app_pay.php 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323
  1. <?php
  2. /**
  3. * Created by PhpStorm.
  4. * User: stanley-king
  5. * Date: 15/12/9
  6. * Time: 上午12:25
  7. */
  8. define(WXPAY_PATH, BASE_DATA_PATH . '/api/wxpay');
  9. require_once(WXPAY_PATH . '/lib/WxPay.Api.php');
  10. require_once(WXPAY_PATH . '/lib/WxPay.Config.php');
  11. require_once(WXPAY_PATH . '/lib/WxPay.Data.php');
  12. require_once(WXPAY_PATH . '/lib/WxPay.Exception.php');
  13. require_once(WXPAY_PATH . '/lib/WxPay.Notify.php');
  14. require_once(BASE_ROOT_PATH . '/helper/predeposit_helper.php');
  15. class app_payControl extends mbMemberControl
  16. {
  17. private static $pay_types = array('wxpay', 'alipay');
  18. const wx_notifyurl = BASE_SITE_URL . '/mobile/wxnotify.php';
  19. const ali_notifyurl = BASE_SITE_URL . '/mobile/alipay_notify_url.php';
  20. const wx_orderquery = 'https://api.mch.weixin.qq.com/pay/orderquery';
  21. const alipay_rsa_private = "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";
  22. public function calc_predOp()
  23. {
  24. $pay_sn = $_GET['paysn'];
  25. $validate = new Validate();
  26. $validate->setValidate(Validate::verify_serialnum($pay_sn));
  27. $validate->setValidate(Validate::verify_number($pay_sn));
  28. $error = $validate->validate();
  29. if ($error != '') {
  30. return self::outerr(errcode::ErrParamter, $error);
  31. }
  32. $logic_payment = Logic('payment');
  33. $member_info = array('member_id' => $_SESSION['member_id'], 'member_name' => $_SESSION['member_name']);
  34. $canuse_pred = $logic_payment->calcPredeposit($pay_sn,$member_info,$avail_pred,$used_pred);
  35. if($used_pred === false) {
  36. return self::outerr(errcode::ErrOrder,"取不到订单信息.");
  37. } else {
  38. return self::outsuccess(array("available_predeposit" => $avail_pred,"canuse_predeposit" => $canuse_pred,'used_predposit' => $used_pred));
  39. }
  40. }
  41. /*
  42. * 微信获取支付数据
  43. */
  44. public function uniorderOp()
  45. {
  46. $pay_sn = $_GET['paysn'];
  47. $payment = $_GET['payment'];
  48. $vcode = $_GET['vcode'];
  49. if(empty($vcode)) {
  50. return self::outerr(errcode::ErrPayment, "抱歉,请升级到最新版本.");
  51. }
  52. if (in_array($payment, self::$pay_types) == false) {
  53. return self::outerr(errcode::ErrPayment, "err paytype {$payment}: only for wxpay,alipay");
  54. }
  55. $logic_payment = Logic('payment');
  56. // 尝试使用红包
  57. $usebonus = intval($_GET['usebonus']);
  58. $member_info = array('member_id' => $_SESSION['member_id'], 'member_name' => $_SESSION['member_name']);
  59. if (intval($usebonus) === 1) {
  60. $logic_payment->payPredepositEx($pay_sn,$member_info);
  61. }
  62. //重新计算所需支付金额
  63. $result = $logic_payment->getRealOrderInfo($pay_sn, $_SESSION['member_id']);
  64. if (intval($result['data']['api_pay_state']) != 0) {
  65. return self::outerr(errcode::ErrPayment, $result['msg']);
  66. }
  67. // 判断是否需要支付
  68. $output = array();
  69. $pay_money = intval(floatval($result['data']['api_pay_amount']) * 100 + 0.5);
  70. if ($pay_money >= 1)
  71. {
  72. $output['need_pay'] = 1;
  73. $ret = $this->api_pay($result['data'], $payment);
  74. if ($ret != false) {
  75. $output['pay_info'] = $ret;
  76. } else {
  77. return self::outerr(errcode::ErrPayment, '支付失败.');
  78. }
  79. }
  80. else
  81. {
  82. $output['need_pay'] = 0;
  83. $result = self::update_order($pay_sn, $pay_sn, 'bonus'); // 更新订单
  84. // 推送到oms
  85. if (isset($result) && $result['state'])
  86. {
  87. $logic_delivery = Logic('delivery');
