AlipaySubmit.php 6.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265
  1. <?php
  2. namespace App\Components;
  3. use DOMDocument;
  4. use Log;
  5. /**
  6. * Class AlipaySubmit
  7. *
  8. * @author wz812180
  9. *
  10. * @package App\Components
  11. */
  12. class AlipaySubmit
  13. {
  14. var $alipay_gateway_new = 'https://mapi.alipay.com/gateway.do?'; // 支付宝网关地址(新)
  15. var $sign_type = "MD5"; // 加密方式:MD5/RSA
  16. var $partner = "";
  17. var $md5_key = "";
  18. var $private_key = "";
  19. function __construct($sign_type, $partner, $md5_key, $private_key)
  20. {
  21. $this->sign_type = $sign_type;
  22. $this->partner = $partner;
  23. $this->md5_key = $md5_key;
  24. $this->private_key = $private_key;
  25. }
  26. /**
  27. * 生成要请求给支付宝的参数数组
  28. *
  29. * @param array $para_temp 请求前的参数数组
  30. *
  31. * @return string
  32. */
  33. function buildRequestParaToString($para_temp)
  34. {
  35. // 待请求参数数组
  36. $para = $this->buildRequestPara($para_temp);
  37. // 把参数组中所有元素,按照“参数=参数值”的模式用“&”字符拼接成字符串,并对字符串做urlencode编码
  38. return $this->createLinkStringUrlEncode($para);
  39. }
  40. /**
  41. * 生成要请求给支付宝的参数数组
  42. *
  43. * @param array $para_temp 请求前的参数数组
  44. *
  45. * @return array
  46. */
  47. function buildRequestPara($para_temp)
  48. {
  49. // 除去待签名参数数组中的空值和签名参数
  50. $para_filter = $this->paraFilter($para_temp);
  51. // 对待签名参数数组排序
  52. $para_sort = $this->argSort($para_filter);
  53. // 生成签名结果
  54. $mySign = $this->buildRequestMySign($para_sort);
  55. // 签名结果与签名方式加入请求提交参数组中
  56. $para_sort['sign'] = $mySign;
  57. $para_sort['sign_type'] = strtoupper(trim($this->sign_type));
  58. return $para_sort;
  59. }
  60. /**
  61. * 除去数组中的空值和签名参数
  62. *
  63. * @param array $para 签名参数组
  64. *
  65. * @return array
  66. */
  67. function paraFilter($para)
  68. {
  69. $para_filter = [];
  70. foreach($para as $key => $val){
  71. if($key == "sign" || $key == "sign_type" || $val == "") continue;
  72. else $para_filter[$key] = $para[$key];
  73. }
  74. return $para_filter;
  75. }
  76. /**
  77. * 对数组排序
  78. *
  79. * @param array $para 排序前的数组
  80. *
  81. * @return mixed
  82. */
  83. function argSort($para)
  84. {
  85. ksort($para);
  86. reset($para);
  87. return $para;
  88. }
  89. /**
  90. * 生成签名结果
  91. *
  92. * @param array $para_sort 已排序要签名的数组
  93. *
  94. * @return string
  95. */
  96. function buildRequestMySign($para_sort)
  97. {
  98. // 把数组所有元素,按照“参数=参数值”的模式用“&”字符拼接成字符串
  99. $preStr = $this->createLinkString($para_sort);
  100. switch(strtoupper(trim($this->sign_type))){
  101. case "MD5" :
  102. $mySign = $this->md5Sign($preStr, $this->md5_key);
  103. break;
  104. case "RSA" :
  105. $mySign = $this->rsaSign($preStr, $this->private_key);
  106. break;
  107. default :
  108. $mySign = "";
  109. }
  110. return $mySign;
  111. }
  112. /**
  113. * 把数组所有元素,按照“参数=参数值”的模式用“&”字符拼接成字符串
  114. *
  115. * @param array $para
  116. *
  117. * @return bool|string
  118. */
  119. function createLinkString($para)
  120. {
  121. $arg = '';
  122. foreach($para as $key => $val){
  123. $arg .= "&".$key."=".$val;
  124. }
  125. // 去掉开头的&字符
  126. $arg = substr($arg, 1);
