Java接口加密---filter aes加密

filter aes加密
Java接口加密:可以对请求参数、响应参数加密
加密的两种方法推荐

1、使用过滤器加密filter

AES加密

/**
 * 过滤器拦截请求,实现加密解密功能
 * @author samxie
 * @version 1.0
 * @date 2022/5/6 18:13
 * @Component 将此Filter交给Spring容器管理
 * @WebFilter 通过WebFilter进行Filter声明,这样容器在进行部署的时候就会处理该Filter
 *
 */
@SuppressWarnings("PMD")
//CHECKSTYLE:OFF
@Slf4j
@Component
public class EncryptFilter implements Filter {
    //LTAI4FzVG1h.....密文
    @Value("${gateway.secret.key}")
    private String aesKey;

    //屏蔽的环境:local,dev
    @Value("${env.encrypt.profile}")
    private String encryptProfile;

    @Resource
    private Environment environment;

    //屏蔽的url
    private String[] ignoreUrl = new String[] {
            "/v1/saas/login",
            "/v1/saas/sendLoginSms",
            //自己加
    };



    private AntPathMatcher antPathMatcher = new AntPathMatcher();



    @Override
    public void init(FilterConfig filterConfig) throws ServletException {
        // Auto-generated method stub
    }

    /**
     * 有错误相应返回-44
     *
     * @param response
     * @throws IOException
     */
    private void getFailResponse(HttpServletResponse response) throws IOException {
        response.setCharacterEncoding("UTF-8");
        response.setContentType("text/html;charset=UTF-8");
        PrintWriter out = null;
        out = response.getWriter();
        //加密后的错误消息 {"code":0,"data":"系统繁忙,请稍后再试","ok":true}
        String errorMessage
                = "D9CHXXPAM3SIJmYEyF6QUQhEqfHJldkVqXf4th3Ev7DuagxdHgt5MsRVphBYi7yHTihZmKhKv3YYwAf1Dk77PA==";
        out.write(JSONObject.toJSONString(errorMessage));
        out.flush();
        out.close();
    }

    @Override
    public void doFilter(ServletRequest request, ServletResponse response, FilterChain chain) {
        HttpServletRequest httpRequest = (HttpServletRequest)request;
        HttpServletResponse httpResponse = (HttpServletResponse)response;
        // 过滤请求:路径
        boolean flag = isIgnore(httpRequest, ignoreUrl);
        // 环境过滤
        String env = environment.getProperty("spring.profiles.active");
        //local dev test
        String profile = encryptProfile;
        if (null != env && profile.contains(env)) {
            flag = true;
        }
        if(flag) {
            try {
                chain.doFilter(httpRequest, httpResponse);
            } catch (IOException e) {
                log.error("e:{}", e);
            } catch (ServletException e) {
                log.error("e:{}", e);
            }
        } else {
            try {
                //响应处理  包装响应对象 res 并缓存响应数据
                ResponseWrapper responseWrapper = new ResponseWrapper((HttpServletResponse) response);
                //执行业务逻辑 交给下一个过滤器或servlet处理
                chain.doFilter(request, responseWrapper);
                byte[] resData = responseWrapper.getResponseData();
                //设置响应内容格式,防止解析响应内容时出错
                responseWrapper.setContentType("text/plain;charset=UTF-8");
                //加密响应报文并响应
                String encryptBASE64 = AesEncryptUtils.encrypt(new String(resData), aesKey);
                PrintWriter out = response.getWriter();
                response.setCharacterEncoding("UTF-8");
                response.setContentType("text/html;charset=UTF-8");
                out.write(JSONObject.toJSONString(encryptBASE64));
                //out.print(encryptBASE64);
                out.flush();
                out.close();
            } catch(Exception e) {
                try {
                    getFailResponse((HttpServletResponse)response);
                } catch (IOException ioException) {
                    ioException.printStackTrace();
                }
                log.error("加密异常信息 ", e);
            }
        }
    }

    @Override
    public void destroy() {
        //  Auto-generated method stub
    }

    /**
     * 哪些路径不处理
     * @param request
     * @param strArr
     * @return
     */
    public boolean isIgnore(HttpServletRequest request, String[] strArr) {
        String path = request.getRequestURI();
        for(String ignore : strArr) {
            boolean match = antPathMatcher.match(ignore, path);
            if (match) {
                return true;
            }
        }
        return false;
    }
}
//CHECKSTYLE:OFF

工具类

/**
 * aes加密解密
 */
public class AesEncryptUtils {

    //参数分别代表 算法名称/加密模式/数据填充方式
    private static String algorithmstr = "AES/ECB/PKCS5Padding";

    public static String getAlgorithmstr() {
        return algorithmstr;
    }

    /**
     * 加密
     * @param content 加密的字符串
     * @param encryptKey key值
     * @return
     */
    public static String encrypt(String content, String encryptKey) throws Exception {
        KeyGenerator kgen = KeyGenerator.getInstance("AES");
        kgen.init(128);
        Cipher cipher = Cipher.getInstance(algorithmstr);
        cipher.init(Cipher.ENCRYPT_MODE, new SecretKeySpec(encryptKey.getBytes(), "AES"));
        byte[] b = cipher.doFinal(content.getBytes("utf-8"));
        return Base64.encodeBase64String(b);
    }

    /**
     * 解密
     * @param encryptStr 解密的字符串
     * @param decryptKey 解密的key值
     * @return
     */
    public static String decrypt(String encryptStr, String decryptKey) throws Exception {
        KeyGenerator kgen = KeyGenerator.getInstance("AES");
        kgen.init(128);
        Cipher cipher = Cipher.getInstance(algorithmstr);
        cipher.init(Cipher.DECRYPT_MODE, new SecretKeySpec(decryptKey.getBytes(), "AES"));
        byte[] encryptBytes = Base64.decodeBase64(encryptStr);
        byte[] decryptBytes = cipher.doFinal(encryptBytes);
        return new String(decryptBytes);
    }

}

2、使用aop面向切面加密

filter aes加密是拦截器加密,而aop是面向切面方式加密,两者都可以实现不同程度的加密。

  • 0
    点赞
  • 2
    收藏
    觉得还不错? 一键收藏
  • 打赏
    打赏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包

打赏作者

学习微站公众平台

你的鼓励将是我创作的最大动力

¥1 ¥2 ¥4 ¥6 ¥10 ¥20
扫码支付:¥1
获取中
扫码支付

您的余额不足,请更换扫码支付或充值

打赏作者

实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值