  88. $ret = $logic_delivery->putOrder($pay_sn, $pay_sn);
  89. if(empty($ret)) { //todo must add to 定时任务
  90. Log::record("Put order to oms error: pay_sn={$pay_sn},bonus pay.",Log::ERR);
  91. }
  92. }
  93. }
  94. self::outsuccess($output);
  95. }
  96. /**
  97. * 支付订单查询
  98. *
  99. * 输入参数:
  100. * key: token
  101. * paysn: 支付sn
  102. * payment: 支付类型
  103. * transaction_id:
  104. */
  105. public function orderqueryOp()
  106. {
  107. $pay_sn = $_GET['paysn'];
  108. $payment = $_GET['payment'];
  109. $tractid = $_GET['transaction_id'];
  110. if ($payment == 'wxpay') {
  111. $input = new WxPayOrderQuery();
  112. $input->SetOut_trade_no($pay_sn);
  113. $input->SetTransaction_id($tractid);
  114. $result = WxPayApi::orderQuery($input);
  115. if (array_key_exists("return_code", $result)
  116. && array_key_exists("result_code", $result)
  117. && $result["return_code"] == "SUCCESS"
  118. && $result["result_code"] == "SUCCESS"
  119. ) {
  120. return self::outsuccess($result);
  121. }
  122. return self::outerr(errcode::ErrPayment, '支付失败.');
  123. } else {
  124. return self::outerr(errcode::ErrPayment, "错误的参数:payment = {$payment}");
  125. }
  126. }
  127. /**
  128. * 支付返回
  129. *
  130. * @param $pay_info
  131. * @param $payment
  132. * @return array
  133. */
  134. private function api_pay($pay_info, $payment)
  135. {
  136. $subject = $pay_info['subject'];
  137. $pay_sn = $pay_info['pay_sn'];
  138. $fee = intval(doubleval($pay_info['api_pay_amount']) * 100 + 0.5);
  139. $order_sn = $pay_info['order_list'][0]['order_sn'];
  140. if ($payment == 'wxpay') {
  141. return $this->uniorder($subject, $pay_sn, $fee,$order_sn);
  142. } else if ($payment === 'alipay') {
  143. $ret = array();
  144. $ret['rsa_private'] = self::alipay_rsa_private; // 私钥
  145. $ret['partner'] = '2088121219613123'; // 合作者身份ID
  146. $ret['seller_id'] = 'napheir.ao@lrlz.com'; // 签约卖家支付宝账号
  147. $ret['out_trade_no'] = $pay_sn; // 商户网站唯一订单号
  148. $ret['subject'] = $subject; // 商品名称
  149. $ret['body'] = "order_sn={$order_sn}"; // 商品详情
  150. $total_fee = intval(doubleval($pay_info['api_pay_amount']) * 100 + 0.5) / 100;
  151. $ret['total_fee'] = $total_fee;// 商品金额
  152. $ret['notify_url'] = self::ali_notifyurl; // 服务器异步通知页面路径
  153. $ret['service'] = 'mobile.securitypay.pay'; // 服务器接口名称,固定值
  154. $ret['payment_type'] = '1'; // 支付类型,固定值
  155. $ret['_input_charset'] = 'utf-8'; // 参数编码,固定值
  156. $ret['it_b_pay'] = '30m'; // 设置未付款交易的超时时间 30min
  157. $ret['return_url'] = 'http://'; // 支付宝完成请求后,当前页面跳转到商户指定页面的路径,可空
  158. return array('payment' => $payment, 'content' => $ret);
  159. }
  160. }
  161. /**
  162. * 格式化参数格式化成url参数
  163. */
  164. private function to_url_params($values)
  165. {
  166. $buff = "";
  167. foreach ($values as $k => $v) {
  168. if ($k != "sign" && $v != "" && !is_array($v)) {
  169. $buff .= $k . "=" . $v . "&";
  170. }
  171. }
  172. $buff = trim($buff, "&");
  173. return $buff;
  174. }
  175. private function make_sign($values)
  176. {
  177. //签名步骤一:按字典序排序参数
  178. ksort($values);
  179. $string = $this->to_url_params($values);
  180. //签名步骤二:在string后加入KEY
  181. $string = $string . "&key=" . WxPayConfig::KEY;
  182. //签名步骤三:MD5加密
  183. $string = md5($string);
  184. //签名步骤四:所有字符转为大写
  185. $result = strtoupper($string);
  186. return $result;
  187. }
  188. /**
  189. * 更新订单状态
  190. *
  191. * @param $out_trade_no
  192. * @param $trade_no
  193. * @param $payment
  194. * @param $transaction_id
  195. * @return array
  196. */