  127. // 如果存在转义字符,那么去掉转义
  128. if(get_magic_quotes_gpc()){
  129. $arg = stripslashes($arg);
  130. }
  131. return $arg;
  132. }
  133. /**
  134. * 签名字符串
  135. *
  136. * @param string $preStr 需要签名的字符串
  137. * @param string $key 私钥
  138. *
  139. * @return string
  140. */
  141. function md5Sign($preStr, $key)
  142. {
  143. return md5($preStr.$key);
  144. }
  145. /**
  146. * RSA签名
  147. *
  148. * @param string $data 待签名数据
  149. * @param string $private_key 商户私钥字符串
  150. *
  151. * @return string
  152. */
  153. function rsaSign($data, $private_key)
  154. {
  155. //以下为了初始化私钥,保证在您填写私钥时不管是带格式还是不带格式都可以通过验证。
  156. $private_key = str_replace("-----BEGIN RSA PRIVATE KEY-----", "", $private_key);
  157. $private_key = str_replace("-----END RSA PRIVATE KEY-----", "", $private_key);
  158. $private_key = str_replace("\n", "", $private_key);
  159. $private_key = "-----BEGIN RSA PRIVATE KEY-----".PHP_EOL.wordwrap($private_key, 64, "\n", TRUE).PHP_EOL."-----END RSA PRIVATE KEY-----";
  160. $res = openssl_get_privatekey($private_key);
  161. if(!$res){
  162. Log::error("私钥格式不正确");
  163. exit();
  164. }
  165. openssl_sign($data, $sign, $res);
  166. openssl_free_key($res);
  167. $sign = base64_encode($sign); // base64编码
  168. return $sign;
  169. }
  170. /**
  171. * 把数组所有元素,按照“参数=参数值”的模式用“&”字符拼接成字符串,并对字符串做urlencode编码
  172. *
  173. * @param array $para 需要拼接的数组
  174. *
  175. * @return bool|string
  176. */
  177. function createLinkStringUrlEncode($para)
  178. {
  179. $arg = '';
  180. foreach($para as $key => $val){
  181. $arg .= "&".$key."=".urlencode($val);
  182. }
  183. // 去掉开头的&字符
  184. $arg = substr($arg, 1);
  185. // 如果存在转义字符,那么去掉转义
  186. if(get_magic_quotes_gpc()){
  187. $arg = stripslashes($arg);
  188. }
  189. return $arg;
  190. }
  191. /**
  192. * 建立请求,以表单HTML形式构造(默认)
  193. *
  194. * @param array $para_temp 请求参数数组
  195. * @param string $method 提交方式。两个值可选:post|get
  196. * @param string $button_name 确认按钮显示文字
  197. *
  198. * @return string
  199. */
  200. public function buildRequestForm($para_temp, $method, $button_name)
  201. {
  202. // 待请求参数数组
  203. $para = $this->buildRequestPara($para_temp);
  204. $sHtml = "<form id='alipaySubmit' name='alipaySubmit' action='".$this->alipay_gateway_new."_input_charset=utf-8' method='".$method."'>";
  205. foreach($para as $key => $val){
  206. $sHtml .= "<input type='hidden' name='".$key."' value='".$val."'/>";
  207. }
  208. // submit按钮控件请不要含有name属性
  209. $sHtml = $sHtml."<input type='submit' value='".$button_name."' style='display:none;'></form>";
  210. $sHtml = $sHtml."<script>document.forms['alipaySubmit'].submit();</script>";
  211. return $sHtml;
  212. }
  213. /**
  214. * 用于防钓鱼,调用接口query_timestamp来获取时间戳的处理函数
  215. *
  216. * @return string
  217. */
  218. function query_timestamp()
  219. {
  220. $url = $this->alipay_gateway_new."service=query_timestamp&partner=".trim(strtolower($this->partner))."&_input_charset=utf-8";
  221. $doc = new DOMDocument();
  222. $doc->load($url);
  223. $itemEncrypt_key = $doc->getElementsByTagName("encrypt_key");
  224. return $itemEncrypt_key->item(0)->nodeValue;
  225. }
  226. }