【好东西】java版本仿DISCUZ加解密带失效时间

import java.io.UnsupportedEncodingException;
import java.security.MessageDigest;
import java.security.NoSuchAlgorithmException;
import java.util.ArrayList;
import java.util.List;

/**
 * 加密字符串
 */
public class StringProcX {

    /**
     * 密钥
     */
    private static String enc_key = "FBsolTOqSN8JY$3%";
    /**
     * 有效期(秒),为0表示不过期
     */
    public static int expiry = 10*60;

    public static enum procMode {
        Encode, Decode
    };

    private static char[] base64EncodeChars = new char[]{
            'A', 'B', 'C', 'D', 'E', 'F', 'G', 'H',
            'I', 'J', 'K', 'L', 'M', 'N', 'O', 'P',
            'Q', 'R', 'S', 'T', 'U', 'V', 'W', 'X',
            'Y', 'Z', 'a', 'b', 'c', 'd', 'e', 'f',
            'g', 'h', 'i', 'j', 'k', 'l', 'm', 'n',
            'o', 'p', 'q', 'r', 's', 't', 'u', 'v',
            'w', 'x', 'y', 'z', '0', '1', '2', '3',
            '4', '5', '6', '7', '8', '9', '+', '/'};

    private static byte[] base64DecodeChars = new byte[]{
            -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
            -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1,
            -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, -1, 62, -1, -1, -1, 63,
            52, 53, 54, 55, 56, 57, 58, 59, 60, 61, -1, -1, -1, -1, -1, -1,
            -1, 0, 1, 2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14,
            15, 16, 17, 18, 19, 20, 21, 22, 23, 24, 25, -1, -1, -1, -1, -1,
            -1, 26, 27, 28, 29, 30, 31, 32, 33, 34, 35, 36, 37, 38, 39, 40,
            41, 42, 43, 44, 45, 46, 47, 48, 49, 50, 51, -1, -1, -1, -1, -1};

    private static String base64_encode(byte[] data) {
        StringBuffer sb = new StringBuffer();
        int len = data.length;
        int i = 0;
        int b1, b2, b3;
        while (i < len) {
            b1 = data[i++] & 0xff;
            if (i == len) {
                sb.append(base64EncodeChars[b1 >>> 2]);
                sb.append(base64EncodeChars[(b1 & 0x3) << 4]);
                sb.append("==");
                break;
            }
            b2 = data[i++] & 0xff;
            if (i == len) {
                sb.append(base64EncodeChars[b1 >>> 2]);
                sb.append(base64EncodeChars[((b1 & 0x03) << 4) | ((b2 & 0xf0) >>> 4)]);
                sb.append(base64EncodeChars[(b2 & 0x0f) << 2]);
                sb.append("=");
                break;
            }
            b3 = data[i++] & 0xff;
            sb.append(base64EncodeChars[b1 >>> 2]);
            sb.append(base64EncodeChars[((b1 & 0x03) << 4) | ((b2 & 0xf0) >>> 4)]);
            sb.append(base64EncodeChars[((b2 & 0x0f) << 2) | ((b3 & 0xc0) >>> 6)]);
            sb.append(base64EncodeChars[b3 & 0x3f]);
        }
        return sb.toString();
    }

    private static byte[] base64_decode(String str) throws UnsupportedEncodingException {
        int remainder = str.length()%4;
        if(remainder == 2){
            str = str + "==";
        }else if(remainder == 3){
            str = str + "=";
        }
        StringBuffer sb = new StringBuffer();
        byte[] data = str.getBytes("US-ASCII");
        int len = data.length;
        int i = 0;
        int b1, b2, b3, b4;
        while (i < len) {
            do {
                b1 = base64DecodeChars[data[i++]];
            } while (i < len && b1 == -1);
            if (b1 == -1)
                break;
            do {
                b2 = base64DecodeChars[data[i++]];
            } while (i < len && b2 == -1);
            if (b2 == -1)
                break;
            sb.append((char) ((b1 << 2) | ((b2 & 0x30) >>> 4)));
            do {
                b3 = data[i++];
                if (b3 == 61) return sb.toString().getBytes("iso8859-1");
                b3 = base64DecodeChars[b3];
            } while (i < len && b3 == -1);
            if (b3 == -1)
                break;
            sb.append((char) (((b2 & 0x0f) << 4) | ((b3 & 0x3c) >>> 2)));




