@onekeyfe/blockchain-libs
Version:
OneKey Blockchain Libs
61 lines • 2.57 kB
JavaScript
;
var __createBinding = (this && this.__createBinding) || (Object.create ? (function(o, m, k, k2) {
if (k2 === undefined) k2 = k;
Object.defineProperty(o, k2, { enumerable: true, get: function() { return m[k]; } });
}) : (function(o, m, k, k2) {
if (k2 === undefined) k2 = k;
o[k2] = m[k];
}));
var __setModuleDefault = (this && this.__setModuleDefault) || (Object.create ? (function(o, v) {
Object.defineProperty(o, "default", { enumerable: true, value: v });
}) : function(o, v) {
o["default"] = v;
});
var __importStar = (this && this.__importStar) || function (mod) {
if (mod && mod.__esModule) return mod;
var result = {};
if (mod != null) for (var k in mod) if (k !== "default" && Object.prototype.hasOwnProperty.call(mod, k)) __createBinding(result, mod, k);
__setModuleDefault(result, mod);
return result;
};
Object.defineProperty(exports, "__esModule", { value: true });
exports.decrypt = exports.encrypt = void 0;
const crypto = __importStar(require("crypto"));
const asmcrypto_js_1 = require("asmcrypto.js");
const exceptions_1 = require("../../basic/exceptions");
const hash_1 = require("../hash");
// Below codes are comments to note algorithm and digest method used.
// const ALGORITHM = 'aes-256-cbc';
// const PBKDF2_DIGEST_METHOD = 'sha256';
const PBKDF2_NUM_OF_ITERATIONS = 5000;
const PBKDF2_KEY_LENGTH = 32;
const PBKDF2_SALT_LENGTH = 32;
const AES256_IV_LENGTH = 16;
const ENCRYPTED_DATA_OFFSET = PBKDF2_SALT_LENGTH + AES256_IV_LENGTH;
function keyFromPasswordAndSalt(password, salt) {
return Buffer.from((0, asmcrypto_js_1.Pbkdf2HmacSha256)((0, hash_1.sha256)(Buffer.from(password, 'utf8')), salt, PBKDF2_NUM_OF_ITERATIONS, PBKDF2_KEY_LENGTH));
}
function encrypt(password, data) {
const salt = crypto.randomBytes(PBKDF2_SALT_LENGTH);
const key = keyFromPasswordAndSalt(password, salt);
const iv = crypto.randomBytes(AES256_IV_LENGTH);
return Buffer.concat([
salt,
iv,
Buffer.from(asmcrypto_js_1.AES_CBC.encrypt(data, key, true, iv)),
]);
}
exports.encrypt = encrypt;
function decrypt(password, data) {
const salt = data.slice(0, PBKDF2_SALT_LENGTH);
const key = keyFromPasswordAndSalt(password, salt);
const iv = data.slice(PBKDF2_SALT_LENGTH, ENCRYPTED_DATA_OFFSET);
try {
return Buffer.from(asmcrypto_js_1.AES_CBC.decrypt(data.slice(ENCRYPTED_DATA_OFFSET), key, true, iv));
}
catch {
throw new exceptions_1.IncorrectPassword();
}
}
exports.decrypt = decrypt;
//# sourceMappingURL=aes256.js.map