前端请求加密实战踩坑总结

♫欢欢 安全 阅读 897
赞 20 收藏
二维码
手机扫码查看
反馈

核心加密方案,直接上手就能用

最近项目里需要对接第三方API,对方要求所有请求都得加密传输。说实话,这块技术之前接触不多,但真搞起来其实也就那回事。今天把整个流程记录下来,主要针对实际应用场景。

我用的是AES加密 + RSA非对称加密的组合方案。为什么这样选?因为AES速度快适合加密大量数据,RSA安全性高适合加密密钥。两个结合用,既保证了性能又兼顾了安全。

javascript
// 加密工具类
class RequestEncryption {
constructor() {
// 这里存放服务端提供的公钥
this.publicKey =
—–BEGIN PUBLIC KEY—–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本文章不代表JZTHEME立场,仅为作者个人观点 / 研究心得 / 经验分享,旨在交流探讨,供读者参考。
发表评论

暂无评论