  197. public static function update_order($out_trade_no, $trade_no, $payment)
  198. {
  199. $logic_payment = Logic('payment');
  200. $tmp = explode('|', $out_trade_no);
  201. $out_trade_no = $tmp[0];
  202. if (!empty($tmp[1])) {
  203. $order_type = $tmp[1];
  204. } else {
  205. $order_pay_info = Model('order')->getOrderPayInfo(array('pay_sn' => $out_trade_no));
  206. if (empty($order_pay_info)) {
  207. $order_type = 'v';
  208. } else {
  209. $order_type = 'r';
  210. }
  211. }
  212. if ($order_type == 'r') {
  213. $result = $logic_payment->getRealOrderInfo($out_trade_no);
  214. if (intval($result['data']['api_pay_state'])) {
  215. return array('state' => true);
  216. }
  217. $order_list = $result['data']['order_list'];
  218. $result = $logic_payment->updateRealOrder($out_trade_no, $payment, $order_list, $trade_no);
  219. } elseif ($order_type == 'v') {
  220. $result = $logic_payment->getVrOrderInfo($out_trade_no, null, true);
  221. if ($result['data']['order_state'] != ORDER_STATE_NEW) {
  222. return array('state' => true);
  223. }
  224. $result = $logic_payment->updateVrOrder($out_trade_no, $payment, $result['data'], $trade_no);
  225. }
  226. return $result;
  227. }
  228. private function toString($order)
  229. {
  230. $ret = '';
  231. foreach ($order as $key => $val) {
  232. $ret .= $key . "=" . $val;
  233. $ret .= '&';
  234. }
  235. return $ret;
  236. }
  237. public static function check_fee($pay_sn,$total_fee,&$need_pay)
  238. {
  239. $logic_payment = Logic('payment');
  240. $result = $logic_payment->getRealOrderInfo($pay_sn);
  241. if (intval($result['data']['api_pay_state']) != 0) {
  242. return false;
  243. }
  244. $need_pay = intval($result['data']['api_pay_amount'] * 100 + 0.5);
  245. $total_fee = intval($total_fee * 100 + 0.5);
  246. return ($need_pay === $total_fee);
  247. }
  248. /**
  249. * @return array
  250. * @throws WxPayException
  251. */
  252. private function uniorder($body, $pay_sn, $fee,$order_sn)
  253. {
  254. Log::record("body={$body},paysn={$pay_sn},fee={$fee}", Log::DEBUG);
  255. $input = new WxPayUnifiedOrder();
  256. $input->SetBody($body); //商品或支付单简要描述
  257. $input->SetAttach($pay_sn); //附加数据,在查询API和支付通知中原样返回,该字段主要用于商户携带订单的自定义数据
  258. $out_trade_no = $pay_sn . sprintf("%03d",mt_rand(0,999)); //给微信用的每次重新生成的商户订单SN, 避免二次支付, 数额修改导致支付失败
  259. $input->SetOut_trade_no($out_trade_no);//商户系统内部的订单号,32个字符内、可包含字母, 其他说明见商户订单号
  260. $input->SetTotal_fee("{$fee}");//订单总金额,单位为分,详见支付金额
  261. $input->SetTime_start(date("YmdHis")); //订单生成时间,格式为yyyyMMddHHmmss,如2009年12月25日9点10分10秒表示为20091225091010。其他详见时间规则
  262. $input->SetTime_expire(date("YmdHis", time() + 600));//订单失效时间,格式为yyyyMMddHHmmss,如2009年12月27日9点10分10秒表示为20091227091010。其他详见时间规则
  263. $input->SetNotify_url(self::wx_notifyurl);
  264. $input->SetTrade_type("APP");//JSAPI--公众号支付、NATIVE--原生扫码支付、APP--app支付,统一下单接口trade_type的传参可参考这里,MICROPAY--刷卡支付,刷卡支付有单独的支付接口,不调用统一下单接口
  265. $order = WxPayApi::unifiedOrder($input);
  266. $sorder = $this->toString($order);
  267. Log::record($sorder, Log::DEBUG);
  268. if (array_key_exists('err_code', $order)) {
  269. return false;
  270. }
  271. $ret = array(); {
  272. $ret['appid'] = $order["appid"];
  273. $ret['noncestr'] = WxPayApi::getNonceStr();
  274. $ret['package'] = 'Sign=WXPay';
  275. $ret['partnerid'] = WxPayConfig::MCHID;
  276. $ret['prepayid'] = $order['prepay_id'];
  277. $timeStamp = time();
  278. $ret['timestamp'] = "{$timeStamp}";
  279. $ret['sign'] = $this->make_sign($ret);
  280. }
  281. return $ret;
  282. }
  283. }