Xcx.php 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274
  1. <?php
  2. namespace app\expand\controller;
  3. use app\common\service\HelperService;
  4. use app\common\service\wechat\decode\WXBizDataCrypt;
  5. use app\common\service\wechat\UnifiedOrder_pub;
  6. use think\Config;
  7. use think\Validate;
  8. use think\Log;
  9. /**
  10. * 小程序支付接口
  11. * Class WeChat
  12. * @package app\expand\controller
  13. */
  14. class Xcx extends BaseAuth
  15. {
  16. private $_Account = null;
  17. private $_APPID = null;
  18. private $_MCHID = null;
  19. private $_SUBMCHID = null;
  20. private $_SUBAPPID = null;
  21. private $_PayTip = "";
  22. public function __construct(){
  23. parent::__construct();
  24. if($this->_inWhiteList == true){
  25. return true;
  26. }
  27. $this->_Account = $this->getKey($this->_apiCode);
  28. //验证是否具有访问这个接口的权限
  29. if(!isset($this->_Account['Xcx_pay_appId'])
  30. || !isset($this->_Account['Xcx_mchId'])
  31. || !isset($this->_Account['Xcx_pay_key'])){
  32. HelperService::returnJson(['code'=>400,'msg'=>'Xcx interface unauthorized access','data'=>$this->_Account]);
  33. }
  34. $this->_APPID = $this->_Account['Xcx_pay_appId'];
  35. $this->_MCHID = $this->_Account['Xcx_mchId'];
  36. $this->_SUBMCHID = isset($this->_Account['Xcx_sub_mchId'])?$this->_Account['Xcx_sub_mchId']:"";
  37. $this->_SUBAPPID = isset($this->_Account['Xcx_pay_sub_appId'])?$this->_Account['Xcx_pay_sub_appId']:"";
  38. $this->_PayTip = isset($this->_Account['Xcx_tip'])?$this->_Account['Xcx_tip']:"";
  39. Config::set('WECHAT_APPID',$this->_APPID);
  40. Config::set('WECHAT_MCHID',$this->_MCHID);
  41. Config::set('WECHAT_SUB_MCHID',$this->_SUBMCHID);
  42. Config::set('WECHAT_SUB_APPID',$this->_SUBAPPID);
  43. Config::set('WECHAT_PAY_KEY',$this->_Account['Xcx_pay_key']);
  44. }
  45. /**
  46. * 平台版支付接口
  47. */
  48. public function platformXcxPay(){
  49. $params = $this->_params;
  50. $rule = [
  51. 'order_no|订单号'=>'require',
  52. 'total_fee|支付金额'=>'require',
  53. 'openid|小程序的openid'=>'require',
  54. 'tip|商品信息'=>'max:500'
  55. ];
  56. $validate = new Validate($rule);
  57. if(!$validate->check($params)){
  58. HelperService::returnJson(['code'=>400,'msg'=>$validate->getError(),'data'=>[]]);
  59. }
  60. require_once(APP_PATH.'/common/service/wechat/WxPayPubHelper.php');
  61. $unifiedOrder = new UnifiedOrder_pub();
  62. //设置统一支付接口参数
  63. //$unifiedOrder->setParameter("openid", "{$params['openid']}"); //商品描述
  64. $body = $this->_PayTip;
  65. if(!empty($params['tip'])){
  66. $body = $params['tip'];
  67. }
  68. $unifiedOrder->setParameter("body",$body."[". substr($params['order_no'],-8)."]"); //商品描述
  69. $unifiedOrder->setParameter("attach",$body); //商品描述
  70. //自定义订单号,此处仅作举例
  71. $out_trade_no = $this->_apiCode."_".$params['order_no']."_".rand(10,99);
  72. $unifiedOrder->setParameter("out_trade_no", $out_trade_no); //商户订单号
  73. $unifiedOrder->setParameter("total_fee", $params['total_fee']); //总金额
  74. $unifiedOrder->setParameter("sub_openid", $params['openid']); //总金额
