授权事件url接口

master
ck 5 years ago
parent 67320f6b8a
commit 468e3d804f

@ -19,13 +19,18 @@ import org.slf4j.Logger;
import org.springframework.beans.factory.annotation.Value; import org.springframework.beans.factory.annotation.Value;
import org.springframework.data.redis.core.RedisTemplate; import org.springframework.data.redis.core.RedisTemplate;
import org.springframework.web.bind.annotation.*; import org.springframework.web.bind.annotation.*;
import org.w3c.dom.NodeList;
import org.xml.sax.InputSource;
import javax.annotation.Resource; import javax.annotation.Resource;
import javax.servlet.http.HttpServletRequest; import javax.servlet.http.HttpServletRequest;
import javax.servlet.http.HttpServletResponse; import javax.servlet.http.HttpServletResponse;
import javax.xml.parsers.DocumentBuilder;
import javax.xml.parsers.DocumentBuilderFactory;
import java.io.BufferedReader; import java.io.BufferedReader;
import java.io.IOException; import java.io.IOException;
import java.io.PrintWriter; import java.io.PrintWriter;
import java.io.StringReader;
import java.util.Calendar; import java.util.Calendar;
import java.util.HashMap; import java.util.HashMap;
import java.util.Map; import java.util.Map;
@ -49,29 +54,47 @@ public class WechatController {
*/ */
@RequestMapping(value = "/getComponentVerifyTicket") @RequestMapping(value = "/getComponentVerifyTicket")
@ResponseBody @ResponseBody
public String getComponentVerifyTicket(@RequestParam("timestamp")String timestamp, @RequestParam("nonce")String nonce, public void getComponentVerifyTicket(HttpServletRequest request, HttpServletResponse response) throws IOException, AesException, DocumentException {
@RequestParam("msg_signature")String msgSignature, @RequestBody String postData) throws IOException {
// logger.info("接收component_verify_ticket 或 authorized事件"); String nonce = request.getParameter("nonce");
// String nonce = request.getParameter("nonce"); String timestamp = request.getParameter("timestamp");
// String timestamp = request.getParameter("timestamp"); String signature = request.getParameter("signature");
// String msgSignature = request.getParameter("msg_signature"); String msgSignature = request.getParameter("msg_signature");
// String postData = request.getParameter("postData");
// StringBuilder sb = new StringBuilder();
// BufferedReader in = request.getReader();
// String line;
// while((line = in.readLine()) != null) {
// sb.append(line);
// }
System.out.println("nonce: " + nonce); System.out.println("nonce: " + nonce);
System.out.println("timestamp: " + timestamp); System.out.println("timestamp: " + timestamp);
System.out.println("msgSignature: " + msgSignature); System.out.println("msgSignature: " + msgSignature);
StringBuilder sb = new StringBuilder();
BufferedReader in = request.getReader();
String line;
while((line = in.readLine()) != null) {
sb.append(line);
}
String postData = sb.toString();
System.out.println("postData: " + postData); System.out.println("postData: " + postData);
try { try {
//这个类是微信官网提供的解密类,需要用到消息校验Token 消息加密Key和服务平台appid //这个类是微信官网提供的解密类,需要用到消息校验Token 消息加密Key和服务平台appid
WXBizMsgCrypt pc = new WXBizMsgCrypt(componentToken, WXBizMsgCrypt pc = new WXBizMsgCrypt(componentToken,
aesKey, componentAppId); aesKey, componentAppId);
String xml = pc.decryptMsg(msgSignature, timestamp, nonce, postData); DocumentBuilderFactory dbf = DocumentBuilderFactory.newInstance();
dbf.setFeature("http://apache.org/xml/features/disallow-doctype-decl", true);
dbf.setFeature("http://xml.org/sax/features/external-general-entities", false);
dbf.setFeature("http://xml.org/sax/features/external-parameter-entities", false);
