1.創(chuàng)建一個(gè)NSString的Category,我起名叫AES
首先你要知道AES有多種加密模式栅葡,就是ECB, CBC 尤泽,CFB 欣簇,OFB這四種,至于選擇哪種你需要跟服務(wù)端人員協(xié)商好坯约,要一致熊咽,這里我們主要介紹CBC模式
.h文件
import <Foundation/Foundation.h>
@interface NSString (AES)
/**< 加密方法 */
- (NSString*)aci_encryptWithAES;
/**< 解密方法 */
- (NSString*)aci_decryptWithAES;
@end
3
.m文件
import "NSString+AES.h"
import <CommonCrypto/CommonDigest.h>
import <CommonCrypto/CommonCryptor.h>
// key跟后臺(tái)協(xié)商一個(gè)即可,保持一致
static NSString *const PSW_AES_KEY = @"這里填寫客戶端跟后臺(tái)商量的key";
// 這里的偏移量也需要跟后臺(tái)一致闹丐,一般跟key一樣就行
static NSString *const AES_IV_PARAMETER = @"偏移量";
@implementation NSString (AES)
(NSString*)aci_encryptWithAES {
NSData *data = [self dataUsingEncoding:NSUTF8StringEncoding];
NSData *AESData = [self AES128operation:kCCEncrypt
data:data
key:PSW_AES_KEY
iv:AES_IV_PARAMETER];
NSString *baseStr_GTM = [self encodeBase64Data:AESData];
return baseStr_GTM;
}-
(NSString*)aci_decryptWithAES {
NSData *data = [self dataUsingEncoding:NSUTF8StringEncoding];
NSData *baseData_GTM = [self decodeBase64Data:data];
NSData *baseData = [[NSData alloc]initWithBase64EncodedString:self options:0];NSData *AESData_GTM = [self AES128operation:kCCDecrypt
data:baseData_GTM
key:PSW_AES_KEY
iv:AES_IV_PARAMETER];
NSData *AESData = [self AES128operation:kCCDecrypt
data:baseData
key:PSW_AES_KEY
iv:AES_IV_PARAMETER];NSString *decStr_GTM = [[NSString alloc] initWithData:AESData_GTM encoding:NSUTF8StringEncoding];
LYLog(@"decStr_GTM : %@",decStr_GTM);
NSString *decStr = [[NSString alloc] initWithData:AESData encoding:NSUTF8StringEncoding];return decStr;
}
/**
- AES加解密算法
- @param operation kCCEncrypt(加密)kCCDecrypt(解密)
- @param data 待操作Data數(shù)據(jù)
- @param key key
- @param iv 向量
*/
-
(NSData *)AES128operation:(CCOperation)operation data:(NSData *)data key:(NSString *)key iv:(NSString *)iv {
char keyPtr[kCCKeySizeAES128 + 1]; //kCCKeySizeAES128是加密位數(shù) 可以替換成256位的
bzero(keyPtr, sizeof(keyPtr));
[key getCString:keyPtr maxLength:sizeof(keyPtr) encoding:NSUTF8StringEncoding];
// IV
char ivPtr[kCCBlockSizeAES128 + 1];
bzero(ivPtr, sizeof(ivPtr));
[iv getCString:ivPtr maxLength:sizeof(ivPtr) encoding:NSUTF8StringEncoding];size_t bufferSize = [data length] + kCCBlockSizeAES128;
void *buffer = malloc(bufferSize);
size_t numBytesEncrypted = 0;// 設(shè)置加密參數(shù)
/**
這里設(shè)置的參數(shù)ios默認(rèn)為CBC加密方式横殴,如果需要其他加密方式如ECB,在kCCOptionPKCS7Padding這個(gè)參數(shù)后邊加上kCCOptionECBMode卿拴,即kCCOptionPKCS7Padding | kCCOptionECBMode滥玷,但是記得修改上邊的偏移量,因?yàn)橹挥蠧BC模式有偏移量之說*/
CCCryptorStatus cryptorStatus = CCCrypt(operation, kCCAlgorithmAES128, kCCOptionPKCS7Padding,
keyPtr, kCCKeySizeAES128,
ivPtr,
[data bytes], [data length],
buffer, bufferSize,
&numBytesEncrypted);if(cryptorStatus == kCCSuccess) {
NSLog(@"Success");
return [NSData dataWithBytesNoCopy:buffer length:numBytesEncrypted];} else {
NSLog(@"Error");
}free(buffer);
return nil;
}
// 這里附上GTMBase64編碼的代碼巍棱,可以手動(dòng)寫一個(gè)分類惑畴,也可以直接cocopods下載,pod 'GTMBase64'航徙。
/**< GTMBase64編碼 */
- (NSString*)encodeBase64Data:(NSData *)data {
data = [GTMBase64 encodeData:data];
NSString *base64String = [[NSString alloc] initWithData:data encoding:NSUTF8StringEncoding];
return base64String;
}
/**< GTMBase64解碼 */
- (NSData*)decodeBase64Data:(NSData *)data {
data = [GTMBase64 decodeData:data];
return data;
}