phpcrypto.php 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343
  1. <?php
  2. function string2hex($string){
  3. $hex = '';
  4. for($i = 0;$i < strlen($string); $i++){
  5. $ch = dechex(ord($string[$i]));
  6. if(strlen($ch)==1){
  7. $ch = "0".$ch;
  8. }
  9. $hex .=$ch;
  10. }
  11. return $hex;
  12. }
  13. /*
  14. function hex2string($hex){
  15. //echo "$hex \n";
  16. $string = '';
  17. for($i = 0;$i < strlen($hex);$i++){
  18. $string .= chr(hexdec($hex[$i].$hex[$i++]));
  19. }
  20. return $string;
  21. }
  22. */
  23. if(!extension_loaded('phpcrypto')) {
  24. dl('phpcrypto.so');
  25. }
  26. $module = 'phpcrypto';
  27. $functions = get_extension_funcs($module);
  28. echo "Functions available in the test extension:\n";
  29. foreach($functions as $func) {
  30. echo $func."\n";
  31. }
  32. echo "\n";
  33. //先加载动态库,否则无法调用接口
  34. function test_php_crypto_init(){
  35. $php_func = 'php_crypto_init';
  36. echo "--------$php_func--------\n";
  37. $path = "/www/server/php/73/libcryptAPIsm_lnx64.so";//国密动态库路径
  38. $recode = $php_func($path);
  39. echo "recode:$recode \n";//如果非零,则加载失败
  40. }
  41. //test php_SM4Crypt1
  42. function test_php_SM4Crypt1(){
  43. $php_func = 'php_SM4Crypt1';
  44. echo "--------$php_func--------\n";
  45. $data = "this is a test! 这是个测试!";
  46. $key = "1234567890123456";//如果是hex编码,务必解码
  47. $recode = $php_func(0,$data,$redata,$key);
  48. echo "recode:$recode \n";
  49. echo "redata: ".string2hex($redata)." len:".strlen($redata)." \n";
  50. $recode = $php_func(1,$redata,$dedata,$key);
  51. echo "recode:$recode \n";
  52. echo "plain: ".$dedata." \n";
  53. }
  54. //test SM4Crypt2
  55. function test_php_SM4Crypt2(){
  56. $php_func = 'php_SM4Crypt2';
  57. echo "--------$php_func--------\n";
  58. $data = "this is a test! 这是个测试!";
  59. $key = "1234567890123456";//如果是hex编码,务必解码
  60. $recode = $php_func(0,$data,$redata,$key);
  61. echo "recode:$recode \n";
  62. echo "redata: ".string2hex($redata)." len:".strlen($redata)." \n";
  63. $recode = $php_func(1,$redata,$dedata,$key);
  64. echo "recode:$recode \n";
  65. echo "plain: ".$dedata." \n";
  66. }
  67. //test php_CryptFile
  68. function test_php_CryptFile(){
  69. $php_func = 'php_CryptFile';
  70. echo "--------$php_func--------\n";
  71. $flag = 2;
  72. $infilename = "/home/essc50mysql/mf/src_crypt/test_cryptfile";
  73. $encodefilename = "/home/essc50mysql/mf/src_crypt/test_encode_cryptfile";
  74. $format = 1;
  75. $key = "1234567890123456";//如果是hex编码,务必解码
  76. $recode = $php_func($flag, $key, $infilename,$encodefilename,$format);
  77. echo "recode:$recode \n";
  78. $flag = 3;
  79. $decodefilename = "/home/essc50mysql/mf/src_crypt/test_decode_cryptfile";
  80. $recode = $php_func($flag, $key, $encodefilename,$decodefilename,$format);
  81. echo "recode:$recode \n";
  82. }
  83. //test php_CryptKey
  84. function test_php_CryptKey(){
  85. $php_func = 'php_CryptKey';
  86. echo "--------$php_func--------\n";
  87. $flag = 0;
