WechatTransfer.php 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223
  1. <?php namespace App\Http\Controllers\Api;
  2. use App\Http\Controllers\Api\Api;
  3. use App\Models\Custom;
  4. use App\Facades\Servers\Logs\Log;
  5. use App\Models\CustomAmount;
  6. use App\Models\CustomAmountRecord;
  7. use Illuminate\Http\Request;
  8. use App\Servers\WechatPay\Transfer;
  9. use Kra8\Snowflake\Snowflake;
  10. use App\Facades\Servers\WechatMini\Mini;
  11. use Illuminate\Support\Facades\DB;
  12. use WeChatPay\Formatter;
  13. use WeChatPay\Crypto\AesGcm;
  14. use WeChatPay\Crypto\Rsa;
  15. /**
  16. * 微信支付接口
  17. *
  18. * @author JUN
  19. *
  20. * */
  21. class WechatTransfer extends Api{
  22. /**
  23. * 小程序微信提现 商户转账 /api/wechat_pay/transfer
  24. *
  25. * */
  26. public function transfer(Custom $Custom,CustomAmount $CustomAmount,CustomAmountRecord $CustomAmountRecord)
  27. {
  28. // 检查登录
  29. $uid = $this->checkLogin();
  30. $code = request('code','');
  31. $amount = request('amount','');
  32. if ($amount < 0.1) return json_send(['code'=>'error','msg'=>'提现失败','data'=>['error'=>'提现失败,超出最高提现额度']]);
  33. if ($amount > 200) return json_send(['code'=>'error','msg'=>'提现失败','data'=>['error'=>'提现失败,超出最高提现额度']]);
  34. // 获取余额信息
  35. $amountInfo = $CustomAmount::query()->where(['custom_uid'=>$uid])->first();
  36. if(!$amountInfo){
  37. $result = $CustomAmountRecord::query()->insert(['custom_uid'=>$uid,'insert_time'=>time(),'update_time'=>time()]);
  38. if (!$result){
  39. return json_send(['code'=>'error','msg'=>'提现失败','data'=>['error'=>'提现失败']]);
  40. }
  41. $balance = 0;
  42. }else{
  43. $balance = $amountInfo['amount'];
  44. }
  45. // 如果剩余余额不足
  46. if( $balance < $amount ) return json_send(['code'=>'error','msg'=>'余额不足','data'=>['error'=>'余额不足']]);
  47. //获取openid
  48. $resultOpenid = Mini::jscode2session($code);
  49. if (!$resultOpenid['openid']) return json_send(['code'=>'error','msg'=>'获取openid失败','data'=>$resultOpenid['error']]);
  50. $Snowflake = new Snowflake();
  51. $SnowflakeId = $Snowflake->next();
  52. $params['amount'] = $amount;
  53. $params['out_bill_no'] = $SnowflakeId;
  54. $params['openid'] = $resultOpenid['openid'];
  55. DB::beginTransaction();
  56. try {
  57. //扣除用户余额
  58. $amountUpdate = [
  59. 'amount'=>DB::raw('amount-'.$amount),
  60. 'use_amount'=>DB::raw('use_amount+'.$amount),
  61. 'update_time'=>time()
  62. ];
  63. $result = $CustomAmount::query()->where(['custom_uid'=>$uid])->update($amountUpdate);
  64. if (!$result) {
  65. return json_send(['code'=>'error','msg'=>'提现申请失败','data'=>['error'=>'扣除用户余额失败']]);
  66. }
  67. $Transfer = new Transfer();
  68. $transferResult = $Transfer->pay($params);
  69. Log::error('wechat/transfer','微信商户转账'.'返回'.json_encode($transferResult));
  70. if (!$transferResult || $transferResult['state'] !== 'WAIT_USER_CONFIRM') return json_send(['code'=>'error','msg'=>'提现申请失败','data'=>'提现申请失败']);
  71. $data = [
  72. 'custom_uid' => $uid,
  73. 'out_bill_no' => $transferResult['out_bill_no'],
  74. 'transfer_bill_no' => $transferResult['transfer_bill_no'],
  75. 'prefix' => 2,
