
  68. }
  69. return enStream.ToArray();
  70. }
  71. /// <summary>
  72. /// 解密字符串(utf-8),解密异常返回null
  73. /// </summary>
  74. public string DecryptOrNull(string str)
  75. {
  76. if (string.IsNullOrEmpty(str))
  77. {
  78. return null;
  79. }
  80. byte[] byts = null;
  81. try
  82. {
  83. byts = Convert.FromBase64String(str);
  84. }
  85. catch
  86. {
  87. }
  88. if (byts == null)
  89. {
  90. return null;
  91. }
  92. var val = DecryptOrNull(byts);
  93. return val == null ? null : Encoding.UTF8.GetString(val);
  94. }
  95. /// <summary>
  96. /// 解密数据,解密异常返回null
  97. /// </summary>
  98. public byte[] DecryptOrNull(byte[] data)
  99. {
  100. try
  101. {
  102. int blockLen = RSAObject.KeySize / 8;
  103. if (data.Length <= blockLen)
  104. {
  105. return RSAObject.Decrypt(data, false);
  106. }
  107. using var dataStream = new PooledMemoryStream(data);
  108. using var deStream = new PooledMemoryStream();
  109. byte[] buffer = new byte[blockLen];
  110. int len = dataStream.Read(buffer, 0, blockLen);
  111. while (len > 0)
  112. {
  113. var block = new byte[len];
  114. Array.Copy(buffer, 0, block, 0, len);
  115. var deBlock = RSAObject.Decrypt(block, false);
  116. deStream.Write(deBlock, 0, deBlock.Length);
  117. len = dataStream.Read(buffer, 0, blockLen);
  118. }
  119. return deStream.ToArray();
  120. }
  121. catch
  122. {
  123. return null;
  124. }
  125. }
  126. /// <summary>
  127. /// 对str进行签名,并指定hash算法(如:SHA256)
  128. /// </summary>
  129. public string Sign(string hash, string str)
  130. {
  131. return Convert.ToBase64String(Sign(hash, Encoding.UTF8.GetBytes(str)));
  132. }
  133. /// <summary>
  134. /// 对data进行签名,并指定hash算法(如:SHA256)
  135. /// </summary>
  136. public byte[] Sign(string hash, byte[] data)
  137. {
  138. return RSAObject.SignData(data, hash);
  139. }
  140. /// <summary>
  141. /// 验证字符串str的签名是否是sgin,并指定hash算法(如:SHA256)
  142. /// </summary>
  143. public bool Verify(string hash, string sgin, string str)
  144. {
  145. byte[] byts = null;
  146. try
  147. {
  148. byts = Convert.FromBase64String(sgin);
  149. }
  150. catch
  151. {
  152. }
  153. return byts != null && Verify(hash, byts, Encoding.UTF8.GetBytes(str));
  154. }
  155. /// <summary>
  156. /// 验证data的签名是否是sgin,并指定hash算法(如:SHA256)
  157. /// </summary>
  158. public bool Verify(string hash, byte[] sgin, byte[] data)
  159. {
  160. try
  161. {
  162. return RSAObject.VerifyData(data, hash, sgin);
  163. }
  164. catch
  165. {
  166. return false;
  167. }
  168. }
  169. /// <summary>
  170. /// 最底层的RSACryptoServiceProvider对象
  171. /// </summary>
  172. public RSACryptoServiceProvider RSAObject { get; }
  173. /// <summary>
  174. /// 密钥位数
  175. /// </summary>
  176. public int KeySize => RSAObject.KeySize;
  177. /// <summary>
  178. /// 是否包含私钥
  179. /// </summary>
  180. public bool HasPrivate => !RSAObject.PublicOnly;
  181. /// <summary>
  182. /// 用指定密钥大小创建一个新的RSA,出错抛异常
  183. /// </summary>
  184. public RSA(int keySize)
  185. {
  186. //var rsaParams = new CspParameters()
  187. //{
  188. // Flags = CspProviderFlags.UseMachineKeyStore
  189. //};
  190. RSAObject = new RSACryptoServiceProvider(keySize);
  191. }
  192. /// <summary>
  193. /// 通过公钥或私钥创建RSA,出错抛异常
  194. /// </summary>
  195. public RSA(string key)
  196. {
  197. if (!key.StartsWith("<"))
  198. {
  199. RSAObject = RsaPem.FromPEM(key).GetRSA();
  200. }
  201. else
  202. {
  203. //var rsaParams = new CspParameters
  204. //{
  205. // Flags = CspProviderFlags.UseMachineKeyStore
  206. //};
  207. RSAObject = new RSACryptoServiceProvider();
  208. RSAObject.FromXmlString(key);
  209. }
  210. }
  211. /// <summary>
  212. /// 通过一个pem对象创建RSA,pem为公钥或私钥,出错抛异常
  213. /// </summary>
  214. public RSA(RsaPem pem)
  215. {
  216. RSAObject = pem.GetRSA();
  217. }
  218. }
  219. }