forked from akalin/cryptopals-python3
-
Notifications
You must be signed in to change notification settings - Fork 0
/
challenge36_server.py
67 lines (50 loc) · 1.91 KB
/
challenge36_server.py
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
from Crypto.Random import random
import challenge34_shared
import challenge36_util
import socketserver
import sys
email = ''
password = ''
salt = 0
v = 0
N = 0xffffffffffffffffc90fdaa22168c234c4c6628b80dc1cd129024e088a67cc74020bbea63b139b22514a08798e3404ddef9519b3cd3a431b302b0a6df25f14374fe1356d6d51c245e485b576625e7ec6f44c42e9a637ed6b0bff5cb6f406b7edee386bfb5a899fa5ae9f24117c4b1fe649286651ece45b3dc2007cb8a163bf0598da48361c55d39a69163fa8fd24cf5f83655d23dca3ad961c62f356208552bb9ed529077096966d670c354e4abc9804f1746c08ca237327ffffffffffffffff
g = 2
k = 3
class SRPTCPHandler(socketserver.StreamRequestHandler):
def handle(self):
global email
global password
conn = challenge34_shared.Conn(self)
print('S: reading email...')
readEmail = conn.readline()
print('S: reading A...')
A = conn.readnum()
print('S: writing salt...')
conn.writenum(salt)
b = random.randint(0, N)
B = (pow(g, b, N) + k*v) % N
print('S: writing B...')
conn.writenum(B)
u = challenge36_util.hashToInt(str(A) + str(B))
S = pow(pow(v, u, N) * A, b, N)
K = challenge36_util.hashToBytes(str(S))
server_hmac = challenge36_util.hmac(salt, K)
print('S: reading hmac...')
client_hmac = conn.readbytes()
if client_hmac == server_hmac:
print('S: writing success...')
conn.writeline(b'OK')
else:
conn.writeline(b'NOT OK')
if __name__ == "__main__":
host = sys.argv[1]
port = int(sys.argv[2])
email = sys.argv[3]
password = sys.argv[4]
salt = challenge36_util.getSalt()
x = challenge36_util.hashToInt(str(salt) + password)
v = pow(g, x, N)
print('listening on ' + host + ':' + str(port))
socketserver.TCPServer.allow_reuse_address = True
server = socketserver.TCPServer((host, port), SRPTCPHandler)
server.serve_forever()