Yspay.php 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542
  1. <?php namespace Pay\Lib;
  2. use Dever;
  3. class Yspay extends Core
  4. {
  5. public function __construct($config)
  6. {
  7. $project = Dever::project('pay');
  8. # 通知接口
  9. $config['notify'] = $this->url($config['type'], $config['id']);
  10. $set = explode('|', $config['mchid']);
  11. $config['mid'] = $set[0];
  12. $config['tid'] = $set[1];
  13. if (isset($set[2])) {
  14. $config['prefix'] = $set[2];
  15. }
  16. $set = explode('|', $config['key']);
  17. $config['sub_appid'] = $set[0];
  18. $config['sub_appsecret'] = $set[1];
  19. if (isset($set[2])) {
  20. $config['key'] = $set[2];
  21. }
  22. $this->config = $config;
  23. }
  24. /**
  25. * 通知
  26. */
  27. public function notify()
  28. {
  29. $input = file_get_contents("php://input");
  30. if ($input) {
  31. parse_str($input, $input);
  32. } else {
  33. $input = Dever::input();
  34. }
  35. $test = Dever::input('test');
  36. if ($test == 1) {
  37. $input = json_decode('{"msgType":"wx.notify","payTime":"2021-12-29 18:24:42","buyerCashPayAmt":"1","connectSys":"UNIONPAY","sign":"E82978003E0121B320D3520B1930FB4C2072B639126F3427351631F1D0A998CF","merName":"中食民安(北京)科技有限公司","mid":"89810007372106N","invoiceAmount":"1","settleDate":"2021-12-29","billFunds":"现金:1","buyerId":"otdJ_uD-zTNmDn7-u13oActXu8lA","mchntUuid":"2d9081bd7db8ad75017dbbe68981314f","tid":"DM098308","instMid":"MINIDEFAULT","receiptAmount":"1","couponAmount":"0","targetOrderId":"4200001344202112290882463274","signType":"SHA256","billFundsDesc":"现金支付0.01元。","subBuyerId":"oGlMn5e_vdYK8uAaCgyexarFKBrY","orderDesc":"中食民安(北京)科技有限公司","seqId":"25267273719N","merOrderId":"138K_G202112297347788956443487","targetSys":"WXPay","bankInfo":"OTHERS","totalAmount":"1","createTime":"2021-12-29 18:24:38","buyerPayAmount":"1","iB":"KRHn","notifyId":"d4122965-b772-4f8f-b5c4-f3d483da0962","subInst":"100000","status":"TRADE_SUCCESS"}', true);
  38. $input = json_decode('{"bankInfo":"OTHERS","billDate":"2022-01-06","billDesc":"中食民安(北京)科技有限公司","billNo":"138KG202201064666839470673943","billPayment":"{\"payTime\":\"2022-01-06 13:24:56\",\"buyerCashPayAmt\":1,\"paySeqId\":\"25394941600N\",\"invoiceAmount\":1,\"settleDate\":\"2022-01-06\",\"buyerId\":\"otdJ_uHh75dIaI6EKu-6usw0hjD4\",\"receiptAmount\":1,\"totalAmount\":1,\"couponAmount\":0,\"billBizType\":\"bills\",\"buyerPayAmount\":1,\"targetOrderId\":\"4200001348202201065614123115\",\"payDetail\":\"现金支付0.01元。\",\"merOrderId\":\"138KG2022010646668394706739430\",\"status\":\"TRADE_SUCCESS\",\"targetSys\":\"WXPay\"}","billQRCode":"https:\/\/qr.95516.com\/48020000\/138K2201066502428138291294","billStatus":"PAID","createTime":"2022-01-06 13:24:28","instMid":"QRPAYDEFAULT","mchntUuid":"2d9081bd7db8ad75017dbbe68981314f","merName":"中食民安(北京)科技有限公司","mid":"89810007372106N","notifyId":"49a83755-b476-47c3-a0b6-629dc7a43742","qrCodeId":"138K2201066502428138291294","qrCodeType":"BILLPAY","receiptAmount":"1","seqId":"25394941600N","signType":"SHA256","subInst":"100000","tid":"DM098308","totalAmount":"1","vE":"Bclv","sign":"1D048E292E17225A4EEF4AB438630601A19E50CDA71DF9E7A4304AABBD134A38","e_sign":"1D048E292E17225A4EEF4AB438630601A19E50CDA71DF9E7A4304AABBD134A38"}', true);
  39. }
  40. $sign = $input['sign'];
  41. unset($input['sign']);
  42. if (isset($input['e_sign'])) {
  43. unset($input['e_sign']);
  44. }
  45. ksort($input);
  46. $string = array();
  47. foreach ($input as $k => $v) {
  48. if (strstr($v, '&') || strstr($v, '@')) {
