AES-GCM 256位和SSL / TLS都是常用的加密通信协议。我们可以通过在Java中实现这两种协议来保护我们的套接字通信。
使用AES-GCM加密套接字数据
以下是使用AES-GCM加密和解密套接字数据的Java代码示例:
import java.security.SecureRandom;
import javax.crypto.*;
import javax.crypto.spec.*;
public class SocketEncryption {
public static final int KEY_SIZE = 256;
public static final int IV_SIZE = 12;
public static byte[] generateKey() throws Exception {
KeyGenerator keyGenerator = KeyGenerator.getInstance("AES");
keyGenerator.init(KEY_SIZE);
return keyGenerator.generateKey().getEncoded();
}
public static byte[] generateIV() throws Exception {
SecureRandom random = new SecureRandom();
byte[] iv = new byte[IV_SIZE];
random.nextBytes(iv);
return iv;
}
public static byte[] encrypt(byte[] keyBytes, byte[] ivBytes, byte[] data) throws Exception {
SecretKeySpec key = new SecretKeySpec(keyBytes, "AES");
GCMParameterSpec iv = new GCMParameterSpec(128, ivBytes);
Cipher cipher = Cipher.getInstance("AES/GCM/NoPadding");
cipher.init(Cipher.ENCRYPT_MODE, key, iv);
byte[] encryptedData = cipher.doFinal(data);
byte[] combined = new byte[ivBytes.length + encryptedData.length];
System.arraycopy(ivBytes, 0, combined, 0, ivBytes.length);
System.arraycopy(encryptedData, 0, combined, ivBytes.length, encryptedData.length);
return combined;
}
public static byte[] decrypt(byte[] keyBytes, byte[] combined) throws Exception {
SecretKeySpec key = new SecretKeySpec(keyBytes, "AES");
GCMParameterSpec iv = new GCMParameterSpec(128, combined, 0, IV_SIZE);
Cipher cipher = Cipher.getInstance("AES/GCM/NoPadding");
cipher.init(Cipher.DECRYPT_MODE, key, iv);
return cipher.doFinal(combined, IV_SIZE, combined.length - IV_SIZE);
}