  88. $plainkey = "1234567890123456";
  89. $recode = $php_func($flag, $plainkey,$cipherkey);
  90. echo "recode:$recode \n";
  91. echo "cipherkey: ".string2hex($cipherkey)." len:".strlen($cipherkey)." \n";
  92. $flag = 2;
  93. $recode = $php_func($flag, NULL,$genkey);
  94. echo "recode:$recode \n";
  95. echo "genkey: ".string2hex($genkey)." len:".strlen($genkey)." \n";
  96. }
  97. //test php_SM3Crypt
  98. function test_php_SM3Crypt(){
  99. $php_func = 'php_SM3Crypt';
  100. echo "--------$php_func--------\n";
  101. $data = "this is test 这是测试!";
  102. $recode = $php_func($data,$sm3hash);
  103. echo "recode:$recode \n";
  104. echo "sm3hash=================: ".string2hex($sm3hash)." len:".strlen($sm3hash)."============= \n";
  105. }
  106. //test php_MACCrypt
  107. function test_php_MACCrypt(){
  108. $php_func = 'php_MACCrypt';
  109. echo "--------$php_func--------\n";
  110. $flag = 0;
  111. $data = "this is test 这是测试!this is test 这是测试!";
  112. $key = "1234567890123456";
  113. $recode = $php_func($flag,$data, $key,$redata);
  114. echo "recode:$recode \n";
  115. echo "flag:".$flag." redata: ".string2hex($redata)." len:".strlen($redata)." \n";
  116. $flag = 1;
  117. $recode = $php_func($flag,$data, $key,$redata);
  118. echo "recode:$recode \n";
  119. echo "flag:".$flag." redata: ".string2hex($redata)." len:".strlen($redata)." \n";
  120. }
  121. //test php_CryptLmkMac
  122. function test_php_CryptLmkMac(){
  123. $php_func = 'php_CryptLmkMac';
  124. echo "--------$php_func--------\n";
  125. $recode = $php_func($data,$version, $pubkey);
  126. echo "recode:$recode \n";
  127. echo "keymac: ".string2hex($data)." version:".$version." pubkey".string2hex($pubkey)." len:".strlen($pubkey)." \n";
  128. }
  129. //test php_SM2Genkey
  130. function test_php_SM2Genkey(){
  131. $php_func = 'php_SM2Genkey';
  132. //echo "--------$php_func--------\n";
  133. $recode = $php_func($privkey, $pubkey);
  134. //echo "recode:$recode \n";
  135. echo "privkey: ".string2hex($privkey)." len:".strlen($privkey)." pubkey: ".string2hex($pubkey)." len:".strlen($pubkey)." \n";
  136. echo "sm2密钥对:"+array($privkey, $pubkey);
  137. return array($privkey, $pubkey);
  138. }
  139. //test php_SM2Sign
  140. function test_php_SM2SignAndSM2Verify(){
  141. $php_func = 'php_SM2Sign';
  142. echo "--------$php_func--------\n";
  143. $data = "this is test 这是测试!this is test 这是测试!";//数据有中文则需要注意字符编码的问题
  144. $sm2keys = test_php_SM2Genkey();//0 privkey 1 pubkey
  145. //签名
  146. $recode = $php_func($data, $redata,$sm2keys[0],$sm2keys[1]);
  147. echo "recode:$recode \n";
  148. echo "signValue: ".string2hex($redata)." len:".strlen($redata)." \n";
  149. //php_SM2Sign接口返回的签名值是RS格式,以下示例转DER编码
  150. $php_func = 'php_SM2FormatConvert';
  151. $recode = $php_func(202,$redata, $der);
  152. echo "recode:$recode \n";
  153. echo "signValue DER: ".string2hex($der)." len:".strlen($der)." \n";
  154. //验签
  155. $php_func = 'php_SM2Verify';
  156. $recode = $php_func($data, $redata,$sm2keys[1]);