dbf.setFeature("http://apache.org/xml/features/nonvalidating/load-external-dtd", false);
dbf.setXIncludeAware(false);
dbf.setExpandEntityReferences(false);
DocumentBuilder db = dbf.newDocumentBuilder();
StringReader sr = new StringReader(postData);
InputSource is = new InputSource(sr);
org.w3c.dom.Document document = db.parse(is);
org.w3c.dom.Element root = document.getDocumentElement();
NodeList nodelist1 = root.getElementsByTagName("Encrypt");
String encrypt = nodelist1.item(0).getTextContent();
String format = "<xml><ToUserName><![CDATA[toUser]]></ToUserName><Encrypt><![CDATA[%1$s]]></Encrypt></xml>";
String fromXML = String.format(format, encrypt);
String xml = pc.decryptMsg(msgSignature, timestamp, nonce, fromXML);
Map<String, Object> result = Xml2MapUtil.xml2map(xml);// 将xml转为map Map<String, Object> result = Xml2MapUtil.xml2map(xml);// 将xml转为map
String componentVerifyTicket = MapUtils.getString(result, "ComponentVerifyTicket"); String componentVerifyTicket = MapUtils.getString(result, "ComponentVerifyTicket");
@ -82,23 +105,73 @@ public class WechatController {
// log.error(e.getMessage(), e); // log.error(e.getMessage(), e);
e.printStackTrace(); e.printStackTrace();
} }
return "success"; output(response, "success");
} }
/**
* "文本消息"
@RequestMapping(value="/{appid}/callback",method={RequestMethod.GET,RequestMethod.POST}) * @param response
public void callBackEvent(HttpServletRequest request,@PathVariable("APPID") String appid, * @param returnvaleue
HttpServletResponse response) throws IOException, DocumentException { */
public void output(HttpServletResponse response,String returnvaleue){
try {
PrintWriter pw = response.getWriter();
pw.write(returnvaleue);
// System.out.println("****************returnvaleue***************="+returnvaleue);
pw.flush();
} catch (IOException e) {
e.printStackTrace();
}
}
// /**
// * 处理授权事件的推送
// *
// * @param request
// * @throws IOException
// * @throws AesException
// * @throws DocumentException
// */
// public void processAuthorizeEvent(HttpServletRequest request) throws IOException, DocumentException, AesException {
// String nonce = request.getParameter("nonce");
// String timestamp = request.getParameter("timestamp");
// String signature = request.getParameter("signature");
// String msgSignature = request.getParameter("msg_signature"); // String msgSignature = request.getParameter("msg_signature");
// logger.info("第三方平台全网发布-------------{appid}/callback-----------验证开始。。。。msg_signature=" + msgSignature); //
// if (!StringUtils.isNotBlank(msgSignature)) { // if (!StringUtils.isNotBlank(msgSignature))
// return;// 微信推送给第三方开放平台的消息一定是加过密的,无消息加密无法解密消息 // return;// 微信推送给第三方开放平台的消息一定是加过密的,无消息加密无法解密消息
// boolean isValid = checkSignature(COMPONENT_TOKEN, signature, timestamp, nonce);
// if (isValid) {
// StringBuilder sb = new StringBuilder();
// BufferedReader in = request.getReader();
// String line;
// while ((line = in.readLine()) != null) {
// sb.append(line);
// }
// String xml = sb.toString();
//// LogUtil.info("第三方平台全网发布-----------------------原始 Xml="+xml);
// String encodingAesKey = COMPONENT_ENCODINGAESKEY;// 第三方平台组件加密密钥
// String appId = getAuthorizerAppidFromXml(xml);// 此时加密的xml数据中ToUserName是非加密的解析xml获取即可
// //LogUtil.info("第三方平台全网发布-------------appid----------getAuthorizerAppidFromXml(xml)-----------appId="+appId);
// WXBizMsgCrypt pc = new WXBizMsgCrypt(COMPONENT_TOKEN, encodingAesKey, COMPONENT_APPID);
// xml = pc.decryptMsg(msgSignature, timestamp, nonce, xml);
//// LogUtil.info("第三方平台全网发布-----------------------解密后 Xml="+xml);
// processAuthorizationEvent(xml);
// } // }
