last block incomplete with CipherInputStream/CipherOutputStream, even with padding AES/CBC/PKCS5Padding

后端 未结 6 2098
自闭症患者
自闭症患者 2020-12-28 18:06

Actually, I searched lot from internet and in stackoverflow too for this,

Initially I don\'t used padding in my encryption and decryption,

But Finally I got

相关标签:
6条回答
  • 2020-12-28 18:47

    I've seen CipherInputStream fail with padding problems too. This behaviour varied across different versions of the JVM. Eg 7u55 32 bit my code worked fine, 7u55 64 bit same code failed... and I also saw failures on later 32 bit JVMs. Workaround was to use byte array methods and avoid CipherInputStream.

    0 讨论(0)
  • 2020-12-28 18:49

    I've had exactly the same problem. The accepted solution works because you've used cipher mode that does not require padding, but this is not a way crypto-related issues are fixed.

    According to the CipherOutputStream documentation, you have to call close() method in order to finalize encryption properly (i.e., padding block is added).

    This method invokes the doFinal method of the encapsulated cipher object, which causes any bytes buffered by the encapsulated cipher to be processed. The result is written out by calling the flush method of this output stream.

    This method resets the encapsulated cipher object to its initial state and calls the close method of the underlying output stream.

    If you want to preserve OutputStream open even after calling CipherOutputStream.close() method, you can wrap OutputStream to the stream that does not close it. For example:

    public class NotClosingOutputStream extends OutputStream {
      private final OutputStream os;
    
      public NotClosingOutputStream(OutputStream os) {
        this.os = os;
      }
    
      @Override
      public void write(int b) throws IOException {
        os.write(b);
      }
    
      @Override
      public void close() throws IOException {
        // not closing the stream.
      }
    
      @Override
      public void flush() throws IOException {
        os.flush();
      }
    
      @Override
      public void write(byte[] buffer, int offset, int count) throws IOException {
        os.write(buffer, offset, count);
      }
    
      @Override
      public void write(byte[] buffer) throws IOException {
        os.write(buffer);
      }
    }
    

    Then you can use:

    ...
    cos = new CipherOutputStream(new NotClosingOutputStream(os), encipher);
    copyByte(is, cos);
    cos.close();
    ...
    

    Note the os stream does not get closed, you need to do it on your own when appropriate.

    0 讨论(0)
  • 2020-12-28 18:50

    Using CipherInputStream with padding is possible, switching to NoPadding is a workaround but not a solution.

    Padding is applied when CipherInputStream reaches the end of the stream. The important point is that you have to call the read() method of the CipherInputStream at least twice for getting all the data.

    The following example demonstrates reading a CipherInputStream with padding:

    public static void test() throws Exception {
        Cipher cipher = Cipher.getInstance("AES/CBC/PKCS5Padding");
    
        SecureRandom rnd = new SecureRandom();
        byte[] keyData = new byte[16];
        byte[] iv = new byte[16];
        rnd.nextBytes(keyData);
        rnd.nextBytes(iv);
        SecretKeySpec key = new SecretKeySpec(keyData, "AES");
    
        cipher.init(Cipher.ENCRYPT_MODE, key, new IvParameterSpec(iv));
    
        ByteArrayOutputStream buffer = new ByteArrayOutputStream();
        CipherOutputStream out = new CipherOutputStream(buffer, cipher);
    
        byte[] plain = "Test1234567890_ABCDEFG".getBytes();
        out.write(plain);
        out.flush();
        out.close();
        byte[] encrypted = buffer.toByteArray();
        System.out.println("Plaintext length: " + plain.length);
        System.out.println("Padding length  : " + (cipher.getBlockSize() - (plain.length % cipher.getBlockSize())));
        System.out.println("Cipher length   : " + encrypted.length);
    
        cipher.init(Cipher.DECRYPT_MODE, key, new IvParameterSpec(iv));
        CipherInputStream in = new CipherInputStream(new ByteArrayInputStream(encrypted), cipher);
        buffer = new ByteArrayOutputStream();
        byte[] b = new byte[100];
        int read;
        while ((read = in.read(b)) >= 0) {
            buffer.write(b, 0, read);
        }
        in.close();
    