  157. echo "recode:$recode \n";
  158. //php_SM2Verify 接收的签名值是RS格式,若对方给的签名值是DER格式
  159. //则通过如下方式转换,然后再验签
  160. $php_func = 'php_SM2FormatConvert';
  161. $recode = $php_func(201,$der, $rs);
  162. echo "recode:$recode \n";
  163. echo "signValue RS: ".string2hex($rs)." len:".strlen($rs)." \n";
  164. }
  165. //test php_SM2SignHash php_SM2VerifyHash
  166. function test_php_SM2SignHashAndSM2VerifyHash(){
  167. $php_func = 'php_SM2SignHash';
  168. echo "--------$php_func--------\n";
  169. $data = "this is test 这是测试!this is test 这是测试!";
  170. $sm2keys = test_php_SM2Genkey();//0 privkey 1 pubkey
  171. $php_func = 'php_SM3Crypt';
  172. $recode = $php_func($data,$sm3hash);
  173. echo "recode:$recode \n";
  174. echo "sm3hash: ".string2hex($sm3hash)." len:".strlen($sm3hash)." \n";
  175. $php_func = 'php_SM2SignHash';
  176. $recode = $php_func($sm3hash, $redata,$sm2keys[0]);
  177. echo "recode:$recode \n";
  178. echo "signValue: ".string2hex($redata)." len:".strlen($redata)." \n";
  179. $php_func = 'php_SM2VerifyHash';
  180. $recode = $php_func($sm3hash, $redata,$sm2keys[1]);
  181. echo "recode:$recode \n";
  182. }
  183. //test php_SM2Encrypt php_SM2Decrypt
  184. function test_php_SM2EncryptAndSM2Decrypt(){
  185. $php_func = 'php_SM2Encrypt';
  186. echo "--------$php_func--------\n";
  187. $data = "this is test 这是测试!this is test 这是测试!";
  188. $sm2keys = test_php_SM2Genkey();//0 privkey 1 pubkey
  189. //加密
  190. $recode = $php_func($data, $cipher,$sm2keys[1]);
  191. echo "recode:$recode \n";
  192. echo "cipher: ".string2hex($cipher)." len:".strlen($cipher)." \n";
  193. //php_SM2Encrypt接口返回的密文值是c1c3c2格式,以下示例转DER编码
  194. $php_func = 'php_SM2FormatConvert';
  195. $recode = $php_func(102,$cipher, $der);
  196. echo "recode:$recode \n";
  197. echo "cipher DER: ".string2hex($der)." len:".strlen($der)." \n";
  198. //解密
  199. $php_func = 'php_SM2Decrypt';
  200. $recode = $php_func($cipher, $plain,$sm2keys[0]);
  201. echo "recode:$recode \n";
  202. echo "plain: $plain\n";
  203. //php_SM2Decrypt 接收密文值是c1c3c2格式,若对方给的密文值是DER格式
  204. //则通过如下方式转换,然后再传入接口解密
  205. $php_func = 'php_SM2FormatConvert';
  206. $recode = $php_func(101,$der, $c1c3c2);
  207. echo "recode:$recode \n";
  208. echo "cipher c1c3c2: ".string2hex($c1c3c2)." len:".strlen($c1c3c2)." \n";
  209. }
  210. //test php_HextoAsc php_AsctoHex
  211. function test_php_HextoAscAndAsctoHex(){
  212. $php_func = 'php_AsctoHex';
  213. echo "--------$php_func--------\n";
  214. $data = "this is test 这是测试!this is test 这是测试!";
  215. $recode = $php_func($data, $hex);
  216. echo "recode:$recode \n";
  217. echo "hex: $hex len:".strlen($hex)." \n";
  218. $php_func = 'php_HextoAsc';
  219. $recode = $php_func($hex, $asc);
  220. echo "recode:$recode \n";
  221. echo "plain: $asc\n";
  222. }
  223. //test php_base64_decode php_base64_encode
  224. function test_php_base64_decodeAndbase64_encode(){
  225. $php_func = 'php_base64_encode';
  226. echo "--------$php_func--------\n";
