RSA Authentication (2024)

The RSA authentication method is almost identical to HMAC. The only difference is that it uses an RSA private key to sign the String-to-Hash and a RSA public key to validate that the signature is valid. RSA keys provide a more secure way of signing your auth headers than using a password. While a password can eventually be cracked with a brute force attack, RSA keys are nearly impossible to decipher by brute force alone. The downside of using RSA to sign API calls, is that RSA signatures require a lot more CPU resources (up to ~250 times) than HMAC hashing.

The following section outlines the steps involved in generating an RSA key pair with OpenSSL. We recommend that you generate a 2048 bit key pair as 1024 bit keys are no longer considered secure and 4096 bit keys consume considerable CPU resources when signing API calls.

  1. Generate a 2048-bit RSA private key and write it to a file private.pem.
#Output an RSA private key with 2048 bit protection.openssl genrsa -out private.pem 2048
  1. Generate a PKCS8 formatted file from the private key and write it to file private8.pem. The private8.pem file must be used in the RSA-DIGEST function to sign the requests.
#Generate a pk8 file from the private key.openssl pkcs8 -topk8 -inform PEM -outform PEM -nocrypt -in private.pem -out private8.pem
  1. Generate the public key file from the private key and write it to a file public.pem.
#Generate a public key from the private key.openssl rsa -in private.pem -outform PEM -pubout -out public.pem

Build an RSA Authentication Header

Now that you know how to create a public and a private key, You must send the public key to Bluefin, and keep the private key on your server.

Property Description
username This property must be set to your partnerId.
nonce This property must be set to a nonce. A nonce can be any arbitrary string, however each nonce can be used only once once over a 15 minute period. Our service keeps a record of these nonces; if a nonce is encountered more than once during a 15 minute period the API call is rejected and an auth error response is produced. It is up to you to keep the nonce unique.
timestamp A unix timestamp. Our service will reject API calls with a timestamp older than 15 minutes.
response The response property is an RSA private key signature of a number of the API call's properties.

How to construct RSA Authentication headers for Decryptx Parser requests

Updated over 2 years ago

RSA Authentication (2024)
Top Articles
Mistplay | Play and earn awesome rewards
10 Ways to Fight Inflation in Retirement
Washu Parking
Zabor Funeral Home Inc
Repentance (2 Corinthians 7:10) – West Palm Beach church of Christ
What are Dietary Reference Intakes?
Is Sportsurge Safe and Legal in 2024? Any Alternatives?
Chase Claypool Pfr
Urban Dictionary Fov
Aces Fmc Charting
Flower Mound Clavicle Trauma
TS-Optics ToupTek Color Astro Camera 2600CP Sony IMX571 Sensor D=28.3 mm-TS2600CP
Samsung Galaxy S24 Ultra Negru dual-sim, 256 GB, 12 GB RAM - Telefon mobil la pret avantajos - Abonament - In rate | Digi Romania S.A.
978-0137606801
Nalley Tartar Sauce
Painting Jobs Craigslist
The Cure Average Setlist
Copart Atlanta South Ga
Msu 247 Football
Airline Reception Meaning
Discord Nuker Bot Invite
Soul Eater Resonance Wavelength Tier List
Doctors of Optometry - Westchester Mall | Trusted Eye Doctors in White Plains, NY
Is Henry Dicarlo Leaving Ktla
Lcsc Skyward
Healthy Kaiserpermanente Org Sign On
San Jac Email Log In
Google Flights To Orlando
Willys Pickup For Sale Craigslist
Most popular Indian web series of 2022 (so far) as per IMDb: Rocket Boys, Panchayat, Mai in top 10
Www Craigslist Com Shreveport Louisiana
Where Do They Sell Menudo Near Me
How to Watch the X Trilogy Starring Mia Goth in Chronological Order
Roto-Rooter Plumbing and Drain Service hiring General Manager in Cincinnati Metropolitan Area | LinkedIn
Prima Healthcare Columbiana Ohio
USB C 3HDMI Dock UCN3278 (12 in 1)
Los Garroberros Menu
Rs3 Bis Perks
What Is Kik and Why Do Teenagers Love It?
20 bank M&A deals with the largest target asset volume in 2023
Puretalkusa.com/Amac
Dispensaries Open On Christmas 2022
If You're Getting Your Nails Done, You Absolutely Need to Tip—Here's How Much
Rage Of Harrogath Bugged
Vérificateur De Billet Loto-Québec
Blue Beetle Showtimes Near Regal Evergreen Parkway & Rpx
Studentvue Calexico
Ups Customer Center Locations
Boyfriends Extra Chapter 6
Das schönste Comeback des Jahres: Warum die Vengaboys nie wieder gehen dürfen
Southwind Village, Southend Village, Southwood Village, Supervision Of Alcohol Sales In Church And Village Halls
Cognitive Function Test Potomac Falls
Latest Posts
Article information

Author: Edwin Metz

Last Updated:

Views: 6164

Rating: 4.8 / 5 (78 voted)

Reviews: 85% of readers found this page helpful

Author information

Name: Edwin Metz

Birthday: 1997-04-16

Address: 51593 Leanne Light, Kuphalmouth, DE 50012-5183

Phone: +639107620957

Job: Corporate Banking Technician

Hobby: Reading, scrapbook, role-playing games, Fishing, Fishing, Scuba diving, Beekeeping

Introduction: My name is Edwin Metz, I am a fair, energetic, helpful, brave, outstanding, nice, helpful person who loves writing and wants to share my knowledge and understanding with you.