            do {
                b4 = data[i++];
                if (b4 == 61)
                    return sb.toString().getBytes("iso8859-1");
                b4 = base64DecodeChars[b4];
            } while (i < len && b4 == -1);
            if (b4 == -1)
                break;
            sb.append((char) (((b3 & 0x03) << 6) | b4));
        }
        return sb.toString().getBytes("iso8859-1");
    }

    private static String cutString(String str, int startIndex, int length) {
        if (startIndex >= 0) {
            if (length < 0) {
                length = length * -1;
                if (startIndex - length < 0) {
                    length = startIndex;
                    startIndex = 0;
                } else {
                    startIndex = startIndex - length;
                }
            }
            if (startIndex > str.length()) {
                return "";
            }
        } else {
            if (length < 0) {
                return "";
            } else {
                if (length + startIndex > 0) {
                    length = length + startIndex;
                    startIndex = 0;
                } else {
                    return "";
                }
            }
        }
        if (str.length() - startIndex < length) {
            length = str.length() - startIndex;
        }
        return str.substring(startIndex, startIndex + length);
    }

    private static String cutString(String str, int startIndex) {
        return cutString(str, startIndex, str.length());
    }

    private static String getTimeStamp(){
        return String.format("%010d",System.currentTimeMillis()/1000);
    }

    private static String md5_Hash(String md5_String) {
        StringBuffer sb = new StringBuffer();
        String part = null;
        try {
            MessageDigest md = MessageDigest.getInstance("MD5");
            byte[] md5 = md.digest(md5_String.getBytes());
            for (int i = 0; i < md5.length; i++) {
                part = Integer.toHexString(md5[i] & 0xFF);
                if (part.length() == 1) {
                    part = "0" + part;
                }
                sb.append(part);
            }
        } catch (NoSuchAlgorithmException ex) {
        }
        return sb.toString();
    }

    private static short[] byteToShort(byte[] src){
        short[] ret = new short[src.length];
        for(int i=0; i<src.length; i++){
            ret[i] = src[i]>0 ? (short)src[i] : (short)((short)255 - (short)(~src[i]));
        }
        return ret;
    }

    private static byte[] listToByte(List<Integer> src){
        byte[] ret = new byte[src.size()];
        for(int i=0; i<src.size(); i++){
            ret[i] = (byte)(int)src.get(i);
        }
        return ret;
    }

    public static String procX(String string, procMode operation) throws UnsupportedEncodingException{
        int ckey_length = 4;
        String key = md5_Hash(md5_Hash(enc_key)); //两轮MD5,防止无聊人士通过彩虹表穷举...
        String keya = md5_Hash(cutString(key, 0, 16));
        String keyb = md5_Hash(cutString(key, 16, 16));
        string = string.replace("[a]", "+");
        string = string.replace("[d]", "/");
        string = string.replace("[s]", "=");

        String tt = md5_Hash(getTimeStamp());
        String keyc = ckey_length > 0 ? (operation == procMode.Decode ? cutString(string, 0, ckey_length): cutString(tt, tt.length()-ckey_length)) : "";
        //String keyc = ckey_length > 0 ? (operation == procMode.Decode ? cutString(string, 0, ckey_length): "long" ) : "";

        String cryptkey = keya + md5_Hash(keya + keyc);
        int key_length = cryptkey.length();

        List<Integer> array = new ArrayList<Integer>();
        int string_length = 0;
        List<Integer> result = new ArrayList<Integer>();

        if(operation == procMode.Decode){
            byte[] btArray = base64_decode(cutString(string, ckey_length));
            short[] normal = byteToShort(btArray);
            string_length = normal.length;
            for(int i=0; i<normal.length; i++){
                array.add((int) normal[i]);
            }
        }else{
            String verify = string + keyb;
            long ts = Integer.parseInt(getTimeStamp(),10);
            String tmp = String.format("%010d%s%s", expiry>0 ? ts+expiry : 0, cutString(md5_Hash(verify), 0, 16), string);
            short[] normal = byteToShort(tmp.getBytes("UTF-8"));
            string_length = normal.length;
            for(int j=0; j<normal.length; j++){
                array.add((int) normal[j]);
            }
        }
        int[] box = new int[256];
        int[] rndkey = new int[256];
        for(int i = 0; i <= 255; i++) {
            box[i] = i;
            int pos = i % key_length;
            byte p = (byte)cryptkey.substring(pos, pos+1).getBytes()[0];
            int tmp = p >= 0 ? (int)p : (int)(255 - (int)(~p));
            rndkey[i] = tmp;
        }
        int j=0;
        for(int i=0; i<256; i++){
            j = (j + box[i] + rndkey[i]) % 256;
            int tmp = box[i];
            box[i] = box[j];
            box[j] = tmp;
        }
        int a = j = 0;
        for(int i=0; i<string_length; i++){
            a = (a + 1) % 256;
            j = (j + box[a]) % 256;
            int tmp = box[a];
            box[a] = box[j];
            box[j] = tmp;
            int kx = array.get(i) ^ box[(box[a] + box[j]) %256];
            result.add(kx);
        }