  49. $v = urlencode($v);
  50. }
  51. $string[] = $k . '=' . $v;
  52. }
  53. $string = implode('&', $string);
  54. $string .= $this->config['key'];
  55. if ($input['signType'] == 'SHA256') {
  56. $string = hash("sha256", $string);
  57. } else {
  58. $string = md5($string);
  59. }
  60. $string = strtoupper($string);
  61. $input['sign'] = $sign;
  62. $input['e_sign'] = $string;
  63. $this->log('支付回调-初始化', $input);
  64. if ($sign == $string) {
  65. if (isset($input['billNo']) && $input['billNo']) {
  66. $key = 'billNo';
  67. } else {
  68. $key = 'merOrderId';
  69. }
  70. if (isset($this->config['prefix']) && $this->config['prefix']) {
  71. $input[$key] = str_replace($this->config['prefix'], '', $input[$key]);
  72. }
  73. if (!isset($input['status'])) {
  74. echo 'FAILED';die;
  75. }
  76. $desc = '';
  77. if ($input['status'] == 'TRADE_SUCCESS') {
  78. # 成功
  79. } if ($input['status'] == 'TRADE_REFUND') {
  80. # 退款
  81. echo 'SUCCESS';die;
  82. } elseif ($input['status'] == 'TRADE_CLOSED') {
  83. $desc = '交易关闭';
  84. } elseif ($input['status'] == 'UNKNOWN') {
  85. $desc = '不明确的交易状态';
  86. } else {
  87. echo 'FAILED';die;
  88. }
  89. $this->updateOrder($input[$key], $input['totalAmount']);
  90. echo 'SUCCESS';die;
  91. } else {
  92. echo 'FAILED';die;
  93. }
  94. }
  95. /**
  96. * 获取统一下单的基本信息
  97. */
  98. public function order($account_id, $project_id, $uid, $username, $product_id, $name, $cash, $openid = false, $type = 1, $order_id = false, $other = false)
  99. {
  100. $order_id = $this->createOrder($uid, $username, $account_id, $project_id, $product_id, $name, $cash, $this->config['type'], $order_id);
  101. if (isset($this->config['prefix']) && $this->config['prefix']) {
  102. $request['merOrderId'] = $this->config['prefix'] . $order_id;
  103. } else {
  104. $request['merOrderId'] = $order_id;
  105. }
  106. $request['mid'] = $this->config['mid'];
  107. $request['tid'] = $this->config['tid'];
  108. $request['instMid'] = 'MINIDEFAULT';
  109. $request['totalAmount'] = $cash * 100;
  110. //$request['totalAmount'] = 100;
  111. $request['subAppId'] = $this->config['sub_appid'];
  112. $request['requestTimestamp'] = date("Y-m-d H:i:s");
  113. $request['expireTime'] = date("Y-m-d H:i:s", time() + $this->config['timeout']);
  114. $request['notifyUrl'] = $this->config['notify'];
  115. $request['tradeType'] = 'MINI';
  116. if ($other) {
  117. $request['originalAmount'] = $other['oprice'] * 100;
  118. $request['divisionFlag'] = true;
  119. # 平台分账金额
  120. $other['per'] = $other['per']/100;
  121. $request['platformAmount'] = $request['totalAmount'] * $other['per'];
  122. $request['subOrders'] = array();
  123. $request['subOrders']['mid'] = $other['mid'];
  124. if (isset($this->config['prefix']) && $this->config['prefix']) {
  125. $request['subOrders']['merOrderId'] = $this->config['prefix'] . $other['order_id'];
  126. } else {
  127. $request['subOrders']['merOrderId'] = $other['order_id'];
  128. }
  129. $request['subOrders']['totalAmount'] = $request['totalAmount'] - $request['platformAmount'];
  130. $request['subOrders'] = array($request['subOrders']);
  131. }
  132. if (!$openid) {
  133. # 测试的openid
  134. $request['subOpenId'] = 'ofBUV0RUoy_8C4VctZjrSDGzhUfY';
  135. } else {
  136. $request['subOpenId'] = $openid;
  137. }
  138. if ($type == 2) {
  139. # 二维码支付
  140. $request['billNo'] = $request['merOrderId'];
  141. unset($request['merOrderId']);
  142. $result = Base::get_pay_code($request, $this->config);
