记录Openssl 替代 Mcrypt 3DES CBC 算法解决方案

927 阅读1分钟

由于php 7.1 以后弃用了Mcrypt算法,现在用openssl替代,经过测验合格

上代码 Mcrypt算法:

class Crypt3Des {

    var $key;//秘钥
    var $iv;//填充向量

    //初始化
    function Crypt3Des($key, $iv){
        $this->key = $key;
        $this->iv = $iv;
    }

    //填充加密快的大小
    function pkcs5_pad ($text, $blocksize) {
        $pad = $blocksize - (strlen($text) % $blocksize);
        return $text . str_repeat(chr($pad), $pad);
    }

    //解密
    function decrypt($encrypted){
        $encrypted = pack('H*', $encrypted);
        $key = str_pad($this->key,24,'0');
        $td = mcrypt_module_open(MCRYPT_3DES,'',MCRYPT_MODE_CBC,'');
        if( $this->iv == '' )
        {
            $iv = @mcrypt_create_iv (mcrypt_enc_get_iv_size($td), MCRYPT_RAND);
        }
        else
        {
            $iv = $this->iv;
        }
        //$ks = mcrypt_enc_get_bkey_size($td);
        @mcrypt_generic_init($td, $key, $iv);
        $decrypted = mdecrypt_generic($td, $encrypted);
        mcrypt_generic_deinit($td);
        mcrypt_module_close($td);
        $y=$this->pkcs5_unpad($decrypted);
        return $y;
    }

    //加密
    function encrypt($input){
        $size = mcrypt_get_block_size(MCRYPT_3DES,MCRYPT_MODE_CBC);
        $input = $this->pkcs5_pad($input, $size);
        $key = str_pad($this->key,24,'0');
        $td = mcrypt_module_open(MCRYPT_3DES, '', MCRYPT_MODE_CBC, '');
        if( $this->iv == '' )
        {
            $iv = @mcrypt_create_iv (mcrypt_enc_get_iv_size($td), MCRYPT_RAND);
        }
        else
        {
            $iv = $this->iv;
        }
        echo "key:".$key."</br>";
        echo "iv:".$iv."</br>";
        echo "input:".$input."</br>";
        @mcrypt_generic_init($td, $key, $iv);
        $data = mcrypt_generic($td, $input);
        mcrypt_generic_deinit($td);
        mcrypt_module_close($td);
        $data = bin2hex($data);
        return $data;
    }




    function pkcs5_unpad($text){
        $pad = ord($text{strlen($text)-1});
        if ($pad > strlen($text)) {
            return false;
        }
        if (strspn($text, chr($pad), strlen($text) - $pad) != $pad){
            return false;
        }
        return substr($text, 0, -1 * $pad);
    }

}

Openssl替代算法

class Crypt3Des
{

    var $key;//秘钥
    var $iv;//填充向量

    //初始化
    function __construct($key, $iv)
    {
        $this->key = $key;
        $this->iv = $iv;
    }

    //填充加密快的大小
    function pkcs5_pad($text, $blocksize)
    {
        $pad = $blocksize - (strlen($text) % $blocksize);
        return $text . str_repeat(chr($pad), $pad);
    }

    //解密
    function decrypt($encrypted)
    {
        $key = str_pad($this->key, 24, '0');
        $encrypted = pack('H*', $encrypted);
        $size = openssl_cipher_iv_length("DES-EDE3-CBC");
        if ($this->iv == "") {
            $iv = openssl_random_pseudo_bytes($size);
        } else {
            $iv = $this->iv;
        }
        $rs = openssl_decrypt($encrypted, "DES-EDE3-CBC", $key, OPENSSL_RAW_DATA | OPENSSL_NO_PADDING, $iv);
        $rs = $this->pkcs5_unpad($rs);
        return $rs;
    }

    //加密
    function encrypt($input)
    {
        $key = str_pad($this->key, 24, '0');
        $size = openssl_cipher_iv_length("DES-EDE3-CBC");
        if ($this->iv == "") {
            $iv = openssl_random_pseudo_bytes($size);
        } else {
            $iv = $this->iv;
        }
        $input = $this->pkcs5_pad($input, $size);
        $rs = openssl_encrypt($input, "DES-EDE3-CBC", $key, OPENSSL_RAW_DATA | OPENSSL_NO_PADDING, $iv);
        $rs = bin2hex($rs);
        return $rs;
    }


    function pkcs5_unpad($text)
    {
        $pad = ord($text{strlen($text) - 1});
        if ($pad > strlen($text)) {
            return false;
        }
        if (strspn($text, chr($pad), strlen($text) - $pad) != $pad) {
            return false;
        }
        return substr($text, 0, -1 * $pad);
    }

}