// StringBuilder sb =new StringBuilder(); // }
//
//
@RequestMapping(value="/{appid}/callback",method={RequestMethod.GET,RequestMethod.POST})
public void callBackEvent(HttpServletRequest request, HttpServletResponse response) throws IOException, DocumentException, AesException {
// String msgSignature = request.getParameter("msg_signature");
// //LogUtil.info("第三方平台全网发布-------------{appid}/callback-----------验证开始。。。。msg_signature="+msgSignature);
// if (!StringUtils.isNotBlank(msgSignature))
// return;// 微信推送给第三方开放平台的消息一定是加过密的,无消息加密无法解密消息
//
// StringBuilder sb = new StringBuilder();
// BufferedReader in = request.getReader(); // BufferedReader in = request.getReader();
// String line; // String line;
// while ((line = in.readLine()) !=null) { // while ((line = in.readLine()) != null) {
// sb.append(line); // sb.append(line);
// } // }
// in.close(); // in.close();
@ -110,134 +183,120 @@ public class WechatController {
// //
// //微信全网测试账号 // //微信全网测试账号
//// if (StringUtils.equalsIgnoreCase(toUserName, APPID)) { //// if (StringUtils.equalsIgnoreCase(toUserName, APPID)) {
// logger.info("全网发布接入检测消息反馈开始---------------APPID=" + appid +"------------------------toUserName=" + toUserName); //// LogUtil.info("全网发布接入检测消息反馈开始---------------APPID="+ APPID +"------------------------toUserName="+toUserName);
// checkWeixinAllNetworkCheck(request, response, xml); // checkWeixinAllNetworkCheck(request,response,xml);
} }
//
public void checkWeixinAllNetworkCheck(HttpServletRequest request, HttpServletResponse response,String xml, String appid) throws DocumentException, IOException, AesException{ //
String nonce = request.getParameter("nonce"); // public void checkWeixinAllNetworkCheck(HttpServletRequest request, HttpServletResponse response,String xml) throws DocumentException, IOException, AesException{
String timestamp = request.getParameter("timestamp"); // String nonce = request.getParameter("nonce");
String msgSignature = request.getParameter("msg_signature"); // String timestamp = request.getParameter("timestamp");
// String msgSignature = request.getParameter("msg_signature");
WXBizMsgCrypt pc = new WXBizMsgCrypt(componentToken, aesKey, appId); //
xml = pc.decryptMsg(msgSignature, timestamp, nonce, xml); // WXBizMsgCrypt pc = new WXBizMsgCrypt(componentToken, aesKey, componentAppId);
// xml = pc.decryptMsg(msgSignature, timestamp, nonce, xml);
Document doc = DocumentHelper.parseText(xml); //
Element rootElt = doc.getRootElement(); // Document doc = DocumentHelper.parseText(xml);
String msgType = rootElt.elementText("MsgType"); // Element rootElt = doc.getRootElement();
String toUserName = rootElt.elementText("ToUserName"); // String msgType = rootElt.elementText("MsgType");
String fromUserName = rootElt.elementText("FromUserName"); // String toUserName = rootElt.elementText("ToUserName");
// String fromUserName = rootElt.elementText("FromUserName");
System.out.println("---全网发布接入检测--step.1-----------msgType="+msgType+"-----------------toUserName="+toUserName+"-----------------fromUserName="+fromUserName); //
// LogUtil.info("---全网发布接入检测--step.2-----------xml="+xml); //// LogUtil.info("---全网发布接入检测--step.1-----------msgType="+msgType+"-----------------toUserName="+toUserName+"-----------------fromUserName="+fromUserName);
if("event".equals(msgType)){ //// LogUtil.info("---全网发布接入检测--step.2-----------xml="+xml);
// LogUtil.info("---全网发布接入检测--step.3-----------事件消息--------"); // if("event".equals(msgType)){
String event = rootElt.elementText("Event"); //// LogUtil.info("---全网发布接入检测--step.3-----------事件消息--------");