  143. if (isset($result['billQRCode'])) {
  144. $result['request'] = $request;
  145. $result['payMsg'] = $result['billQRCode'];
  146. if ($other) {
  147. $result['other'] = $other;
  148. }
  149. $this->updateOrderParam($order_id, $result);
  150. return $result['payMsg'];
  151. }
  152. } else {
  153. # 小程序支付
  154. $result = Base::pay($request, $this->config);
  155. if (isset($result['miniPayRequest'])) {
  156. $result['request'] = $request;
  157. $result['payMsg'] = $result['miniPayRequest'];
  158. unset($result['miniPayRequest']);
  159. if ($other) {
  160. $result['other'] = $other;
  161. }
  162. $this->updateOrderParam($order_id, $result);
  163. return $result['payMsg'];
  164. }
  165. }
  166. return false;
  167. }
  168. # 退款
  169. public function refund($order_id, $cash, $order, $refund_order_id = false)
  170. {
  171. if (isset($this->config['prefix']) && $this->config['prefix']) {
  172. $request['merOrderId'] = $this->config['prefix'] . $order_id;
  173. if ($refund_order_id) {
  174. $request['refundOrderId'] = $this->config['prefix'] . $refund_order_id;
  175. }
  176. } else {
  177. $request['merOrderId'] = $order_id;
  178. if ($refund_order_id) {
  179. $request['refundOrderId'] = $refund_order_id;
  180. }
  181. }
  182. $request['mid'] = $this->config['mid'];
  183. $request['tid'] = $this->config['tid'];
  184. $request['instMid'] = 'MINIDEFAULT';
  185. if (isset($order['param']['targetOrderId'])) {
  186. $request['targetOrderId'] = $order['param']['targetOrderId'];
  187. }
  188. $request['subAppId'] = $this->config['appid'];
  189. $request['requestTimestamp'] = date("Y-m-d H:i:s");
  190. $request['refundAmount'] = $cash * 100;
  191. if (isset($order['param']['other']) && $order['param']['other']) {
  192. $other = $order['param']['other'];
  193. $other['per'] = $other['per']/100;
  194. $request['platformAmount'] = $request['refundAmount'] * $other['per'];
  195. $request['subOrders'] = array();
  196. $request['subOrders']['mid'] = $other['mid'];
  197. if (isset($this->config['prefix']) && $this->config['prefix']) {
  198. $request['subOrders']['merOrderId'] = $this->config['prefix'] . $other['order_id'];
  199. if ($refund_order_id) {
  200. $request['subOrders']['refundOrderId'] = $this->config['prefix'] . $refund_order_id;
  201. }
  202. } else {
  203. $request['subOrders']['merOrderId'] = $other['order_id'];
  204. if ($refund_order_id) {
  205. $request['subOrders']['refundOrderId'] = $refund_order_id;
  206. }
  207. }
  208. $request['subOrders']['totalAmount'] = $request['refundAmount'] - $request['platformAmount'];
  209. $request['subOrders'] = array($request['subOrders']);
  210. }
  211. $result = Base::refund($request, $this->config);
  212. if (isset($result['refundStatus']) && $result['refundStatus'] == 'SUCCESS') {
  213. return true;
  214. }
  215. return false;
  216. }
  217. # 查询
  218. public function query($order_id)
  219. {
  220. $request['merOrderId'] = $order_id;
  221. $request['mid'] = $this->config['mchid'];
  222. $request['tid'] = $this->config['key'];
  223. $request['instMid'] = 'MINIDEFAULT';
  224. $request['requestTimestamp'] = date("Y-m-d H:i:s");
  225. $result = Base::refund($request, $this->config);
  226. return $result;
  227. }
  228. # 关闭订单
  229. public function close($order_id)
  230. {
  231. $request['merOrderId'] = $order_id;
  232. $request['mid'] = $this->config['mchid'];
  233. $request['tid'] = $this->config['key'];
  234. $request['instMid'] = 'MINIDEFAULT';