  76. 'amount' => $amount,
  77. 'buy_type' => 2,
  78. 'pay_type' => 1,
  79. 'balance' => $balance,
  80. 'description' => '余额提现',
  81. 'status' => 1,
  82. ];
  83. //写入余额记录
  84. $recordResult = $CustomAmountRecord->add($data);
  85. if (!$recordResult) {
  86. DB::rollBack();
  87. return json_send(['code'=>'error','msg'=>'提现申请失败','data'=>'写入余额记录失败']);
  88. }
  89. // 提交数据
  90. DB::commit();
  91. }catch (\Exception $e){
  92. DB::rollBack();
  93. return json_send(['code'=>'error','msg'=>'提现申请失败','data'=>'提现申请失败']);
  94. }
  95. $list = [
  96. 'package_info' => $transferResult['package_info'],
  97. 'out_bill_no' => $transferResult['out_bill_no'],
  98. ];
  99. return json_send(['code'=>'success','msg'=>'成功','data'=>$list]);
  100. }
  101. /**
  102. * 小程序微信商户转账回调 /api/wechat_pay/notify
  103. *
  104. * */
  105. public function notify()
  106. {
  107. Log::error('wechat/transfer_notify', '提现转账回调开始');
  108. $content = file_get_contents("php://input");
  109. if (!empty($content)) {
  110. //直接json字符串
  111. $params = $content;
  112. } elseif (!empty($_POST)) {
  113. //直接POST数据
  114. $params = $_POST;
  115. } else {
  116. $params = [];
  117. }
  118. $post_data = $params;
  119. Log::error('wechat/transfer_notify', 'post_data:' . $post_data);
  120. //获取headers参数
  121. $headers = request()->header();
  122. Log::error('wechat/transfer_notify', '微信支付回调返回headers参数:' . json_encode($headers));
  123. $inWechatpaySignature = $headers['wechatpay-signature'][0];
  124. $inWechatpayTimestamp = $headers['wechatpay-timestamp'][0];
  125. $inWechatpaySerial = $headers['wechatpay-serial'][0];
  126. $inWechatpayNonce = $headers['wechatpay-nonce'][0];
  127. $inBody = $post_data;
  128. Log::error('wechat/transfer_notify', 'wechatpay-timestamp:' . $inWechatpayTimestamp);
  129. $apiv3Key = Config('wechatpay.APIV3');// 在商户平台上设置的APIv3密钥
  130. // 根据通知的平台证书序列号,查询本地平台证书文件,
  131. $platformCertificateFilePath = Config('wechatpay.platformCertificate');
  132. $platformPublicKeyInstance = Rsa::from($platformCertificateFilePath, Rsa::KEY_TYPE_PUBLIC);
  133. try {
  134. // 检查通知时间偏移量,允许5分钟之内的偏移
  135. $timeOffsetStatus = 300 >= abs(Formatter::timestamp() - (int)$inWechatpayTimestamp);
  136. Log::error('notify_wechat_transfer', '时间偏移量:' . $timeOffsetStatus);
  137. $verifiedStatus = Rsa::verify(
  138. // 构造验签名串
  139. Formatter::joinedByLineFeed($inWechatpayTimestamp, $inWechatpayNonce, $inBody),
  140. $inWechatpaySignature,
  141. $platformPublicKeyInstance
  142. );
  143. Log::error('wechat/transfer_notify', '验签:' . $verifiedStatus.'验签inWechatpayTimestamp:' . $inWechatpayTimestamp.'验签verifiedStatus:' . $inWechatpayNonce);
  144. if ($timeOffsetStatus && $verifiedStatus) {
  145. // 转换通知的JSON文本消息为PHP Array数组
  146. $inBodyArray = (array)json_decode($inBody, true);
  147. // 使用PHP7的数据解构语法,从Array中解构并赋值变量
  148. ['resource' => [
  149. 'ciphertext' => $ciphertext,
  150. 'nonce' => $nonce,
  151. 'associated_data' => $aad
  152. ]] = $inBodyArray;
  153. // 加密文本消息解密
  154. $inBodyResource = AesGcm::decrypt($ciphertext, $apiv3Key, $nonce, $aad);
  155. // 把解密后的文本转换为PHP Array数组