replyEventMessage(request,response,event,toUserName,fromUserName,appid); // String event = rootElt.elementText("Event");
}else if("text".equals(msgType)){ // replyEventMessage(request,response,event,toUserName,fromUserName);
// LogUtil.info("---全网发布接入检测--step.3-----------文本消息--------"); // }else if("text".equals(msgType)){
String content = rootElt.elementText("Content"); //// LogUtil.info("---全网发布接入检测--step.3-----------文本消息--------");
processTextMessage(request,response,content,toUserName,fromUserName,appid); // String content = rootElt.elementText("Content");
} // processTextMessage(request,response,content,toUserName,fromUserName);
} // }
// }
public void replyEventMessage(HttpServletRequest request, HttpServletResponse response, String event, String toUserName, String fromUserName, String appid) throws DocumentException, IOException { //
String content = event + "from_callback"; // public void replyEventMessage(HttpServletRequest request, HttpServletResponse response, String event, String toUserName, String fromUserName) throws DocumentException, IOException {
// LogUtil.info("---全网发布接入检测------step.4-------事件回复消息 content="+content + " toUserName="+toUserName+" fromUserName="+fromUserName); // String content = event + "from_callback";
replyTextMessage(request,response,content,toUserName,fromUserName, appid); //// LogUtil.info("---全网发布接入检测------step.4-------事件回复消息 content="+content + " toUserName="+toUserName+" fromUserName="+fromUserName);
} // replyTextMessage(request,response,content,toUserName,fromUserName);
// }
public void processTextMessage(HttpServletRequest request, HttpServletResponse response,String content,String toUserName, String fromUserName, String appid) throws IOException, DocumentException{ //
if("TESTCOMPONENT_MSG_TYPE_TEXT".equals(content)){ //
String returnContent = content+"_callback"; // /**
replyTextMessage(request,response,returnContent,toUserName,fromUserName,appid); // * 回复微信服务器"文本消息"
}else if(StringUtils.startsWithIgnoreCase(content, "QUERY_AUTH_CODE")){ // * @param request
output(response, ""); // * @param response
//接下来客服API再回复一次消息 // * @param content
replyApiTextMessage(request,response,content.split(":")[1],fromUserName,appid); // * @param toUserName
} // * @param fromUserName
} // * @throws DocumentException
// * @throws IOException
/** // */
* "文本消息" // public void replyTextMessage(HttpServletRequest request, HttpServletResponse response, String content, String toUserName, String fromUserName) throws DocumentException, IOException {
* @param request // Long createTime = Calendar.getInstance().getTimeInMillis() / 1000;
* @param response // StringBuffer sb = new StringBuffer();
* @param content // sb.append("<xml>");
* @param toUserName // sb.append("<ToUserName><![CDATA["+fromUserName+"]]></ToUserName>");
* @param fromUserName // sb.append("<FromUserName><![CDATA["+toUserName+"]]></FromUserName>");
* @throws DocumentException // sb.append("<CreateTime>"+createTime+"</CreateTime>");
* @throws IOException // sb.append("<MsgType><![CDATA[text]]></MsgType>");
*/ // sb.append("<Content><![CDATA["+content+"]]></Content>");
public void replyTextMessage(HttpServletRequest request, HttpServletResponse response, String content, String toUserName, String fromUserName, String appid) throws DocumentException, IOException { // sb.append("</xml>");
Long createTime = Calendar.getInstance().getTimeInMillis() / 1000; // String replyMsg = sb.toString();
StringBuffer sb = new StringBuffer(); //
sb.append("<xml>"); // String returnvaleue = "";
sb.append("<ToUserName><![CDATA["+fromUserName+"]]></ToUserName>"); // try {
