1引入依赖
<dependency>
<groupId>org.mybatis.spring.boot</groupId>
<artifactId>mybatis-spring-boot-starter</artifactId>
</dependency>
<dependency>
<groupId>mysql</groupId>
<artifactId>mysql-connector-java</artifactId>
</dependency>
<dependency>
<groupId>cn.hutool</groupId>
<artifactId>hutool-crypto</artifactId>
<version>5.7.16</version>
</dependency>
<dependency>
<groupId>cn.hutool</groupId>
<artifactId>hutool-core</artifactId>
<version>5.7.16</version>
</dependency>
<dependency>
<groupId>org.bouncycastle</groupId>
<artifactId>bcprov-jdk15on</artifactId>
<version>1.59</version>
</dependency>
2.配置mybatis
<?xml version="1.0" encoding="UTF-8" ?>
<!DOCTYPE configuration
PUBLIC "-//mybatis.org//DTD Config 3.0//EN"
"http://mybatis.org/dtd/mybatis-3-config.dtd">
<configuration>
<settings>
<setting name="logPrefix" value="show_sql."/>
<setting name="callSettersOnNulls" value="true" />
<setting name="cacheEnabled" value="true" />
<setting name="lazyLoadingEnabled" value="true" />
<setting name="aggressiveLazyLoading" value="true" />
<setting name="multipleResultSetsEnabled" value="true" />
<setting name="useColumnLabel" value="true" />
<setting name="useGeneratedKeys" value="false" />
<setting name="autoMappingBehavior" value="PARTIAL" />
<setting name="defaultExecutorType" value="SIMPLE" />
<setting name="mapUnderscoreToCamelCase" value="true" />
<setting name="localCacheScope" value="SESSION" />
<setting name="jdbcTypeForNull" value="NULL" />
<setting name="logImpl" value="LOG4J2"/>
</settings>
<typeHandlers>
<package name="test.handler"/>
</typeHandlers>
<mappers>
<package name="test.mapper"/>
</mappers>
</configuration>
3.yml配置
mybatis:
config-location: classpath:mybatis-config.xml
4.加密工具类
package test.utils;
import cn.hutool.core.util.RandomUtil;
import cn.hutool.crypto.Mode;
import cn.hutool.crypto.Padding;
import cn.hutool.crypto.symmetric.SM4;
import org.bouncycastle.pqc.math.linearalgebra.ByteUtils;
import java.nio.charset.Charset;
import java.nio.charset.StandardCharsets;
import java.util.Arrays;
public class SM4Util {
private static final Charset ENCODING = StandardCharsets.UTF_8;
public SM4Util() {
}
public static String generateKey() {
return ByteUtils.toHexString(RandomUtil.randomString(RandomUtil.BASE_CHAR_NUMBER, 16).getBytes());
}
public static String encryptEcb(String hexKey, String paramStr, Charset charset) throws Exception {
String cipherText = "";
if (null != paramStr && !"".equals(paramStr)) {
SM4 sm4 = new SM4(Mode.ECB.name(), Padding.PKCS5Padding.name(), ByteUtils.fromHexString(hexKey));
cipherText = sm4.encryptHex(paramStr, charset);
}
return cipherText;
}
public static String encryptEcb(String key, String data) throws Exception {
return encryptEcb(key, data, ENCODING);
}
public static String decryptEcb(String hexKey, String cipherText, Charset charset) throws Exception {
SM4 sm4 = new SM4(Mode.ECB.name(), Padding.PKCS5Padding.name(), ByteUtils.fromHexString(hexKey));
return sm4.decryptStr(cipherText);
}
public static String decryptEcb(String key, String data) throws Exception {
return decryptEcb(key, data, ENCODING);
}
public static boolean verifyEcb(String hexKey, String cipherText, String paramStr) throws Exception {
boolean flag = false;
byte[] keyData = ByteUtils.fromHexString(hexKey);
byte[] cipherData = ByteUtils.fromHexString(cipherText);
SM4 sm4 = new SM4(Mode.ECB.name(), Padding.PKCS5Padding.name(), keyData);
byte[] decryptData = sm4.decrypt(cipherData);
byte[] srcData = paramStr.getBytes(ENCODING);
flag = Arrays.equals(decryptData, srcData);
return flag;
}
}
5.typeHandler继承类
package test.handler;
import org.apache.ibatis.type.BaseTypeHandler;
import org.apache.ibatis.type.JdbcType;
import org.slf4j.Logger;
import org.slf4j.LoggerFactory;
import test.utils.SM4Util;
import java.sql.CallableStatement;
import java.sql.PreparedStatement;
import java.sql.ResultSet;
import java.sql.SQLException;
public class SM4CryptoTypeHandler extends BaseTypeHandler<String> {
private final static String PKEY = "912058752095k2948123c394ht868r0j";
private static final Logger log = LoggerFactory.getLogger(SM4CryptoTypeHandler.class);
@Override
public void setNonNullParameter(PreparedStatement ps, int i, String parameter, JdbcType jdbcType) throws SQLException {
if (parameter != null) {
String encryptHex = null;
try {
encryptHex = SM4Util.encryptEcb(PKEY,parameter);
} catch (Exception e) {
log.error("数据库字段加密错误",e);
}
log.debug("{} ---加密为---> {}", parameter, encryptHex);
ps.setString(i, encryptHex);
}
}
@Override
public String getNullableResult(ResultSet rs, String columnName) throws SQLException {
String originRes = rs.getString(columnName);
if (originRes != null) {
String res = originRes;
try {
res = SM4Util.decryptEcb(PKEY,originRes);
} catch (Exception e) {
log.error("数据库"+columnName+"列字段解密错误",e);
}
log.debug("{} ---解密为---> {}", originRes, res);
return res;
}
log.debug("结果为空,无需解密");
return null;
}
@Override
public String getNullableResult(ResultSet rs, int columnIndex) throws SQLException {
String originRes = rs.getString(columnIndex);
if (originRes != null) {
String res = originRes;
try {
res = SM4Util.decryptEcb(PKEY,originRes);
} catch (Exception e) {
log.error("数据库第"+columnIndex+"列字段解密错误",e);
}
log.debug("第[{}]列:{} ---解密为---> {}",columnIndex, originRes, res);
return res;
}
log.info("结果为空,无需解密");
return null;
}
@Override
public String getNullableResult(CallableStatement cs, int columnIndex) throws SQLException {
String originRes = cs.getString(columnIndex);
if (originRes != null) {
String res = originRes;
try {
res = SM4Util.decryptEcb(PKEY,originRes);
} catch (Exception e) {
log.error("数据库第"+columnIndex+"列字段解密错误",e);
}
log.debug("第[{}]列:{} ---解密为---> {}",columnIndex, originRes, res);
}
log.debug("结果为空,无需解密");
return null;
}
}
6.mapper层xml和interface
package test.mapper;
import org.apache.ibatis.annotations.Param;
import test.entry.Test;
public interface TestMapper {
int insert(Test record);
}
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE mapper PUBLIC "-//mybatis.org//DTD Mapper 3.0//EN" "http://mybatis.org/dtd/mybatis-3-mapper.dtd">
<mapper namespace="test.mapper.TestMapper">
<resultMap id="BaseResultMap" type="test.entry.Test">
<result column="test" jdbcType="VARCHAR" property="test" typeHandler="test.handler.SM4CryptoTypeHandler"/>
</resultMap>
<insert id="insert" parameterType="test.entry.Test">
insert into t_test (test)
values (#{test,jdbcType=VARCHAR,typeHandler=test.handler.SM4CryptoTypeHandler})
</insert>
</mapper>