一、對需要加密的字符串,定義RsaSignUnsign 類,代碼如下:
實現了:
1、實現了生成新的pubkey、pri_key方法;
2、將新生成的keys 寫入文件;
3、從文件獲取pubkey、pri_key
4、對傳入的字符串進行簽名,轉為bytes類型串,簽名,轉為base64串,再轉為str 串
5、對傳入的字符串驗簽,傳入字符串轉為bytes串,解base64格式,與原字符串的bytes格式進行驗簽
#coding=utf-8
''' rsa字符串簽名 '''
import rsa import traceback import base64 class RsaSignUnsign(): def __init__(self): self.pubkey=None self.pri_key=None def get_newkeys(self,n=1024): self.pubkey,self.pri_key=rsa.newkeys(n) return self.pubkey,self.pri_key def get_keys(self): if self.pubkey != None and self.pri_key != None: return self.pubkey,self.pri_key return None #如果路徑未輸入,會在當前路徑生成pubkey.pem、pri_key.pem
def write_keytofile(self,pubkey_path='pubkey.pem',pri_key_path='pri_key.pem'): with open(pubkey_path,'w',encoding='utf-8')as fp: fp.write(self.pubkey.save_pkcs1().decode('utf-8')) with open(pri_key_path,'w',encoding='utf-8')as fp: fp.write(self.pri_key.save_pkcs1().decode('utf-8')) def load_keys(self,pubkey_path='pubkey.pem',pri_key_path='pri_key.pem',encode_format='utf-8'): try: fp=open(pubkey_path,'r',encoding=encode_format) fp.readline() fp1=open(pri_key_path,'r',encoding=encode_format) fp1.readline() except: traceback.print_exc() else: fp.seek(0.0) self.pubkey=rsa.PublicKey.load_pkcs1(fp.read().encode()) fp.close() fp1.seek(0.0) self.pri_key=rsa.PrivateKey.load_pkcs1(fp1.read().encode()) fp1.close() return self.pubkey,self.pri_key def rsa_str_sign(self,s_str,sign_type='SHA-1'): if not isinstance(s_str,str): return None s_sign=rsa.sign(s_str.encode('utf-8'),self.pri_key,sign_type) s_b64=base64.b64encode(s_sign).decode('utf-8') #print('s_b64:',s_b64)
return s_b64 #s_str 是加密后轉碼base64 再decode為str類型;s為原str未簽名串
def rsa_str_verify(self,s_str,s): if not isinstance(s_str,str): return None s_b64=s_str.encode('utf-8') s_unsign=base64.b64decode(s_b64) try: result=rsa.verify(s.encode('utf-8'),s_unsign,self.pubkey) return result except: print('驗簽失敗:') traceback.print_exc() if __name__=='__main__': r=RsaSignUnsign() pubkey,prikey=r.get_newkeys(1024) #print('pubkey:',pubkey)
#print('prikey:',prikey)
r.write_keytofile('e:\\pubkey.pem','e:\\pri_key.pem') r.load_keys('e:\\pubkey.pem','e:\\pri_key.pem') print(r.get_keys()) print('*'*30) s='nihaoma' ss=r.rsa_str_sign(s) print('ss:',ss) #s='nihaoma1'
print('#'*20) print(r.rsa_str_verify(ss,s))
二、主程序請求報文,對格式字符串進行拼串,簽名操作
#coding=utf-8
''' 模擬一個http的json格式請求報文 '''
from rsa_str import *
import json d_header={'typeCode':'onlineCoupon', 'version':1.0} couponUseDateList=["20180228", "20180301", "20180302"] d_body={'promotionPlanId':10001, "faceValue": '%.2f'%5.00, "couponUseDateList":couponUseDateList} signature='' d={'header':d_header,'body':d_body} for i in sorted(d_header): signature+=str(d_header[i]) for i in sorted(d_body): if isinstance(d_body[i],list): signature+=''.join(d_body[i]) else: signature+=str(d_body[i]) print('signature:',signature) rsasign=RsaSignUnsign() rsasign.load_keys('e:\\pubkey.pem','e:\\pri_key.pem') signature=rsasign.rsa_str_sign(signature) d['signature']=signature d_json=json.dumps(d) print('d_json:',d_json)