python3 aes 字符串加解密示例

下面是使用 Python 实现 AES 加密和解密的示例代码:

  1. import base64
  2. import hashlib
  3. import os
  4. from cryptography.hazmat.backends import default_backend
  5. from cryptography.hazmat.primitives import padding, serialization
  6. from cryptography.hazmat.primitives.ciphers import (
  7. Cipher, algorithms, modes
  8. )
  9. def generate_key(password: str, salt: bytes, iterations: int = 100000, key_size: int = 32):
  10. kdf = hashlib.pbkdf2_hmac('sha256', password.encode(), salt, iterations, key_size)
  11. return kdf
  12. def encrypt(plaintext: str, password: str, salt: bytes):
  13. # Generate key
  14. key = generate_key(password, salt)
  15. # Add padding to the plaintext
  16. padder = padding.PKCS7(algorithms.AES.block_size).padder()
  17. padded_plaintext = padder.update(plaintext.encode()) + padder.finalize()
  18. # Generate a random IV
  19. iv = os.urandom(16)
  20. # Encrypt the plaintext
  21. cipher = Cipher(algorithms.AES(key), modes.CBC(iv), backend=default_backend())
  22. encryptor = cipher.encryptor()
  23. ciphertext = encryptor.update(padded_plaintext) + encryptor.finalize()
  24. # Concatenate the IV and the ciphertext
  25. encrypted_message = iv + ciphertext
  26. # Encode the encrypted message as a base64 string
  27. encoded_encrypted_message = base64.b64encode(encrypted_message)
  28. return encoded_encrypted_message
  29. def decrypt(encoded_encrypted_message: str, password: str, salt: bytes):
  30. # Decode the encrypted message from a base64 string
  31. encrypted_message = base64.b64decode(encoded_encrypted_message)
  32. # Split the IV and the ciphertext
  33. iv = encrypted_message[:16]
  34. ciphertext = encrypted_message[16:]
  35. # Generate key
  36. key = generate_key(password, salt)
  37. # Decrypt the ciphertext
  38. cipher = Cipher(algorithms.AES(key), modes.CBC(iv), backend=default_backend())
  39. decryptor = cipher.decryptor()
  40. padded_plaintext = decryptor.update(ciphertext) + decryptor.finalize()
  41. # Remove padding from the plaintext
  42. unpadder = padding.PKCS7(algorithms.AES.block_size).unpadder()
  43. plaintext = unpadder.update(padded_plaintext) + unpadder.finalize()
  44. return plaintext.decode()