  75. $httpHeader = HelperService::getHttpHeader();
  76. $unifiedOrder->setParameter("notify_url", "{$httpHeader}{$_SERVER['HTTP_HOST']}/v1/notifyXcxPay"); //通知地址
  77. $unifiedOrder->setParameter("trade_type", "JSAPI"); //交易类型
  78. $prepay_id = $unifiedOrder->getPrepayId();
  79. $appId = empty($this->_SUBAPPID)?$this->_APPID:$this->_SUBAPPID;
  80. $returnData = [
  81. 'appId'=>$appId,
  82. 'timeStamp'=>time(),
  83. 'nonceStr'=> uniqid(),
  84. 'package'=>"prepay_id=$prepay_id",
  85. 'signType'=>'MD5',
  86. ];
  87. $returnData['paySign'] = $unifiedOrder->getSign($returnData);
  88. HelperService::returnJson([
  89. 'data'=>$returnData,
  90. 'msg'=>'success',
  91. 'code'=>200
  92. ]);
  93. }
  94. /**
  95. * 获取微信相关信息
  96. */
  97. public function getOpenInfo(){
  98. $params = $this->_params;
  99. $rule = [
  100. 'code|js获取的code'=>'require',
  101. ];
  102. $validate = new Validate($rule);
  103. if(!$validate->check($params)){
  104. HelperService::returnJson(['code'=>400,'msg'=>$validate->getError(),'data'=>[]]);
  105. }
  106. if(empty($this->_Account['Xcx_secret'])){
  107. HelperService::returnJson(['code'=>400,'msg'=>'Xcx getOpenInfo unauthorized access','data'=>$this->_Account]);
  108. }
  109. $secret = $this->_Account['Xcx_secret'];
  110. $appId = empty($this->_SUBAPPID)?$this->_APPID:$this->_SUBAPPID;
  111. $url = "https://api.weixin.qq.com/sns/jscode2session?appid={$appId}&secret={$secret}&js_code={$params['code']}&grant_type=authorization_code";
  112. $openInfoJson = file_get_contents($url);
  113. $openInfo = @json_decode($openInfoJson,true);
  114. if($openInfo===false || !empty($openInfo['errcode'])){
  115. HelperService::returnJson([
  116. 'data'=>$openInfoJson,'msg'=>'fail','code'=>400
  117. ]);
  118. }
  119. HelperService::returnJson([
  120. 'data'=> array_merge($openInfo,['appId'=>$appId]),'msg'=>'success','code'=>200
  121. ]);
  122. }
  123. public function getMobileInfo() {
  124. $params = $this->_params;
  125. $rule = [
  126. 'code|js获取的code'=>'require',
  127. 'encryptedData'=>'require',
  128. 'iv'=>'require'
  129. ];
  130. $validate = new Validate($rule);
  131. if(!$validate->check($params)){
  132. HelperService::returnJson(['code'=>400,'msg'=>$validate->getError(),'data'=>[]]);
  133. }
  134. if(empty($this->_Account['Xcx_secret'])){
  135. HelperService::returnJson(['code'=>400,'msg'=>'Xcx getOpenInfo unauthorized access','data'=>$this->_Account]);
  136. }
  137. $secret = $this->_Account['Xcx_secret'];
  138. $appId = empty($this->_SUBAPPID)?$this->_APPID:$this->_SUBAPPID;
  139. $url = "https://api.weixin.qq.com/sns/jscode2session?appid={$appId}&secret={$secret}&js_code={$params['code']}&grant_type=authorization_code";
  140. $openInfoJson = file_get_contents($url);
  141. $openInfo = @json_decode($openInfoJson,true);
  142. if($openInfo===false || !empty($openInfo['errcode'])){
  143. HelperService::returnJson([
  144. 'data'=>$openInfoJson,'msg'=>'fail','code'=>400
  145. ]);
  146. }