  235. $request['requestTimestamp'] = date("Y-m-d H:i:s");
  236. $result = Base::close($request, $this->config);
  237. return $result;
  238. }
  239. /**
  240. * 获取二维码支付
  241. */
  242. public function qrcode($order, $refer)
  243. {
  244. $result['type'] = 'qrcode';
  245. $result['url'] = $order;
  246. return $result;
  247. }
  248. /**
  249. * 获取小程序支付
  250. */
  251. public function applet($order)
  252. {
  253. $result = array();
  254. if (isset($order['package'])) {
  255. $prepay_id = str_replace('prepay_id=', '', $order['package']);
  256. $result['time'] = $order['timeStamp'];
  257. $result['nonce_str'] = $order['nonceStr'];
  258. $result['prepay_id'] = $prepay_id;
  259. $result['sign_type'] = $order['signType'];
  260. $result['sign'] = $order['paySign'];
  261. $result['type'] = 'applet';
  262. }
  263. return $result;
  264. }
  265. /**
  266. * 获取页面支付
  267. */
  268. public function page($order, $refer)
  269. {
  270. $refer = urldecode($refer);
  271. $tools = new \JsApiPay($this->config);
  272. $info = $tools->GetJsApiParameters($order);
  273. $html = '<script type="text/javascript">
  274. function jsApiCall()
  275. {
  276. WeixinJSBridge.invoke(
  277. "getBrandWCPayRequest",
  278. '.$info.',
  279. function(res){
  280. //WeixinJSBridge.log(res.err_msg);
  281. if(res.err_msg == "get_brand_wcpay_request:ok")
  282. {
  283. location.href = "'.$refer.'";
  284. } else {
  285. alert(res.err_code+res.err_desc+res.err_msg);
  286. }
  287. }
  288. );
  289. }
  290. function callpay()
  291. {
  292. if (typeof WeixinJSBridge == "undefined"){
  293. if( document.addEventListener ){
  294. document.addEventListener("WeixinJSBridgeReady", jsApiCall, false);
  295. }else if (document.attachEvent){
  296. document.attachEvent("WeixinJSBridgeReady", jsApiCall);
  297. document.attachEvent("onWeixinJSBridgeReady", jsApiCall);
  298. }
  299. }else{
  300. jsApiCall();
  301. }
  302. }
  303. callpay();
  304. </script>';
  305. return $html;
  306. }
  307. }
  308. class Base
  309. {
  310. static $test_host = 'https://test-api-open.chinaums.com/';
  311. static $host = 'https://api-mop.chinaums.com/';
  312. static $signMethod = 'SHA256'; //签名方式
  313. # 获取token
  314. static $token_url = 'v1/token/access';
  315. # 微信下单支付
  316. static $pay_wechat_url = 'v1/netpay/wx/unified-order';
  317. # 支付宝下单支付
  318. static $pay_alipay_url = 'v1/netpay/trade/create';
  319. # 云闪付下单支付
  320. static $pay_uac_url = 'v1/netpay/uac/mini-order';
  321. # 交易查询
  322. static $query_url = 'v1/netpay/query';
  323. # 退款
  324. static $refund_url = 'v1/netpay/refund';
  325. # 退款查询
  326. static $refund_query_url = 'v1/netpay/refund-query';
  327. # 订单关闭
  328. static $close_url = 'v1/netpay/close';
  329. # 二维码支付
  330. static $qrcode_url = 'v1/netpay/bills/get-qrcode';
  331. //===================== 支付相关 ==============================
  332. /**
  333. * 支付交易
  334. */
  335. static public function pay($param, $config)
  336. {
  337. $url = self::$pay_wechat_url;
  338. $result = self::get($url, $param, $config);
  339. return $result;
  340. }
  341. /**
  342. * 获取支付二维码
  343. */
  344. static public function get_pay_code($param, $config)
  345. {
  346. $url = self::$qrcode_url;
  347. $result = self::get($url, $param, $config);
  348. return $result;
  349. }
  350. /**
  351. * 支付撤销
  352. */
  353. static public function close()
  354. {
  355. $url = self::$close_url;
  356. $result = self::get($url, $param, $config);
  357. return $result;
  358. }
  359. /**