        if(operation == procMode.Decode) {
            //把result转为字符串
            byte[] ret = new byte[result.size()];
            for(int i=0; i<result.size(); i++){
                ret[i] = (byte)(int)result.get(i);
            }
            byte[] toDecode = listToByte(result);
            String strDecode = new String(toDecode);
            //校验解密结果,符合要求则输出
            try {
                long ts = Integer.parseInt(cutString(strDecode, 0, 10),10);
                long now = Integer.parseInt(getTimeStamp(),10);
                String verify = cutString(strDecode, 10, 16);
                String hash = cutString(md5_Hash(cutString(strDecode, 26) + keyb), 0, 16);
                if((ts==0 || ts-now>0) && (verify.equals(hash))){
                    return cutString(strDecode, 26);
                }else{
                    return "";
                }
            } catch (Exception e) {
                return "";
            }
        } else {
            //把result转为byte[],进行 BASE64 编码
            byte[] toEncode = listToByte(result);
            String ret = base64_encode(toEncode);
            //替换掉可能导致问题的字符
            ret = ret.replace("+", "[a]");
            ret = ret.replace("/", "[d]");
            ret = ret.replace("=", "[s]");
            return keyc + ret;
        }
    }

    public static void main(String[] args) {
        try {
            String strOrigin = "aa";
            System.out.println("Before:" + strOrigin);
            String enStr = StringProcX.procX(strOrigin, procMode.Encode);
            System.out.println("AfterX:" + enStr);
            enStr = "5e8b5Ibmi[a]ksT6ijK3[d]Vf6xKL9BlQwK[d]mqA5qyR7TQ[s][s]";
            String deStr = StringProcX.procX(enStr, procMode.Decode);
            System.out.println("Decode:" + deStr);
        } catch (Exception e) {
            e.printStackTrace();
        }
    }
}

authcode2:

import org.apache.commons.codec.binary.Base64;
import java.io.File;
import java.security.MessageDigest;
import java.security.NoSuchAlgorithmException;
import java.util.Calendar;
import java.util.Random;
public class AuthCode {

    public enum DiscuzAuthcodeMode {
        Encode, Decode
    };

    // private static MD5 md5 = new MD5();  
    // private static BASE64 base64 = new BASE64();  

    // / <summary>  
    // / 从字符串的指定位置截取指定长度的子字符串  
    // / </summary>  
    // / <param name="str">原字符串</param>  
    // / <param name="startIndex">子字符串的起始位置</param>  
    // / <param name="length">子字符串的长度</param>  
    // / <returns>子字符串</returns>  
    public static String CutString(String str, int startIndex, int length) {
        if (startIndex >= 0) {
            if (length < 0) {
                length = length * -1;
                if (startIndex - length < 0) {
                    length = startIndex;
                    startIndex = 0;
                } else {
                    startIndex = startIndex - length;
                }
            }

            if (startIndex > str.length()) {
                return "";
            }

        } else {
            if (length < 0) {
                return "";
            } else {
                if (length + startIndex > 0) {
                    length = length + startIndex;
                    startIndex = 0;
                } else {
                    return "";
                }
            }
        }

        if (str.length() - startIndex < length) {

            length = str.length() - startIndex;
        }

        return str.substring(startIndex, startIndex + length);
    }

    // / <summary>  
    // / 从字符串的指定位置开始截取到字符串结尾的了符串  
    // / </summary>  
    // / <param name="str">原字符串</param>  
    // / <param name="startIndex">子字符串的起始位置</param>  
    // / <returns>子字符串</returns>  
    public static String CutString(String str, int startIndex) {
        return CutString(str, startIndex, str.length());
    }

