使用BC实现证书文件及P7验证RSA签名
证书文件:
public bool Verify(string strPemCert, string strPemSignature, string strPlain)
...
byte[] btSignature = Convert.FromBase64String(strPemSignature);
byte[] btPlain = Encoding.ASCII.GetBytes(strPlain);
byte[] btCert = Convert.FromBase64String(strPemCert);
X509CertificateStructure x509 = X509CertificateStructure.GetInstance(Asn1Object.FromByteArray(btCert));
AsymmetricKeyParameter pubKey = PublicKeyFactory.CreateKey(x509.SubjectPublicKeyInfo);
ISigner signer = SignerUtilities.GetSigner("1.2.840.113549.1.1.5");
signer.Init(false, pubKey);
signer.BlockUpdate(btPlain, 0, btPlain.Length);
Boolean bVerify = signer.VerifySignature(btSignature);
...
P7:
public bool Verify(String strSignedData, String strPlain)
...
byte[] btSignedData = Convert.FromBase64String(strSignedData);
DerSequence seq = (DerSequence)Asn1Object.FromByteArray(btSignedData);
DerTaggedObject content = (DerTaggedObject)seq[1];
SignedData signData = SignedData.GetInstance(content.GetObject());
DerOctetString octString = (DerOctetString)signData.ContentInfo.Content;
String sig = Encoding.Unicode.GetString(octString.GetOctets());
if (sig == null && !sig.Equals(strPlain))
{
throw new Exception("INFO_VERIFY_PLAIN_FAIL");
}
SignerInfo signerInfo = SignerInfo.GetInstance(signData.SignerInfos[0]);
byte[] btPlain = signerInfo.AuthenticatedAttributes.GetEncoded("DER");
DerOctetString octSignature = (DerOctetString)signerInfo.EncryptedDigest;
byte[] btSignature = octSignature.GetOctets();
byte[] btCert = signData.Certificates[0].GetDerEncoded();
X509CertificateStructure x509 = X509CertificateStructure.GetInstance(Asn1Object.FromByteArray(btCert));
AsymmetricKeyParameter pubKey = PublicKeyFactory.CreateKey(x509.SubjectPublicKeyInfo);
ISigner signer = SignerUtilities.GetSigner("1.2.840.113549.1.1.5");
signer.Init(false, pubKey);
signer.BlockUpdate(btPlain, 0, btPlain.Length);
Boolean bVerify = signer.VerifySignature(btSignature);
...