  360. * 交易退款
  361. */
  362. static public function refund($param, $config)
  363. {
  364. $url = self::$refund_url;
  365. $result = self::get($url, $param, $config);
  366. return $result;
  367. }
  368. /**
  369. * 交易查询
  370. */
  371. static public function query()
  372. {
  373. $url = self::$query_url;
  374. $result = self::get($url, $param, $config);
  375. return $result;
  376. }
  377. /**
  378. * 交易退款查询
  379. */
  380. static public function refundQuery()
  381. {
  382. $url = self::$refund_query_url;
  383. $result = self::get($url, $param, $config);
  384. return $result;
  385. }
  386. //====================== 获取调用凭证===========================
  387. /**
  388. * 通用调用凭证获取
  389. * 默认使用token方式,使用签名方式需要传入参数
  390. */
  391. static public function getAuth($type = 'token', $param, $config)
  392. {
  393. if ($type === 'token') {
  394. return self::getAccessTokenByToken($config);
  395. }
  396. return self::getAccessTokenBySig($param, $config);
  397. }
  398. /**
  399. * 方式一,OPEN-ACCESS-TOKEN方式
  400. */
  401. static function getAccessTokenByToken($config)
  402. {
  403. $param = [
  404. 'appId' => $config['appid'],
  405. 'timestamp' => date('YmdHis'),
  406. 'nonce' => md5(uniqid(microtime(true),true)),
  407. 'signMethod' => self::$signMethod,
  408. ];
  409. $param['signature'] = self::signature($param, $config['appsecret']);
  410. $result = self::get(self::$token_url, $param, $config);
  411. if (isset($result['errCode']) && isset($result['accessToken'])) {
  412. return 'OPEN-ACCESS-TOKEN AccessToken='.$result['accessToken'];
  413. }
  414. return '';
  415. }
  416. /**
  417. * 方式二,OPEN-BODY-SIG方式
  418. */
  419. static function getAccessTokenBySig($data, $config)
  420. {
  421. $param = [
  422. 'AppId' => $config['appid'],
  423. 'Timestamp' => date('YmdHis'),
  424. 'Nonce' => md5(uniqid(microtime(true),true))
  425. ];
  426. return 'OPEN-BODY-SIG AppId="'.$param['AppId'].'", Timestamp="'.$param['Timestamp'].'", Nonce="'.$param['Nonce'].'", Signature="'.self::signature2($data, $param, $config['appsecret']).'"';
  427. }
  428. /**
  429. * 计算签名,方式一
  430. */
  431. static function signature($param, $appsecret)
  432. {
  433. return bin2hex(hash(self::$signMethod, $param['appId'].$param['timestamp'].$param['nonce'].$appsecret, true));
  434. }
  435. /**
  436. * 计算签名,方式二
  437. */
  438. static function signature2($data, $param, $appsecret)
  439. {
  440. $str = bin2hex(hash('sha256', Dever::json_encode($data), true));
  441. return base64_encode(hash_hmac('sha256', $param['AppId'].$param['Timestamp'].$param['Nonce'].$str, $appsecret, true));
  442. }
  443. /**
  444. * 获取信息
  445. */
  446. static function get($url, $param, $config)
  447. {
  448. $url = $config['box'] == 1 ? self::$host . $url : self::$test_host . $url;
  449. $header = array();
  450. $header['Authorization'] = self::getAuth('sig', $param, $config);
  451. $result = Dever::curl($url, $param, 'post', true, $header);
  452. if (strstr($result, '<html><head>')) {
  453. Dever::alert('系统错误');
  454. }
  455. $result = Dever::json_decode($result);
  456. if (isset($result['errCode'])) {
  457. if ($result['errCode'] == '0000' || $result['errCode'] == 'SUCCESS') {
  458. return $result;
  459. } elseif (isset($result['errInfo'])) {
  460. Dever::alert($result['errInfo']);
  461. } elseif (isset($result['errMsg'])) {
  462. Dever::alert($result['errMsg']);
  463. }
  464. } else {
  465. Dever::alert('系统错误');
  466. }
  467. return $result;
  468. }
  469. }