    // / <summary>  
    // / 返回文件是否存在  
    // / </summary>  
    // / <param name="filename">文件名</param>  
    // / <returns>是否存在</returns>  
    public static boolean FileExists(String filename) {
        File f = new File(filename);
        return f.exists();
    }

    // / <summary>  
    // / MD5函数  
    // / </summary>  
    // / <param name="str">原始字符串</param>  
    // / <returns>MD5结果</returns>  
    public static String MD5(String str) {
        // return md5.convert(str);  
        StringBuffer sb = new StringBuffer();
        String part = null;
        try {
            MessageDigest md = MessageDigest.getInstance("MD5");
            byte[] md5 = md.digest(str.getBytes());

            for (int i = 0; i < md5.length; i++) {
                part = Integer.toHexString(md5[i] & 0xFF);
                if (part.length() == 1) {
                    part = "0" + part;
                }
                sb.append(part);
            }

        } catch (NoSuchAlgorithmException ex) {
        }
        return sb.toString();
    }

    // / <summary>  
    // / 字段串是否为Null或为""(空)  
    // / </summary>  
    // / <param name="str"></param>  
    // / <returns></returns>  
    public static boolean StrIsNullOrEmpty(String str) {
        // #if NET1  
        if (str == null || str.trim().equals("")) {
            return true;
        }

        return false;
    }

    // / <summary>  
    // / 用于 RC4 处理密码  
    // / </summary>  
    // / <param name="pass">密码字串</param>  
    // / <param name="kLen">密钥长度,一般为 256</param>  
    // / <returns></returns>  
    static private byte[] GetKey(byte[] pass, int kLen) {
        byte[] mBox = new byte[kLen];

        for (int i = 0; i < kLen; i++) {
            mBox[i] = (byte) i;
        }

        int j = 0;
        for (int i = 0; i < kLen; i++) {

            j = (j + (int) ((mBox[i] + 256) % 256) + pass[i % pass.length])
                    % kLen;

            byte temp = mBox[i];
            mBox[i] = mBox[j];
            mBox[j] = temp;
        }

        return mBox;
    }

    // / <summary>  
    // / 生成随机字符  
    // / </summary>  
    // / <param name="lens">随机字符长度</param>  
    // / <returns>随机字符</returns>  
    public static String RandomString(int lens) {
        char[] CharArray = { 'a', 'b', 'c', 'd', 'e', 'f', 'g', 'h', 'j', 'k',
                'l', 'm', 'n', 'o', 'p', 'q', 'r', 's', 't', 'u', 'v', 'w',
                'x', 'y', 'z', '0', '1', '2', '3', '4', '5', '6', '7', '8', '9' };
        int clens = CharArray.length;
        String sCode = "";
        Random random = new Random();
        for (int i = 0; i < lens; i++) {
            sCode += CharArray[Math.abs(random.nextInt(clens))];
        }
        return sCode;
    }

    // / <summary>  
    // / 使用 Discuz authcode 方法对字符串加密  
    // / </summary>  
    // / <param name="source">原始字符串</param>  
    // / <param name="key">密钥</param>  
    // / <param name="expiry">加密字串有效时间,单位是秒</param>  
    // / <returns>加密结果</returns>  
    public static String authcodeEncode(String source, String key, int expiry) {
        return authcode(source, key, DiscuzAuthcodeMode.Encode, expiry);

    }

    // / <summary>  
    // / 使用 Discuz authcode 方法对字符串加密  
    // / </summary>  
    // / <param name="source">原始字符串</param>  
    // / <param name="key">密钥</param>  
    // / <returns>加密结果</returns>  
    public static String authcodeEncode(String source, String key) {
        return authcode(source, key, DiscuzAuthcodeMode.Encode, 0);

    }

    // / <summary>  
    // / 使用 Discuz authcode 方法对字符串解密  
    // / </summary>  
    // / <param name="source">原始字符串</param>  
    // / <param name="key">密钥</param>  
    // / <returns>解密结果</returns>  
    public static String authcodeDecode(String source, String key) {
        return authcode(source, key, DiscuzAuthcodeMode.Decode, 0);

    }

    // / <summary>  
    // / 使用 变形的 rc4 编码方法对字符串进行加密或者解密  
    // / </summary>  
    // / <param name="source">原始字符串</param>  
    // / <param name="key">密钥</param>  
    // / <param name="operation">操作 加密还是解密</param>  
    // / <param name="expiry">加密字串过期时间</param>  
    // / <returns>加密或者解密后的字符串</returns>  
    private static String authcode(String source, String key,
                                   DiscuzAuthcodeMode operation, int expiry) {

