RSA.cs 7.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233
  1. using Masuit.Tools.Systems;
  2. using System;
  3. using System.Security.Cryptography;
  4. using System.Text;
  5. namespace Masuit.Tools.Security
  6. {
  7. /// <summary>
  8. /// RSA操作类
  9. /// </summary>
  10. internal class RSA
  11. {
  12. /// <summary>
  13. /// 导出XML格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  14. /// </summary>
  15. public string ToXML(bool convertToPublic = false)
  16. {
  17. return RSAObject.ToXmlString(!RSAObject.PublicOnly && !convertToPublic);
  18. }
  19. /// <summary>
  20. /// 导出PEM PKCS#1格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  21. /// </summary>
  22. public string ToPEM_PKCS1(bool convertToPublic = false)
  23. {
  24. return new RsaPem(RSAObject).ToPEM(convertToPublic, false);
  25. }
  26. /// <summary>
  27. /// 导出PEM PKCS#8格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  28. /// </summary>
  29. public string ToPEM_PKCS8(bool convertToPublic = false)
  30. {
  31. return new RsaPem(RSAObject).ToPEM(convertToPublic, true);
  32. }
  33. /// <summary>
  34. /// 将密钥对导出成PEM对象,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  35. /// </summary>
  36. public RsaPem ToPEM(bool convertToPublic = false)
  37. {
  38. return new RsaPem(RSAObject, convertToPublic);
  39. }
  40. /// <summary>
  41. /// 加密字符串(utf-8),出错抛异常
  42. /// </summary>
  43. public string Encrypt(string str)
  44. {
  45. return Convert.ToBase64String(Encrypt(Encoding.UTF8.GetBytes(str)));
  46. }
  47. /// <summary>
  48. /// 加密数据,出错抛异常
  49. /// </summary>
  50. public byte[] Encrypt(byte[] data)
  51. {
  52. int blockLen = RSAObject.KeySize / 8 - 11;
  53. if (data.Length <= blockLen)
  54. {
  55. return RSAObject.Encrypt(data, false);
  56. }
  57. using var dataStream = new PooledMemoryStream(data);
  58. using var enStream = new PooledMemoryStream();
  59. var buffer = new byte[blockLen];
  60. int len = dataStream.Read(buffer, 0, blockLen);
  61. while (len > 0)
  62. {
  63. var block = new byte[len];
  64. Array.Copy(buffer, 0, block, 0, len);
  65. var enBlock = RSAObject.Encrypt(block, false);
  66. enStream.Write(enBlock, 0, enBlock.Length);
  67. len = dataStream.Read(buffer, 0, blockLen);
  68. }
  69. return enStream.ToArray();
  70. }
  71. /// <summary>
  72. /// 解密字符串(utf-8),解密异常返回null
  73. /// </summary>
  74. public string DecryptOrNull(string str)
  75. {
  76. if (string.IsNullOrEmpty(str))
  77. {
  78. return null;
  79. }
  80. try
  81. {
  82. var bytes = Convert.FromBase64String(str);
  83. var val = DecryptOrNull(bytes);
  84. return val == null ? null : Encoding.UTF8.GetString(val);
  85. }
  86. catch
  87. {
  88. return null;
  89. }
  90. }
  91. /// <summary>
  92. /// 解密数据,解密异常返回null
  93. /// </summary>
  94. public byte[] DecryptOrNull(byte[] data)
  95. {
  96. try
  97. {
  98. int blockLen = RSAObject.KeySize / 8;
  99. if (data.Length <= blockLen)
  100. {
  101. return RSAObject.Decrypt(data, false);
  102. }
  103. using var dataStream = new PooledMemoryStream(data);
  104. using var deStream = new PooledMemoryStream();
  105. byte[] buffer = new byte[blockLen];
  106. int len = dataStream.Read(buffer, 0, blockLen);
  107. while (len > 0)
  108. {
  109. var block = new byte[len];
  110. Array.Copy(buffer, 0, block, 0, len);
  111. var deBlock = RSAObject.Decrypt(block, false);
  112. deStream.Write(deBlock, 0, deBlock.Length);
  113. len = dataStream.Read(buffer, 0, blockLen);
  114. }
  115. return deStream.ToArray();
  116. }
  117. catch
  118. {
  119. return null;
  120. }
  121. }
  122. /// <summary>
  123. /// 对str进行签名,并指定hash算法(如:SHA256)
  124. /// </summary>
  125. public string Sign(string hash, string str)
  126. {
  127. return Convert.ToBase64String(Sign(hash, Encoding.UTF8.GetBytes(str)));
  128. }
  129. /// <summary>
  130. /// 对data进行签名,并指定hash算法(如:SHA256)
  131. /// </summary>
  132. public byte[] Sign(string hash, byte[] data)
  133. {
  134. return RSAObject.SignData(data, hash);
  135. }
  136. /// <summary>
  137. /// 验证字符串str的签名是否是sgin,并指定hash算法(如:SHA256)
  138. /// </summary>
  139. public bool Verify(string hash, string sgin, string str)
  140. {
  141. byte[] bytes = null;
  142. try
  143. {
  144. bytes = Convert.FromBase64String(sgin);
  145. }
  146. catch
  147. {
  148. }
  149. return bytes != null && Verify(hash, bytes, Encoding.UTF8.GetBytes(str));
  150. }
  151. /// <summary>
  152. /// 验证data的签名是否是sgin,并指定hash算法(如:SHA256)
  153. /// </summary>
  154. public bool Verify(string hash, byte[] sgin, byte[] data)
  155. {
  156. try
  157. {
  158. return RSAObject.VerifyData(data, hash, sgin);
  159. }
  160. catch
  161. {
  162. return false;
  163. }
  164. }
  165. /// <summary>
  166. /// 最底层的RSACryptoServiceProvider对象
  167. /// </summary>
  168. public RSACryptoServiceProvider RSAObject { get; }
  169. /// <summary>
  170. /// 密钥位数
  171. /// </summary>
  172. public int KeySize => RSAObject.KeySize;
  173. /// <summary>
  174. /// 是否包含私钥
  175. /// </summary>
  176. public bool HasPrivate => !RSAObject.PublicOnly;
  177. /// <summary>
  178. /// 用指定密钥大小创建一个新的RSA,出错抛异常
  179. /// </summary>
  180. public RSA(int keySize)
  181. {
  182. RSAObject = new RSACryptoServiceProvider(keySize);
  183. }
  184. /// <summary>
  185. /// 通过公钥或私钥创建RSA,出错抛异常
  186. /// </summary>
  187. public RSA(string key)
  188. {
  189. if (!key.StartsWith("<"))
  190. {
  191. RSAObject = RsaPem.FromPEM(key).GetRSA();
  192. }
  193. else
  194. {
  195. RSAObject = new RSACryptoServiceProvider();
  196. RSAObject.FromXmlString(key);
  197. }
  198. }
  199. /// <summary>
  200. /// 通过一个pem对象创建RSA,pem为公钥或私钥,出错抛异常
  201. /// </summary>
  202. public RSA(RsaPem pem)
  203. {
  204. RSAObject = pem.GetRSA();
  205. }
  206. }
  207. }