  227. $data = "this is test 这是测试!this is test 这是测试!";
  228. $recode = $php_func($data, $base64);
  229. echo "recode:$recode \n";
  230. echo "base64char: $base64 len:".strlen($base64)." \n";
  231. $php_func = 'php_base64_decode';
  232. $recode = $php_func($base64, $orgin);
  233. echo "recode:$recode \n";
  234. echo "plain: $orgin\n";
  235. }
  236. //test
  237. function test_php_SM2FormatConvert(){
  238. $php_func = 'php_SM2FormatConvert';
  239. echo "--------$php_func--------\n";
  240. //hex编码的DER密文
  241. $data =
  242. "308198021F5A9D5395EE7A52463E07727CAEA3001A3D95ADF105992B3F8430C0B63D5272022011BC87B586EA976FF2A8009393FE3F71FEBD11FD249F59796054DB66B4789C6D04201D3FAEF883C8D839DDF36FC083B125DE65D8E58B3AACEB97CEBCF529A8F0C2A7043119C9E04B8DB90E6CC0898A85665DA1FA990B4DB6197AE55674D68C3AB5328D408D0B7EBAE99ED6C8243FED2A18C024545A";
  243. //先解码再转der格式(如果是base64编码,则用base64解码)
  244. $php_HextoAsc = 'php_HextoAsc';
  245. $recode = $php_HextoAsc($data, $dataAsc);
  246. $recode = $php_func(101,$dataAsc, $c1c3c2);
  247. echo "recode:$recode \n";
  248. echo "c1c3c2: ".string2hex($c1c3c2)." len:".strlen($c1c3c2)." \n";
  249. }
  250. //test SM4CBCCrypt
  251. function test_php_SM4CBCCrypt(){
  252. $php_func = 'php_SM4CBCCrypt';
  253. echo "--------$php_func--------\n";
  254. $data = "this is a test! 这是个测试!";
  255. $plainkey = "1234567890123456";//如果是hex编码,务必解码
  256. //接口是密文key,将明文key加密后再传入php_SM4CBCCrypt进行数据加密
  257. //不必要每次都加密key,建议手工加密一次,将key密文保存使用,key明文保存至安全的地方
  258. //若是会话级别的key则自行定策略
  259. $php_CryptKey = 'php_CryptKey';
  260. $recode = $php_CryptKey(0, $plainkey,$key);
  261. echo "recode:$recode \n";
  262. //打印key密文
  263. $php_hex = 'php_AsctoHex';
  264. $recode = $php_hex($key, $hex);
  265. echo "recode:$recode \n";
  266. echo "hex: $hex len:".strlen($hex)." \n";
  267. $iv = "1234567812345678";
  268. //加密
  269. $recode = $php_func(0,$data,$redata,$key,$iv);
  270. echo "recode:$recode \n";
  271. echo "redata: ".string2hex($redata)." len:".strlen($redata)." \n";
  272. //解密
  273. $recode = $php_func(1,$redata,$dedata,$key,$iv);
  274. echo "recode:$recode \n";
  275. echo "plain: ".$dedata." \n";
  276. }
  277. function run_test(){
  278. //先初始化接口,初始化成功后,可重复调用加解密接口
  279. test_php_crypto_init();
  280. test_php_SM4Crypt1();
  281. echo "\n";
  282. test_php_SM4Crypt2();
  283. echo "\n";
  284. test_php_CryptFile();
  285. echo "\n";
  286. test_php_CryptKey();
  287. echo "\n";
  288. test_php_SM3Crypt();
  289. echo "\n";
  290. test_php_MACCrypt();
  291. echo "\n";
  292. test_php_CryptLmkMac();
  293. echo "\n";
  294. test_php_SM2SignAndSM2Verify();
  295. echo "\n";
  296. test_php_SM2SignHashAndSM2VerifyHash();
  297. echo "\n";
  298. test_php_SM2EncryptAndSM2Decrypt();
  299. echo "\n";
  300. test_php_HextoAscAndAsctoHex();
  301. echo "\n";
  302. test_php_base64_decodeAndbase64_encode();
  303. echo "\n";
  304. test_php_SM2FormatConvert();
  305. echo "\n";
  306. test_php_SM4CBCCrypt();
  307. }
  308. run_test();
  309. ?>