研究了一陣子,各種翻閱資料測試氮采,今天終于找到了能跟我PHP后端配合解密加密的JS解決方案谋逻。代碼如下:
<!DOCTYPE html>
<html lang="cn">
<head>
<meta charset="utf-8">
<title>AES TEST</title>
</head>
<body>
<script type="text/javascript" src="jquery-1.9.1.min.js"></script>
<script type="text/javascript" src="aes/aes.js"></script>
<script type="text/javascript" src="aes/pad-zeropadding.js"></script>
<script type="text/javascript">
var data = '{"test": "a","a": "b"}';
var key = '16位的KEY';
var iv = '16位的IV';
// 加密測試
var encrypted = getAesString(data, key, iv);
var enstr = CryptoJS.enc.Base64.stringify(encrypted.ciphertext);
console.log(enstr);
// 解密測試
var decrypted = getDAesString(enstr, key, iv);
var destr = $.parseJSON( decrypted );
console.log(destr.type);
function getAesString(data,key,iv){//加密
var key = CryptoJS.enc.Latin1.parse(key);
var iv = CryptoJS.enc.Latin1.parse(iv);
var srcs = CryptoJS.enc.Utf8.parse(data);
var encrypted = CryptoJS.AES.encrypt(srcs,key,
{
iv:iv,
mode:CryptoJS.mode.CBC,
padding:CryptoJS.pad.Pkcs7
});
return encrypted;
}
function getDAesString(encrypted,key,iv){//解密
var key = CryptoJS.enc.Latin1.parse(key);
var iv = CryptoJS.enc.Latin1.parse(iv);
var decrypted = CryptoJS.AES.decrypt(encrypted,key,
{
iv:iv,
mode:CryptoJS.mode.CBC,
padding:CryptoJS.pad.Pkcs7
});
return decrypted.toString(CryptoJS.enc.Utf8);
}
</script>
</body>
</html>
事已至此呆馁,對接起來沒問題了,可是這樣AES的key和iv暴露源碼中毁兆,接下來繼續(xù)研究怎么不會暴露這玩意浙滤,網(wǎng)友們有沒有懂的,給點方法唄气堕?纺腊?