        // prints Test1234567890_ABCDEFG
        System.out.println(new String(buffer.toByteArray()));
    }
    
    0 讨论(0)
  • 2020-12-28 18:56

    Finally I got answer for my own question, with trial and error Actually here Conflict is I set Padding in encipher = Cipher.getInstance("AES/CBC/PKCS7Padding");

    and Set IV with some values.....,

    Finally I got Answer only just replaced the Algorithm

    From:

    AES/CBC/PKCS7Paddinng

    To:

    AES/CFB8/NoPadding

    and its worked like charm...., So I suggest this answer for others who struggling with this problem, if you solved you problem, mention here for others...

    0 讨论(0)
  • 2020-12-28 19:01

    Not sure if this is relevant to OP's problem, but this may help someone.

    When you repeatedly get that java.io.IOException: last block incomplete in decryption regardless of what you change, check if you are still using the file from some previous run. If your read/write test code appends to that file, you will always get that exception -- unless you delete the corrupt file that you write to.

    0 讨论(0)
  • 2020-12-28 19:05

    For those who are struggling with aes encryption / decryption with image file, here is my example, and it works like a charm.

    public static String decrypt(String textToDecrypt)  {
        byte[] dataDecrypted = null;
    
        try {
            Cipher cipher = getCipher();
            SecretKey key = getKey();
            IvParameterSpec iv = getIV();
            if(cipher == null) {
                return null;
            }
            cipher.init(Cipher.DECRYPT_MODE, key, iv);
    
            byte[] dataToDecrypt = Base64.decode(textToDecrypt, Base64.NO_WRAP);
            ByteArrayInputStream bais = new ByteArrayInputStream(dataToDecrypt);
            ByteArrayOutputStream baos = new ByteArrayOutputStream();
            // Wrap the output stream
            CipherOutputStream cos = new CipherOutputStream(baos, cipher);
    
            // Read bytes
            int count = 0;
            byte[] buffer = new byte[DEFAULT_BYTE_READ_WRITE_BLOCK_BUFFER_SIZE];
            while ((count = bais.read(buffer)) != -1) {
                cos.write(buffer, 0, count);
            }
            cos.close();    // manually do close for the last bit
    
            dataDecrypted = baos.toByteArray();
    
            // Close streams.
            baos.close();
            bais.close();
        } catch (Exception e) {
            e.printStackTrace();
        }
    
        return (dataDecrypted == null ? "" : Base64.encodeToString(dataDecrypted, Base64.NO_WRAP));
    }
    

    public static String encrypt(String textToEncrypt) {
        byte[] dataEncrypted = null;
    
        try {
            Cipher cipher = getCipher();
            SecretKey key = getKey();
            IvParameterSpec iv = getIV();
            if (cipher == null) {
                return null;
            }
            cipher.init(Cipher.ENCRYPT_MODE, key, iv);
    
            byte[] dataToEncrypt = Base64.decode(textToEncrypt, Base64.NO_WRAP);
            ByteArrayInputStream bais = new ByteArrayInputStream(dataToEncrypt);
            ByteArrayOutputStream baos = new ByteArrayOutputStream();
            // Wrap the output stream
            CipherOutputStream cos = new CipherOutputStream(baos, cipher);
    
            // Read bytes
            int count = 0;
            byte[] buffer = new byte[DEFAULT_BYTE_READ_WRITE_BLOCK_BUFFER_SIZE];
            while ((count = bais.read(buffer)) != -1) {
                cos.write(buffer, 0, count);
            }
            cos.close();    // manually do close for the last bit
    
            dataEncrypted = baos.toByteArray();
    
            // Close streams.
            baos.close();
            bais.close();
        } catch (Exception e) {
            e.printStackTrace();
        }
    
        return (dataEncrypted == null ? "" : Base64.encodeToString(dataEncrypted, Base64.NO_WRAP));
    }
    
    0 讨论(0)
提交回复
热议问题