RSA.cs 6.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232
  1. using Masuit.Tools.Systems;
  2. using System;
  3. using System.Security.Cryptography;
  4. using System.Text;
  5. namespace Masuit.Tools.Security;
  6. /// <summary>
  7. /// RSA操作类
  8. /// </summary>
  9. internal class RSA
  10. {
  11. /// <summary>
  12. /// 导出XML格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  13. /// </summary>
  14. public string ToXML(bool convertToPublic = false)
  15. {
  16. return RSAObject.ToXmlString(!RSAObject.PublicOnly && !convertToPublic);
  17. }
  18. /// <summary>
  19. /// 导出PEM PKCS#1格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  20. /// </summary>
  21. public string ToPEM_PKCS1(bool convertToPublic = false)
  22. {
  23. return new RsaPem(RSAObject).ToPEM(convertToPublic, false);
  24. }
  25. /// <summary>
  26. /// 导出PEM PKCS#8格式密钥对,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  27. /// </summary>
  28. public string ToPEM_PKCS8(bool convertToPublic = false)
  29. {
  30. return new RsaPem(RSAObject).ToPEM(convertToPublic, true);
  31. }
  32. /// <summary>
  33. /// 将密钥对导出成PEM对象,如果convertToPublic含私钥的RSA将只返回公钥,仅含公钥的RSA不受影响
  34. /// </summary>
  35. public RsaPem ToPEM(bool convertToPublic = false)
  36. {
  37. return new RsaPem(RSAObject, convertToPublic);
  38. }
  39. /// <summary>
  40. /// 加密字符串(utf-8),出错抛异常
  41. /// </summary>
  42. public string Encrypt(string str)
  43. {
  44. return Convert.ToBase64String(Encrypt(Encoding.UTF8.GetBytes(str)));
  45. }
  46. /// <summary>
  47. /// 加密数据,出错抛异常
  48. /// </summary>
  49. public byte[] Encrypt(byte[] data)
  50. {
  51. int blockLen = RSAObject.KeySize / 8 - 11;
  52. if (data.Length <= blockLen)
  53. {
  54. return RSAObject.Encrypt(data, false);
  55. }
  56. using var dataStream = new PooledMemoryStream(data);
  57. using var enStream = new PooledMemoryStream();
  58. var buffer = new byte[blockLen];
  59. int len = dataStream.Read(buffer, 0, blockLen);
  60. while (len > 0)
  61. {
  62. var block = new byte[len];
  63. Array.Copy(buffer, 0, block, 0, len);
  64. var enBlock = RSAObject.Encrypt(block, false);
  65. enStream.Write(enBlock, 0, enBlock.Length);
  66. len = dataStream.Read(buffer, 0, blockLen);
  67. }
  68. return enStream.ToArray();
  69. }
  70. /// <summary>
  71. /// 解密字符串(utf-8),解密异常返回null
  72. /// </summary>
  73. public string DecryptOrNull(string str)
  74. {
  75. if (string.IsNullOrEmpty(str))
  76. {
  77. return null;
  78. }
  79. try
  80. {
  81. var bytes = Convert.FromBase64String(str);
  82. var val = DecryptOrNull(bytes);
  83. return val == null ? null : Encoding.UTF8.GetString(val);
  84. }
  85. catch
  86. {
  87. return null;
  88. }
  89. }
  90. /// <summary>
  91. /// 解密数据,解密异常返回null
  92. /// </summary>
  93. public byte[] DecryptOrNull(byte[] data)
  94. {
  95. try
  96. {
  97. int blockLen = RSAObject.KeySize / 8;
  98. if (data.Length <= blockLen)
  99. {
  100. return RSAObject.Decrypt(data, false);
  101. }
  102. using var dataStream = new PooledMemoryStream(data);
  103. using var deStream = new PooledMemoryStream();
  104. byte[] buffer = new byte[blockLen];
  105. int len = dataStream.Read(buffer, 0, blockLen);
  106. while (len > 0)
  107. {
  108. var block = new byte[len];
  109. Array.Copy(buffer, 0, block, 0, len);
  110. var deBlock = RSAObject.Decrypt(block, false);
  111. deStream.Write(deBlock, 0, deBlock.Length);
  112. len = dataStream.Read(buffer, 0, blockLen);
  113. }
  114. return deStream.ToArray();
  115. }
  116. catch
  117. {
  118. return null;
  119. }
  120. }
  121. /// <summary>
  122. /// 对str进行签名,并指定hash算法(如:SHA256)
  123. /// </summary>
  124. public string Sign(string hash, string str)
  125. {
  126. return Convert.ToBase64String(Sign(hash, Encoding.UTF8.GetBytes(str)));
  127. }
  128. /// <summary>
  129. /// 对data进行签名,并指定hash算法(如:SHA256)
  130. /// </summary>
  131. public byte[] Sign(string hash, byte[] data)
  132. {
  133. return RSAObject.SignData(data, hash);
  134. }
  135. /// <summary>
  136. /// 验证字符串str的签名是否是sgin,并指定hash算法(如:SHA256)
  137. /// </summary>
  138. public bool Verify(string hash, string sgin, string str)
  139. {
  140. byte[] bytes = null;
  141. try
  142. {
  143. bytes = Convert.FromBase64String(sgin);
  144. }
  145. catch
  146. {
  147. }
  148. return bytes != null && Verify(hash, bytes, Encoding.UTF8.GetBytes(str));
  149. }
  150. /// <summary>
  151. /// 验证data的签名是否是sgin,并指定hash算法(如:SHA256)
  152. /// </summary>
  153. public bool Verify(string hash, byte[] sgin, byte[] data)
  154. {
  155. try
  156. {
  157. return RSAObject.VerifyData(data, hash, sgin);
  158. }
  159. catch
  160. {
  161. return false;
  162. }
  163. }
  164. /// <summary>
  165. /// 最底层的RSACryptoServiceProvider对象
  166. /// </summary>
  167. public RSACryptoServiceProvider RSAObject { get; }
  168. /// <summary>
  169. /// 密钥位数
  170. /// </summary>
  171. public int KeySize => RSAObject.KeySize;
  172. /// <summary>
  173. /// 是否包含私钥
  174. /// </summary>
  175. public bool HasPrivate => !RSAObject.PublicOnly;
  176. /// <summary>
  177. /// 用指定密钥大小创建一个新的RSA,出错抛异常
  178. /// </summary>
  179. public RSA(int keySize)
  180. {
  181. RSAObject = new RSACryptoServiceProvider(keySize);
  182. }
  183. /// <summary>
  184. /// 通过公钥或私钥创建RSA,出错抛异常
  185. /// </summary>
  186. public RSA(string key)
  187. {
  188. if (!key.StartsWith("<"))
  189. {
  190. RSAObject = RsaPem.FromPEM(key).GetRSA();
  191. }
  192. else
  193. {
  194. RSAObject = new RSACryptoServiceProvider();
  195. RSAObject.FromXmlString(key);
  196. }
  197. }
  198. /// <summary>
  199. /// 通过一个pem对象创建RSA,pem为公钥或私钥,出错抛异常
  200. /// </summary>
  201. public RSA(RsaPem pem)
  202. {
  203. RSAObject = pem.GetRSA();
  204. }
  205. }