Java解析P7B证书链

说明:我是用BC库(pom依赖如下,解析sm2算法对应的p7b证书链,需要如下两个依赖)解析的sm2算法的p7b证书链,代码如下所示:

        <dependency>
            <groupId>org.bouncycastle</groupId>
            <artifactId>bcprov-jdk15on</artifactId>
            <version>1.70</version>
            <scope>compile</scope>
        </dependency>

        <dependency>
            <groupId>org.bouncycastle</groupId>
            <artifactId>bcpkix-jdk15on</artifactId>
            <version>1.70</version>
        </dependency>
import org.bouncycastle.cert.X509CertificateHolder;
import org.bouncycastle.cert.jcajce.JcaX509CertificateConverter;
import org.bouncycastle.cms.CMSException;
import org.bouncycastle.cms.CMSSignedData;
import org.bouncycastle.jce.provider.BouncyCastleProvider;
import org.bouncycastle.util.Store;
import sun.misc.BASE64Encoder;

import java.io.FileInputStream;
import java.io.IOException;
import java.security.Security;
import java.security.cert.CertificateException;
import java.security.cert.X509Certificate;
import java.util.Base64;
import java.util.Collection;

/**
 * @DESCRIPTION: BC库解析P7B证书链
 * @USER: shg
 * @DATE: 2023/9/7 16:13
 */
public class ParseP7BCert_V2 {

    public static void main(String[] args) throws IOException, CertificateException, CMSException {
        String p7bFilePath = "C:\\fiels\\sm2.ca.p7b";
        try {
            byte[] p7bData = readP7BFile(p7bFilePath);
            String p7bDataString = new String(p7bData);
            System.out.println("P7B Data:\n" + p7bDataString);
            p7bDataString = p7bDataString.replaceAll("\\n", "").replaceAll("\\r", "").replaceAll("\\s", "").replace("-----BEGINPKCS7-----", "").replace("-----ENDPKCS7-----", "");
            parseCertificates(p7bDataString);
        } catch (IOException e) {
            e.printStackTrace();
        } catch (Exception e) {
            throw new RuntimeException(e);
        }

    }

    public static void parseCertificates(String certInfo) throws Exception {
        Security.addProvider(new BouncyCastleProvider());
        CMSSignedData sd = new CMSSignedData(Base64.getDecoder().decode(certInfo));
        Store<X509CertificateHolder> store = sd.getCertificates();

        Collection<X509CertificateHolder> certificates = store.getMatches(null);

        for (X509CertificateHolder x509 : certificates) {
            X509Certificate bc = new JcaX509CertificateConverter().setProvider("BC").getCertificate(x509);
            System.out.println("颁发者:" + bc.getIssuerDN().getName());
            System.out.println("颁发给:" + bc.getSubjectDN().getName());
            String encode = new BASE64Encoder().encode(bc.getEncoded());
            System.out.println("证书内容:\n" + encode + "\n");
        }
    }

    private static byte[] readP7BFile(String filePath) throws IOException {
        FileInputStream fis = null;
        try {
            fis = new FileInputStream(filePath);
            byte[] data = new byte[fis.available()];
            fis.read(data);
            return data;
        } finally {
            if (fis != null) {
                fis.close();
            }
        }
    }

}

  • 1
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值