        System.out.println("--------source:" + source);
        try {
            if (source == null || key == null) {
                return "";
            }

            int ckey_length = 4;
            String keya, keyb, keyc, cryptkey, result;

            key = MD5(key);

            keya = MD5(CutString(key, 0, 16));

            keyb = MD5(CutString(key, 16, 16));

            keyc = ckey_length > 0 ? (operation == DiscuzAuthcodeMode.Decode ? CutString(
                    source, 0, ckey_length) : RandomString(ckey_length))
                    : "";

            cryptkey = keya + MD5(keya + keyc);

            if (operation == DiscuzAuthcodeMode.Decode) {
                byte[] temp;
                String tstr = CutString(source, ckey_length);
                System.out.println(" CutString(source, ckey_length):" +  CutString(source, ckey_length));
                temp = Base64.decodeBase64(CutString(source, ckey_length));
                result = new String(RC4(temp, cryptkey));
                if (CutString(result, 10, 16).equals(
                        CutString(MD5(CutString(result, 26) + keyb), 0, 16))) {
                    return CutString(result, 26);
                } else {
                    temp = Base64.decodeBase64(CutString(source + "=", ckey_length));
                    result = new String(RC4(temp, cryptkey));
                    if (CutString(result, 10, 16)
                            .equals(CutString(
                                    MD5(CutString(result, 26) + keyb), 0, 16))) {
                        return CutString(result, 26);
                    } else {
                        temp = Base64.decodeBase64(CutString(source + "==",
                                ckey_length));
                        result = new String(RC4(temp, cryptkey));
                        if (CutString(result, 10, 16).equals(
                                CutString(MD5(CutString(result, 26) + keyb), 0,
                                        16))) {
                            return CutString(result, 26);
                        } else {
                            return "2";
                        }
                    }
                }
            } else {
                source = "0000000000" + CutString(MD5(source + keyb), 0, 16)
                        + source;

                byte[] temp = RC4(source.getBytes("GBK"), cryptkey);

                return keyc + Base64.encodeBase64String(temp);

            }
        } catch (Exception e) {
            e.printStackTrace();
            return "==aaaa==";
        }

    }

    // / <summary>  
    // / RC4 原始算法  
    // / </summary>  
    // / <param name="input">原始字串数组</param>  
    // / <param name="pass">密钥</param>  
    // / <returns>处理后的字串数组</returns>  
    private static byte[] RC4(byte[] input, String pass) {
        if (input == null || pass == null)
            return null;

        byte[] output = new byte[input.length];
        byte[] mBox = GetKey(pass.getBytes(), 256);

        // 加密  
        int i = 0;
        int j = 0;

        for (int offset = 0; offset < input.length; offset++) {
            i = (i + 1) % mBox.length;
            j = (j + (int) ((mBox[i] + 256) % 256)) % mBox.length;

            byte temp = mBox[i];
            mBox[i] = mBox[j];
            mBox[j] = temp;
            byte a = input[offset];

            // byte b = mBox[(mBox[i] + mBox[j] % mBox.Length) % mBox.Length];  
            // mBox[j] 一定比 mBox.Length 小,不需要在取模  
            byte b = mBox[(toInt(mBox[i]) + toInt(mBox[j])) % mBox.length];

            output[offset] = (byte) ((int) a ^ (int) toInt(b));
        }

        return output;
    }

    public static int toInt(byte b) {
        return (int) ((b + 256) % 256);
    }

    public long getUnixTimestamp() {
        Calendar cal = Calendar.getInstance();
        return cal.getTimeInMillis() / 1000;
    }

    public static void main(String[] args) {
        String test = "111aaaaaaaaaaaaaaaaaaaf" +
                "" +
                "";
        String key = "eafdf6";
        String afStr = AuthCode.authcodeEncode(test, key);
        System.out.println("--------encode:" + afStr);
        long lStart = System.currentTimeMillis();
        System.out.println("解码后:" + AuthCode.authcodeDecode(afStr, key));
        long lUseTime = System.currentTimeMillis() - lStart;
        System.out.println("加解密耗时:" + lUseTime + "毫秒");
    }

}  
【好东西】java版本仿DISCUZ加解密带失效时间
滚动到顶部