  156. $inBodyResourceArray = (array)json_decode($inBodyResource, true);
  157. Log::error('wechat/transfer_notify', '打印解密后的结果:' . json_encode($inBodyResourceArray));
  158. Log::error('wechat/transfer_notify', '参数:' . $inBodyResourceArray['state'] . '订单号' . $inBodyResourceArray['out_bill_no'] . '微信支付号' . $inBodyResourceArray['transfer_bill_no']);
  159. $amountInfo = CustomAmountRecord::query()->where('out_bill_no','=',$inBodyResourceArray['out_bill_no'])->first();
  160. if (!$amountInfo) {
  161. Log::error('wechat/transfer_notify', '获取余额记录信息失败' . json_encode($amountInfo));
  162. return json_send(['code'=>'FAIL']);
  163. }
  164. if ($inBodyResourceArray['state'] == "SUCCESS") {
  165. $transfer_amount = $inBodyResourceArray['transfer_amount']/100;
  166. //更新余额记录状态
  167. $data = [
  168. 'pay_time' => time(),
  169. 'status'=>2,
  170. ];
  171. $res = CustomAmountRecord::query()->where('out_bill_no','=',$inBodyResourceArray['out_bill_no'])->update($data);
  172. Log::error('wechat/transfer_notify', '更新余额记录,snowflake_id:'.$inBodyResourceArray['out_bill_no'].';'. json_encode($res));
  173. if (!$res) {
  174. Log::error('wechat/transfer_notify', '更新余额记录失败' . json_encode($res));
  175. return json_send(['code'=>'FAIL']);
  176. }
  177. //更新用户提现成功数额
  178. $res = CustomAmount::query()->where('custom_uid','=',$amountInfo['custom_uid'])->update(['transfer_amount'=>DB::raw('transfer_amount+'.$transfer_amount)]);
  179. Log::error('wechat/transfer_notify', '更新用户提现成功数额,custom_uid:'.$amountInfo['custom_uid'].';'. json_encode($res));
  180. if (!$res) {
  181. Log::error('wechat/transfer_notify', '更新余额记录失败' . json_encode($res));
  182. return json_send(['code'=>'FAIL']);
  183. }
  184. Log::error('wechat/transfer_notify', '支付回调完成 通知返回' . json_encode($data));
  185. }elseif ($inBodyResourceArray['state'] == "FAIL"){
  186. //更新余额订单状态
  187. $data = [
  188. 'status'=>3
  189. ];
  190. $res = CustomAmountRecord::query()->where('out_bill_no','=',$inBodyResourceArray['out_bill_no'])->update($data);
  191. Log::error('wechat/transfer_notify', '更新余额记录,out_bill_no:'.$inBodyResourceArray['out_bill_no'].';'. json_encode($res));
  192. if (!$res) {
  193. Log::error('wechat/transfer_notify', '更新余额记录失败' . json_encode($res));
  194. return json_send(['code'=>'FAIL']);
  195. }
  196. //退回余额
  197. $amountUpdate = [
  198. 'amount'=>DB::raw('amount+'.$amountInfo['amount']),
  199. 'use_amount'=>DB::raw('use_amount-'.$amountInfo['amount']),
  200. 'update_time'=>time()
  201. ];
  202. $result = CustomAmount::query()->where(['custom_uid'=>$amountInfo['custom_uid']])->update($amountUpdate);
  203. if (!$result) {
  204. return json_send(['code'=>'error','msg'=>'提现失败退回余额失败','data'=>['error'=>'退回用户余额失败']]);
  205. }
  206. Log::error('wechat/transfer_notify', '回调完成 通知返回' . json_encode($amountInfo));
  207. }
  208. return json_send(['code'=>'SUCCESS']);
  209. }else{
  210. return json_send(['code'=>'FAIL']);
  211. }
  212. }catch (\Exception $e){
  213. Log::error('wechat/transfer_notify', '回调失败getMessage:' . $e->getMessage());
  214. }
  215. return json_send(['code'=>'SUCCESS']);
  216. }
  217. }