1、在子应用内创建utils.py并添加以下内容
from Crypto.Cipher import AES
from binascii import b2a_hex, a2b_hex
class Prpcrypt():
def __init__(self, key, iv):
self.key = key
self.iv = iv
self.mode = AES.MODE_CBC
# 加密函数,如果text不是16的倍数【加密文本text必须为16的倍数!】,那就补足为16的倍数
def encrypt(self, text):
cryptor = AES.new(self.key, self.mode, self.iv)
# 这里密钥key 长度必须为16(AES-128)、24(AES-192)、或32(AES-256)Bytes 长度.目前AES-128足够用
length = 16
count = len(text)
if (count % length != 0):
add = length - (count % length)
else:
add = 0
text = text + ('\0' * add)
text = text.encode()
self.ciphertext = cryptor.encrypt(text)
# 因为AES加密时候得到的字符串不一定是ascii字符集的,输出到终端或者保存时候可能存在问题
# 所以这里统一把加密后的字符串转化为16进制字符串 ,当然也可以转换为base64加密的内容,可以使用b2a_base64(self.ciphertext)
return b2a_hex(self.ciphertext)
# 解密后,去掉补足的空格用strip() 去掉
def decrypt(self, text):
cryptor = AES.new(self.key, self.mode, self.iv)
plain_text = cryptor.decrypt(a2b_hex(text))
return plain_text.rstrip('\0'.encode())
2、views.py
from .utils import Prpcrypt
class UserView(APIView):
"""解密密码"""
def get(self, request):
# 加密的密码
aes_password = request.GET.get('aes_password')
# openid
openid = request.GET.get('openid')
# 向量
iv = request.GET.get('vinum')
# key
key = sha1(iv.encode()).hexdigest()
# 截取并编码向量
iv = iv[0:16]
iv = iv.encode()
# 截取并编码key
key = key[0:16]
key = key.encode()
# 初始化密钥
pc = Prpcrypt(key, iv) # 初始化密钥
password = pc.decrypt(aes_password)
password = password.decode()
data = {
‘password':password
}
return Response(data=data, status=status.HTTP_200_OK)