  147. $pc = new WXBizDataCrypt($appId, $openInfo['session_key']);
  148. $errCode = $pc->decryptData($params['encryptedData'], $params['iv'], $data);
  149. if ($errCode == 0) {
  150. $data = json_decode($data,true);
  151. HelperService::returnJson([
  152. 'data'=> array_merge($openInfo,['appId'=>$appId]),'msg'=>'success','code'=>200
  153. ]);
  154. }
  155. HelperService::returnJson([
  156. 'data'=>[],'msg'=>'获取手机号失败请重试','code'=>400
  157. ]);
  158. }
  159. /**
  160. * 异步通知小程序支付
  161. */
  162. public function notifyXcxPay(){
  163. $this->getInput();
  164. $param = $this->_oldParams;
  165. $this->_sysParams['request_ts'] = time();
  166. Log::record($param);
  167. $params = (array)@simplexml_load_string($param, 'SimpleXMLElement', LIBXML_NOCDATA);
  168. if(empty($params)){
  169. HelperService::returnJson(['code' => 400, 'msg' => "参数错误",'data'=>['baseParams'=>$param]]);
  170. }
  171. try {
  172. $arr = ['total_fee', 'out_trade_no'];
  173. foreach ($arr as $key=>$value) {
  174. if (!isset($params[$value])) {
  175. HelperService::returnJson(['code' => 400, 'msg' => "参数错误($key)",'data'=>['baseParams'=>$param]]);
  176. }
  177. }
  178. $tradeNoArr = explode('_', $params['out_trade_no']);
  179. if(count($tradeNoArr)<2){
  180. HelperService::returnJson(['code' => 400, 'msg' => "参数错误(trade)",'data'=>['baseParams'=>$param]]);
  181. }
  182. $companyCode = $tradeNoArr[0];
  183. $this->_Account = $this->getKey($companyCode,false);//不验证参数
  184. $orderNo = isset($tradeNoArr[1]) ? $tradeNoArr[1] : 0;
  185. //开发分发给不同的支付主体
  186. if(!isset($this->_Account['Xcx_pay_notify_url'])
  187. || empty($this->_Account['Xcx_pay_notify_url'])){
  188. HelperService::returnJson(['code' => 400, 'msg' => "回调地址不存在",'data'=>['baseParams'=>$param]]);
  189. }
  190. if(!is_array($this->_Account['Xcx_pay_notify_url'])){
  191. HelperService::returnJson(['code' => 400, 'msg' => "回调地址不是数组",'data'=>['baseParams'=>$param]]);
  192. }
  193. $notifyUrlArr = $this->_Account['Xcx_pay_notify_url'];
  194. foreach($notifyUrlArr as $url){
  195. $is_ssl = strpos($url, 'https://')!==false?true:false;
  196. $data = [
  197. 'order_no'=>$orderNo,
  198. 'total_price'=>"{$params['total_fee']}",
  199. 'out_trade_no'=>"{$params['out_trade_no']}"
  200. ];
  201. $times = 3;
  202. while($times--){
  203. $res = HelperService::httpPost($url,json_encode($data),$is_ssl);
  204. HelperService::addLog(['item'=>$url,'data'=>$data,'result'=>$res,'times'=>$times],$url,'XCXPAY_DETAIL');
  205. //file_put_contents('ABC_TEMP' ,var_export(['item'=>$url,'data'=>$data,'result'=>$res,'times'=>$times],true),FILE_APPEND);
  206. if($res != false){
  207. break;
  208. }
  209. }
  210. if($times ==0){
  211. Log::record("小程序支付推送异常=>url:".$url."=>res:". json_encode($res)."=>data:". json_encode($data));
  212. }
  213. }
  214. die('success');
  215. }catch (\Exception $ex){
  216. file_put_contents('xcxPayRecord-Exception.mp',"[".date('Y-m-d H:i:s')."]".$ex->getMessage().json_encode($params)."\n\n",FILE_APPEND);
  217. }
  218. }
  219. }