当我只有原始签名 (R, S) 和原始公钥点 (Qx, Qy) 时,ECDSA 如何验证 Java 中的数据块

如何解决当我只有原始签名 (R, S) 和原始公钥点 (Qx, Qy) 时,ECDSA 如何验证 Java 中的数据块

我有一个字节数组消息以及签名的四个 32 字节原始组件:QxQyRS。我如何将这些格式化/编码为 ECPublicKeybyte[] 函数期望的签名 Signature::verify?签名是使用 SHA-256 ECDSA 创建的。

解决方法

该解决方案需要结合其他两个答案(并在 Java 中实现):

创建公钥涉及生成虚拟密钥对并使用其 ECParameterSpec,然后替换您的原始公钥点 [Qx,Qy]。还必须从原始字节创建 BigInteger。这可以在下面的 createPublicKey 函数中看到。

签名(由 R 和 S 组成)必须以 DER 格式编码 - 我找不到现有的 Java 实用程序函数来执行此操作,因此它是手动完成的,如中所示createDERSigniture 下方。

/**
 * Check to see if `message` matches signature [R,S] and public key point [qx,qy]
 *
 * @param message device ID
 * @param r       first part of the ECDSA signature
 * @param s       second part of the ECDSA signature
 * @param qx      x part of the public key point
 * @param qy      y part of the public key point
 * @return true iff the signature signed the message
 * @note ECDSA SHA-256 is used - r,s,qx and qy must be 32 bytes long
 */
private static boolean ecdsaVerify(@NotNull final byte[] message,@NotNull final byte[] r,@NotNull final byte[] s,@NotNull final byte[] qx,@NotNull final byte[] qy)
{
   try
   {
      // convert from raw bytes to something `Signature` can understand
      ECPublicKey publicKey = createPublicKey(qx,qy);
      byte[] derSignature = createDERSigniture(r,s);

      // do the actual verification
      Signature sig = Signature.getInstance("SHA256withECDSA");
      sig.initVerify(publicKey);
      sig.update(message);
      return sig.verify(derSignature);
   }
   catch (NoSuchAlgorithmException | InvalidKeySpecException | InvalidKeyException | SignatureException | InvalidAlgorithmParameterException e)
   {
      return false;
   }
}

/**
 * Format the raw elliptic curve point [qx,qy] with the NIST P-256
 *
 * @param qx the x coordinate - should be 32 bytes
 * @param qy the y coordinate - should be 32 bytes
 * @return the public key from the raw coordinates
 * @see https://stackoverflow.com/a/22652372/1229250
 */
private static ECPublicKey createPublicKey(byte[] qx,byte[] qy)
        throws NoSuchAlgorithmException,InvalidAlgorithmParameterException,InvalidKeySpecException
{
   // generate bogus keypair so we can get its spec
   KeyPairGenerator kpg = KeyPairGenerator.getInstance("EC");
   kpg.initialize(new ECGenParameterSpec("secp256r1"));// NIST P-256
   ECPublicKey apub = (ECPublicKey)kpg.generateKeyPair().getPublic();
   ECParameterSpec aspec = apub.getParams();

   ECPoint point = new ECPoint(new BigInteger(1,qx),new BigInteger(1,qy));
   ECPublicKeySpec pks = new ECPublicKeySpec(point,aspec);
   return (ECPublicKey)KeyFactory.getInstance("EC").generatePublic(pks);
}

/**
 * Encode a raw signature in the DER format
 *
 * @param r first part of the raw signature - should be 32 bytes
 * @param s second part of the raw signature - should be 32 bytes
 * @return a DER formatted signature
 * @see https://crypto.stackexchange.com/a/57734/89173
 */
private static byte[] createDERSigniture(byte[] r,byte[] s)
{
   // build backwards
   byte[] der = {};
   der = prependPoint(der,s);
   der = prependPoint(der,r);
   return prependHeader(der);
}

/**
 * Take in a raw coordinate value,`p` and then wrap and prepend it to `derSig`
 *
 * Wrapping includes adding the header by (0x02),the length as well as a leading zero if needed.
 *
 * @param derSig the end of the DER formatted signature,so far (may be empty)
 * @param p      a part of the coordinate to prepend
 * @return the signature so far with an addition component
 */
private static byte[] prependPoint(byte[] derSig,byte[] p)
{
   // append a zero byte if the leading *bit* is one (so as a whole,it is a positive number)
   final boolean prependZero = (p[0] & 0x80) == 0x80;
   final int pointLength = p.length + (prependZero ? 1 : 0);
   final int prependSize = 2 + pointLength;
   final int totalNewSize = prependSize + derSig.length;

   byte[] result = new byte[totalNewSize];
   result[0] = 2;
   result[1] = (byte) pointLength;
   if (prependZero)
   {
      result[2] = 0;
   }
   System.arraycopy(p,result,prependZero ? 3 : 2,p.length);
   System.arraycopy(derSig,prependSize,derSig.length);

   return result;
}

/**
 * Add the DER header - the 0x30 magic number and the length of the point
 *
 * @param derSig the DER signature so far - must have the two points
 * @return the signature with the proper header
 */
private static byte[] prependHeader(byte[] derSig)
{
   byte[] result = new byte[derSig.length + 2];
   result[0] = 0x30;
   result[1] = (byte) derSig.length;
   System.arraycopy(derSig,2,derSig.length);
   return result;
}

