Java读取证书、公钥、私钥

import java.io.ByteArrayOutputStream;
import java.io.FileInputStream;
import java.io.IOException;
import java.io.InputStream;
import java.security.KeyStore;
import java.security.PrivateKey;
import java.security.PublicKey;
import java.security.cert.Certificate;
import java.security.cert.CertificateException;
import java.util.Enumeration;

import com.sun.org.apache.xml.internal.security.utils.Base64;
import com.help.Conf_Info;

public class VerifiSign2
{
    public void main(String[] args)
    {
	getPrivateKeyInfo();
	getPublicKeyInfo();
    }

    /**
     * 获取私钥别名等信息
     */
    public String getPrivateKeyInfo()
    {
	String privKeyFileString = Conf_Info.PrivatePath;
	String privKeyPswdString = "" + Conf_Info.password;
	String keyAlias = null;
	try
	{
	    KeyStore keyStore = KeyStore.getInstance("PKCS12");
	    FileInputStream fileInputStream = new FileInputStream(privKeyFileString);
	    char[] nPassword = null;
	    if ((privKeyPswdString == null) || privKeyPswdString.trim().equals(""))
	    {
		nPassword = null;
	    } else
	    {
		nPassword = privKeyPswdString.toCharArray();
	    }
	    keyStore.load(fileInputStream, nPassword);
	    fileInputStream.close();
	    System.out.println("keystore type=" + keyStore.getType());

	    Enumeration<string> enumeration = keyStore.aliases();

	    if (enumeration.hasMoreElements())
	    {
		keyAlias = (String) enumeration.nextElement();
		System.out.println("alias=[" + keyAlias + "]");
	    }
	    System.out.println("is key entry=" + keyStore.isKeyEntry(keyAlias));
	    PrivateKey prikey = (PrivateKey) keyStore.getKey(keyAlias, nPassword);
	    Certificate cert = keyStore.getCertificate(keyAlias);
	    PublicKey pubkey = cert.getPublicKey();
	    System.out.println("cert class = " + cert.getClass().getName());
	    System.out.println("cert = " + cert);
	    System.out.println("public key = " + pubkey);
	    System.out.println("private key = " + prikey);

	} catch (Exception e)
	{
	    System.out.println(e);
	}
	return keyAlias;
    }

    /**
     * 获取公钥信息
     */
    public void getPublicKeyInfo()
    {
	String tmp0 = Conf_Info.Public_cer;
	String tmp1 = "";
	try
	{
	    tmp1 = getPublicKey(Conf_Info.PublicCerPath).replaceAll("\n", "");
	    System.out.println("商户公钥字符串:\n" + tmp1);
	    System.out.println("\n商户公钥字符给定串:\n" + tmp0);
	    if (tmp0.equals(tmp1))
		System.out.println("=========");
	    else
	    {
		System.out.println("**************");
	    }

	} catch (CertificateException e)
	{
	    e.printStackTrace();
	    System.out.println(e);
	} catch (IOException e)
	{
	    e.printStackTrace();
	    System.out.println(e);
	}
    }

    /**
     * 读取公钥cer
     * 
     * @param path
     *            .cer文件的路径 如:c:/abc.cer
     * @return base64后的公钥串
     * @throws IOException
     * @throws CertificateException
     */
    public static String getPublicKey(String path) throws IOException, CertificateException
    {
	InputStream inStream = new FileInputStream(path);
	ByteArrayOutputStream out = new ByteArrayOutputStream();
	int ch;
	String res = "";
	while ((ch = inStream.read()) != -1)
	{
	    out.write(ch);
	}
	byte[] result = out.toByteArray();
	// res = Base64.byteArrayToBase64(result);
	res = Base64.encode(result);
	return res;
    }

}



  • 2
    点赞
  • 5
    收藏
    觉得还不错? 一键收藏
  • 3
    评论
好的,关于您提出的问题,我可以为您解答。在Java中,您可以使用BouncyCastle库来实现从pem文件读取公钥私钥,以及对数据进行加密和解密的功能。 首先,您需要通过以下命令将BouncyCastle库导入您的项目中: ``` <dependency> <groupId>org.bouncycastle</groupId> <artifactId>bcprov-jdk15on</artifactId> <version>1.68</version> </dependency> ``` 然后,您可以使用以下代码实现从pem文件读取公钥: ``` Security.addProvider(new BouncyCastleProvider()); FileReader fileReader = new FileReader("public_key.pem"); PEMParser pemParser = new PEMParser(fileReader); SubjectPublicKeyInfo publicKeyInfo = SubjectPublicKeyInfo.getInstance(pemParser.readObject()); X509EncodedKeySpec publicKeySpec = new X509EncodedKeySpec(publicKeyInfo.getEncoded()); KeyFactory keyFactory = KeyFactory.getInstance("RSA", "BC"); PublicKey publicKey = keyFactory.generatePublic(publicKeySpec); ``` 同样地,您也可以使用以下代码实现从pem文件读取私钥: ``` Security.addProvider(new BouncyCastleProvider()); FileReader fileReader = new FileReader("private_key.pem"); PEMParser pemParser = new PEMParser(fileReader); Object object = pemParser.readObject(); JcaPEMKeyConverter converter = new JcaPEMKeyConverter().setProvider("BC"); PrivateKey privateKey = null; if (object instanceof PEMKeyPair) { PEMKeyPair pemKeyPair = (PEMKeyPair) object; privateKey = converter.getPrivateKey(pemKeyPair.getPrivateKeyInfo()); } else if (object instanceof PEMEncryptedKeyPair) { PEMEncryptedKeyPair pemEncryptedKeyPair = (PEMEncryptedKeyPair) object; PEMDecryptorProvider decProv = new JcePEMDecryptorProviderBuilder().build("your_password".toCharArray()); PEMKeyPair pemKeyPair = pemEncryptedKeyPair.decryptKeyPair(decProv); privateKey = converter.getPrivateKey(pemKeyPair.getPrivateKeyInfo()); } ``` 接下来,您可以使用以下代码实现数据加密: ``` Security.addProvider(new BouncyCastleProvider()); byte[] data = "Hello World!".getBytes(); Cipher cipher = Cipher.getInstance("RSA/ECB/PKCS1Padding", "BC"); cipher.init(Cipher.ENCRYPT_MODE, publicKey); byte[] encryptedData = cipher.doFinal(data); ``` 最后,您可以使用以下代码实现数据解密: ``` Security.addProvider(new BouncyCastleProvider()); Cipher cipher = Cipher.getInstance("RSA/ECB/PKCS1Padding", "BC"); cipher.init(Cipher.DECRYPT_MODE, privateKey); byte[] decryptedData = cipher.doFinal(encryptedData); ``` 希望这可以帮助您解决问题!

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论 3
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值