1 | <?php |
||
18 | abstract class AESGCM implements ContentEncryptionAlgorithmInterface |
||
19 | { |
||
20 | /** |
||
21 | * {@inheritdoc} |
||
22 | */ |
||
23 | public function encryptContent($data, $cek, $iv, $aad, $encoded_protected_header, &$tag) |
||
24 | { |
||
25 | $calculated_aad = $encoded_protected_header; |
||
26 | if (null !== $aad) { |
||
27 | $calculated_aad .= '.'.$aad; |
||
28 | } |
||
29 | |||
30 | if (version_compare(PHP_VERSION, '7.1.0') >= 0) { |
||
31 | return openssl_encrypt($data, $this->getMode($cek), $cek, OPENSSL_RAW_DATA, $iv, $tag, $calculated_aad, 16); |
||
32 | } elseif (class_exists('\Crypto\Cipher')) { |
||
33 | $cipher = Cipher::aes(Cipher::MODE_GCM, $this->getKeySize()); |
||
34 | $calculated_aad = $encoded_protected_header; |
||
35 | if (null !== $aad) { |
||
36 | $calculated_aad .= '.'.$aad; |
||
37 | } |
||
38 | |||
39 | $cipher->setAAD($calculated_aad); |
||
40 | $cyphertext = $cipher->encrypt($data, $cek, $iv); |
||
41 | $tag = $cipher->getTag(); |
||
42 | |||
43 | return $cyphertext; |
||
44 | } |
||
45 | |||
46 | list($cyphertext, $tag) = GCM::encrypt($cek, $iv, $data, $calculated_aad); |
||
47 | |||
48 | return $cyphertext; |
||
49 | } |
||
50 | |||
51 | /** |
||
52 | * {@inheritdoc} |
||
53 | */ |
||
54 | public function decryptContent($data, $cek, $iv, $aad, $encoded_protected_header, $tag) |
||
55 | { |
||
56 | $calculated_aad = $encoded_protected_header; |
||
57 | if (null !== $aad) { |
||
58 | $calculated_aad .= '.'.$aad; |
||
59 | } |
||
60 | |||
61 | if (version_compare(PHP_VERSION, '7.1.0') >= 0) { |
||
62 | return openssl_decrypt($data, $this->getMode($cek), $cek, OPENSSL_RAW_DATA, $iv, $tag, $calculated_aad); |
||
63 | } elseif (class_exists('\Crypto\Cipher')) { |
||
64 | $cipher = Cipher::aes(Cipher::MODE_GCM, $this->getKeySize()); |
||
65 | $cipher->setTag($tag); |
||
66 | $cipher->setAAD($calculated_aad); |
||
67 | |||
68 | $plaintext = $cipher->decrypt($data, $cek, $iv); |
||
69 | |||
70 | return $plaintext; |
||
71 | } |
||
72 | |||
73 | return GCM::decrypt($cek, $iv, $data, $calculated_aad, $tag); |
||
74 | } |
||
75 | |||
76 | /** |
||
77 | * @param string $k |
||
78 | * |
||
79 | * @return string |
||
80 | */ |
||
81 | private function getMode($k) |
||
85 | |||
86 | /** |
||
87 | * @return int |
||
88 | */ |
||
89 | public function getIVSize() |
||
93 | |||
94 | /** |
||
95 | * @return int |
||
96 | */ |
||
97 | public function getCEKSize() |
||
101 | |||
102 | /** |
||
103 | * @return int |
||
104 | */ |
||
105 | abstract protected function getKeySize(); |
||
106 | } |
||
107 |