智能密码钥匙分析.pdf
智能密码钥匙分析
《GM/T0017智能密码钥匙密码应用接口数据格式规范》
打开数据包-搜索8074020000002410003001
8704--CLA、INS02--P1一般都是对原始数据进行杂凑P2--00LC--3字节的长度DATA--应用ID(2字节)+容器ID(2字节)+后面就是杂凑值
提取的杂凑值e61cc0ac465e330e3384e201ec253fd98c78a64720f7ec06d0e35c6f3143400c40
按前述P1表示输入的是原文HASH后预处理的结果=e值
验证:
签名结果:
MIIDKQYKKoEcz1UGAQQCAqCCAxkwggMVAgEBMQ4wDAYIKoEcz1UBg3UFADBQBgoqgRzPVQYBBAIBoEIEQEUzQkFERDc0NThDMDAzRUFCNkI3RjcyREQzMjM5ODk0R
kY5NUY3QUVENUM2NzFFNDI4NEYyNEU4MUFGNDYwNzigggIRMIICDTCCAbCgAwIBAgIMZwwAAAAAAAAAAAAeMAwGCCqBHM9VAYN1BQAwHTELMAkGA1UEBhM
CQ04xDjAMBgNVBAMMBVNNMkNBMB4XDTIyMDgxMjE2MDAwMFoXDTI1MDgxMjE1NTk1OVowazELMAkGA1UEBhMCQ04xEjAQBgNVBAgMCeWMl+S6rOW4gjEVMBM
GA1UECgwM6LGq5a+G56eR5oqAMRkwFwYJKoZIhvcNAQkBFgpobTRAaG0uY29tMRYwFAYDVQQDDA3osarlr4blvIDlj5E0MFkwEwYHKoZIzj0CAQYIKoEcz1UBgi0DQgAEEi7
GKNIbT3Jms1Owpmk38Fm81z54QlfknGe0wSVwpEjWBu3CMGSowNExPuSxT0oqbMq0QDWXNqW9YgssmlniBaOBhTCBgjAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUH
AwQwDgYDVR0PAQH/BAQDAgDAMBEGCWCGSAGG+EIBAQQEAwIAgDAfBgNVHSMEGDAWgBTU93vsHF4cZgXg8V8aKU9yocCmETAdBgNVHQ4EFgQUKlj8v98bGVKSIJZ
Gc6ZOrXUg6CowDAYIKoEcz1UBg3UFAANJADBGAiEA5Y4UE4vxwHKC9JnT2m5V0OhXJN4sM9L1JbOZ/sz6mfgCIQCQK7H6n5cI9fg6HvrNhBhxhGG0ha4Egt32+iPstRmm2TGBm
DCBlQIBATAtMB0xCzAJBgNVBAYTAkNOMQ4wDAYDVQQDDAVTTTJDQQIMZwwAAAAAAAAAAAAeMAwGCCqBHM9VAYN1BQAwCgYIKoEcz1UBg3UERzBFAiAfUpW
S73R+SrUcu2G+hk9x6FLCVjx69q2nZ/9I2TOLygIhAKorfI73Gjo4dheahYuSvDHI6pnlv5vUCjUQlZ+ztPy4
分析出包含的:原文和公钥分别为:
原文:45334241444437343538433030334541423642374637324444333233393839344646393546374145443543363731453432383446323445383141463436303738
公钥:04122ec628d21b4f7266b353b0a66937f059bcd73e784257e49c67b4c12570a448d606edc23064a8c0d1313ee4b14f4a2a6ccab440359736a5bd620b2c9a59e205
Z值计算:
结果与送入USBkey的HASH结果保持一致
提取签名值--搜索结尾9000,开头是0100
一般签名值和杂凑值数据包挨着比较近,(签名值位数不够下个包里面找)
注意拼接的IN包中的第一字节,该自己协议使用,不包含在签名值中
1f529592ef747e4ab51cbb61be864f71e852c2563c7af6ada767ff48d9338bcaaa2b7c8ef71a3a3876179a858b92bc31c8ea99e5bf9bd40a3510959fb3b4fcb8
与签名结果中,携带的签名值保持一致
搜索公钥: