现代密码学实验五:签名算法
一、實(shí)驗(yàn)?zāi)康?/p>
1.掌握數(shù)字簽名的基本原理,理解RSA算法如何提供數(shù)字簽名。
2.熟悉實(shí)驗(yàn)環(huán)境和加密軟件CrypTool 1.4(CrypTool 2)的使用。
3.編寫(xiě)代碼實(shí)現(xiàn)簽名算法。
二、實(shí)驗(yàn)內(nèi)容
- 運(yùn)行CrypTool 1.4(CrypTool 2),使用RSA算法對(duì)消息進(jìn)行簽名操作,選擇公鑰PK=(e,N),私鑰為sk=(d,N)。例如:
消息:
Out of all cryptographic primitives, the digital signature using public key cryptography is considered as very important and useful tool to achieve information security. Apart from ability to provide non-repudiation of message, the digital signature also provides message authentication and data integrity.
密鑰:e = 11
N =
97837973726418359868516951718991281325771149750958732944765111213631328027493925740023000937277990315891588119835562940190113563334615471147089645563941484459898854377253031679968434226000865737244299665393453851802313775580309976978804698982229486068546397607971083305570968358870209409102684170827187712579
d =
53366167487137287201009246392177062541329718045977490697144606116526178924087595858194364147606176535940866247183034331012789216364335711534776170307604435275621882890925722486791216663911766481240927473604083681494108652553529557950472379863877351129463207267185120618342084129306558631987155442108022251891
- 編程實(shí)現(xiàn)RSA/ElGamal簽名算法并測(cè)試簽名和驗(yàn)證過(guò)程。要求消息頭部包含作者的姓名拼音,并通過(guò)哈希函數(shù)SHA-1得到消息摘要,對(duì)摘要進(jìn)行簽名,編程語(yǔ)言不限。
- 實(shí)驗(yàn)步驟
實(shí)驗(yàn)(1):
- 通過(guò)課堂與課本得知,RSA簽名和實(shí)驗(yàn)4中的RSA算法正好相反,解密對(duì)應(yīng)于簽名,且解密的密鑰為加密者的私鑰。加密對(duì)應(yīng)于驗(yàn)證,于是打開(kāi)Cryptool2.1使用RSA解密算法生成16進(jìn)制文件。如圖一、二。
?
圖一:簽名過(guò)程
?
圖二:驗(yàn)證過(guò)程
實(shí)驗(yàn)(2):
1、運(yùn)用python自帶的庫(kù)生成sha-1消息摘要(圖三):
?
圖三:sha-1實(shí)現(xiàn)
2、將實(shí)驗(yàn)4的RSA算法實(shí)現(xiàn)倒置,解密對(duì)應(yīng)簽名,加密對(duì)應(yīng)驗(yàn)證(如圖四,五)
?
圖四:解密對(duì)應(yīng)簽名
?
圖五:加密對(duì)應(yīng)驗(yàn)證
- 實(shí)驗(yàn)結(jié)果
實(shí)驗(yàn)(1):
數(shù)字簽名:

RSA加密后生成的密文:
Out of all cryptographic primitives, the digital signature using public key cryptography is considered as very important and useful tool to achieve information security. Apart from ability to provide non-repudiation of message, the digital signature also provides message authentication and data integrity.
與原文相同,驗(yàn)證成功。
實(shí)驗(yàn)(2):
私鑰對(duì)消息摘要進(jìn)行簽名后,運(yùn)用公鑰驗(yàn)證簽名,結(jié)果與摘要相同,驗(yàn)證成功!(如圖六)
?
圖六:運(yùn)行結(jié)果
- 實(shí)驗(yàn)心得
本次實(shí)驗(yàn)的綜合性較高,運(yùn)用了前幾課的知識(shí),包括sha-1算法生成消息驗(yàn)證碼,RSA算法實(shí)現(xiàn)不對(duì)稱加密,在運(yùn)用其不對(duì)稱加密的性質(zhì)實(shí)現(xiàn)數(shù)字簽名,而這一切都是基于復(fù)雜的離散對(duì)數(shù)問(wèn)題。Sha-1算法生成固定長(zhǎng)度但又對(duì)明文具有強(qiáng)抗碰撞性,使得對(duì)摘要生成的簽名長(zhǎng)度很短都能達(dá)到較好的驗(yàn)證效果。
- 附錄 (程序代碼)
from random import randintfrom datetime import datetimeimport hashlib"""判斷是否是素?cái)?shù)"""def is_sushu(sushu):for i in range(2,sushu):if sushu % i == 0:return Falsereturn True"""隨機(jī)生成指定范圍的大素?cái)?shù)"""def Create_Sushu():while True:sushu = randint(100,1000 )#下限越大,加密越安全,此處考慮計(jì)算時(shí)間,取值較小if is_sushu(sushu):return sushu"""計(jì)算歐拉函數(shù)"""def Oula(sushu1 , sushu2):return (sushu1-1)*(sushu2-1)"""判斷是否互質(zhì)"""def Is_Huzhi(int_min,int_max):for i in range(2,int_min+1):if int_min % i == 0 and int_max % i == 0:return Falsereturn True"""計(jì)算公鑰,直接計(jì)算編程較簡(jiǎn)單,此處考慮了計(jì)算效率的優(yōu)化"""def Creat_E(oula):top = oulawhile True:i = randint(2,top)for e in range(i,top):if Is_Huzhi(e,oula):return etop = i"""計(jì)算私鑰"""def Compute_D(oula,e):k = 1while ( k*oula+1 )% e != 0:k+=1return int((k*oula+1)/e)"""將字符串轉(zhuǎn)成ASCII"""def Transfer_To_Ascii(messages):result = []for message in messages:result.append(? ord(message) )return result"""將列表轉(zhuǎn)化成字符串"""def Transfer_To_String(string_list):string = ''.join('%s' %id for id in string_list)?????? #有數(shù)字不能直接join .join('%s' %id for id in list1))return stringif __name__ == "__main__":"""p、q為大素?cái)?shù)
n=p*qoula = (p-1)* (q-1)
e 為公鑰
d 為私鑰
"""print("通信開(kāi)始,正在計(jì)算公鑰與私鑰...")time_start = datetime.now()p = Create_Sushu()q = pwhile p ==q :q = Create_Sushu()n = p * qoula = Oula(p, q)e = Creat_E(oula)d = Compute_D(oula,e)time_end = datetime.now()print(f"計(jì)算完成,用時(shí){str(time_end -time_start)}秒 ")print(f"公鑰:n = {str(n)} , e = {str(e)}")print(f"私鑰:n = {str(n)} , d = {str(d)}")m = input('待簽名信息:')hash = hashlib.sha1(m.encode("utf-8")).hexdigest()c_list= Transfer_To_Ascii(hash)print(f"sha-1消息摘要為:{hash}")print("正在簽名...")decode_messages=[]for c in c_list:decode_message = c**d%ndecode_messages.append(chr(decode_message))m_list = Transfer_To_Ascii(decode_messages)print(f"簽名信息:{m_list}")c_list = []for m in m_list:c = m**e%nc_list.append(chr(c))print("正在驗(yàn)證...")print(f"收到的摘要為:{Transfer_To_String(c_list)}")if Transfer_To_String(c_list) == hash:print("驗(yàn)證成功!!!")
總結(jié)
以上是生活随笔為你收集整理的现代密码学实验五:签名算法的全部?jī)?nèi)容,希望文章能夠幫你解決所遇到的問(wèn)題。
- 上一篇: BSGS及其拓展
- 下一篇: 2019牛客暑期多校训练营(第五场)C