版权声明:本文内容由互联网用户自发贡献,该文观点与技术仅代表作者本人。本站仅提供信息存储空间服务,不拥有所有权,不承担相关法律责任。如发现本站有涉嫌侵权/违法违规的内容, 请发送邮件至 dio@foxmail.com 举报,一经查实,本站将立刻删除。

相关推荐


依赖报错 idea导入项目后依赖报错,解决方案:https://blog.csdn.net/weixin_42420249/article/details/81191861 依赖版本报错:更换其他版本 无法下载依赖可参考:https://blog.csdn.net/weixin_42628809/a
错误1:代码生成器依赖和mybatis依赖冲突 启动项目时报错如下 2021-12-03 13:33:33.927 ERROR 7228 [ main] o.s.b.d.LoggingFailureAnalysisReporter : *************************** APPL
错误1:gradle项目控制台输出为乱码 # 解决方案:https://blog.csdn.net/weixin_43501566/article/details/112482302 # 在gradle-wrapper.properties 添加以下内容 org.gradle.jvmargs=-Df
错误还原:在查询的过程中,传入的workType为0时,该条件不起作用 <select id="xxx"> SELECT di.id, di.name, di.work_type, di.updated... <where> <if test=&qu
报错如下,gcc版本太低 ^ server.c:5346:31: 错误:‘struct redisServer’没有名为‘server_cpulist’的成员 redisSetCpuAffinity(server.server_cpulist); ^ server.c: 在函数‘hasActiveC
解决方案1 1、改项目中.idea/workspace.xml配置文件,增加dynamic.classpath参数 2、搜索PropertiesComponent,添加如下 <property name="dynamic.classpath" value="tru
删除根组件app.vue中的默认代码后报错:Module Error (from ./node_modules/eslint-loader/index.js): 解决方案:关闭ESlint代码检测,在项目根目录创建vue.config.js,在文件中添加 module.exports = { lin
查看spark默认的python版本 [root@master day27]# pyspark /home/software/spark-2.3.4-bin-hadoop2.7/conf/spark-env.sh: line 2: /usr/local/hadoop/bin/hadoop: No s
使用本地python环境可以成功执行 import pandas as pd import matplotlib.pyplot as plt # 设置字体 plt.rcParams['font.sans-serif'] = ['SimHei'] # 能正确显示负号 p
错误1:Request method ‘DELETE‘ not supported 错误还原:controller层有一个接口,访问该接口时报错:Request method ‘DELETE‘ not supported 错误原因:没有接收到前端传入的参数,修改为如下 参考 错误2:cannot r
错误1:启动docker镜像时报错:Error response from daemon: driver failed programming external connectivity on endpoint quirky_allen 解决方法:重启docker -> systemctl r
错误1:private field ‘xxx‘ is never assigned 按Altʾnter快捷键,选择第2项 参考:https://blog.csdn.net/shi_hong_fei_hei/article/details/88814070 错误2:启动时报错,不能找到主启动类 #
报错如下,通过源不能下载,最后警告pip需升级版本 Requirement already satisfied: pip in c:\users\ychen\appdata\local\programs\python\python310\lib\site-packages (22.0.4) Coll
错误1:maven打包报错 错误还原:使用maven打包项目时报错如下 [ERROR] Failed to execute goal org.apache.maven.plugins:maven-resources-plugin:3.2.0:resources (default-resources)
错误1:服务调用时报错 服务消费者模块assess通过openFeign调用服务提供者模块hires 如下为服务提供者模块hires的控制层接口 @RestController @RequestMapping("/hires") public class FeignControl
错误1:运行项目后报如下错误 解决方案 报错2:Failed to execute goal org.apache.maven.plugins:maven-compiler-plugin:3.8.1:compile (default-compile) on project sb 解决方案:在pom.
参考 错误原因 过滤器或拦截器在生效时,redisTemplate还没有注入 解决方案:在注入容器时就生效 @Component //项目运行时就注入Spring容器 public class RedisBean { @Resource private RedisTemplate<String
使用vite构建项目报错 C:\Users\ychen\work>npm init @vitejs/app @vitejs/create-app is deprecated, use npm init vite instead C:\Users\ychen\AppData\Local\npm-