sb.append("<FromUserName><![CDATA["+toUserName+"]]></FromUserName>"); // WXBizMsgCrypt pc = new WXBizMsgCrypt(componentToken, aesKey, componentAppId);
sb.append("<CreateTime>"+createTime+"</CreateTime>"); // returnvaleue = pc.encryptMsg(replyMsg, createTime.toString(), "easemob");
sb.append("<MsgType><![CDATA[text]]></MsgType>"); //// System.out.println("------------------加密后的返回内容 returnvaleue "+returnvaleue);
sb.append("<Content><![CDATA["+content+"]]></Content>"); // } catch (AesException e) {
sb.append("</xml>"); // e.printStackTrace();
String replyMsg = sb.toString(); // }
// output(response, returnvaleue);
String returnvaleue = ""; // }
try { //
WXBizMsgCrypt pc = new WXBizMsgCrypt(componentToken, aesKey, appId); // public void processTextMessage(HttpServletRequest request, HttpServletResponse response,String content,String toUserName, String fromUserName) throws IOException, DocumentException{
returnvaleue = pc.encryptMsg(replyMsg, createTime.toString(), "easemob"); // if("TESTCOMPONENT_MSG_TYPE_TEXT".equals(content)){
// System.out.println("------------------加密后的返回内容 returnvaleue "+returnvaleue); // String returnContent = content+"_callback";
} catch (AesException e) { // replyTextMessage(request,response,returnContent,toUserName,fromUserName);
e.printStackTrace(); // }else if(StringUtils.startsWithIgnoreCase(content, "QUERY_AUTH_CODE")){
} // output(response, "");
output(response, returnvaleue); // //接下来客服API再回复一次消息
} // replyApiTextMessage(request,response,content.split(":")[1],fromUserName);
// }
/** // }
* //
* @param response // public void replyApiTextMessage(HttpServletRequest request, HttpServletResponse response, String auth_code, String fromUserName) throws DocumentException, IOException {
* @param returnvaleue // String authorization_code = auth_code;
*/ // // 得到微信授权成功的消息后,应该立刻进行处理!!相关信息只会在首次授权的时候推送过来
public void output(HttpServletResponse response, String returnvaleue) {
try {
PrintWriter pw = response.getWriter();
pw.write(returnvaleue);
// System.out.println("****************returnvaleue***************="+returnvaleue);
pw.flush();
} catch (IOException e) {
e.printStackTrace();
}
}
public void replyApiTextMessage(HttpServletRequest request, HttpServletResponse response, String auth_code, String fromUserName, String appid) throws DocumentException, IOException {
// 得到微信授权成功的消息后,应该立刻进行处理!!相关信息只会在首次授权的时候推送过来
// System.out.println("------step.1----使用客服消息接口回复粉丝----逻辑开始-------------------------"); // System.out.println("------step.1----使用客服消息接口回复粉丝----逻辑开始-------------------------");
// try { // try {
// System.out.println("------step.1----使用客服消息接口回复粉丝----逻辑开始-------------------------auth_code: "+auth_code+" thirdWeixinService.getComponent_access_token:"+redisTemplate.opsForValue().get("component_access_token").toString()); // ApiComponentToken apiComponentToken = new ApiComponentToken();
// String url = "https://api.weixin.qq.com/cgi-bin/component/api_query_auth?component_access_token="+ redisTemplate.opsForValue().get("component_access_token").toString(); // apiComponentToken.setComponent_appid(COMPONENT_APPID);
// JSONObject jsonObject1 = new JSONObject(); // apiComponentToken.setComponent_appsecret(COMPONENT_APPSECRET);
// jsonObject1.put("component_appid", appId); // WeixinOpenAccountEntity entity = getWeixinOpenAccount(APPID);
// jsonObject1.put("authorization_code", auth_code); // apiComponentToken.setComponent_verify_ticket(entity.getTicket());
// JSONObject jsonRes = JSONObject.parseObject(HttpRequestUtils.sendPost(url,jsonObject1)); // String component_access_token = JwThirdAPI.getAccessToken(apiComponentToken);
// System.out.println("------step.1----使用客服消息接口回复粉丝----逻辑开始---------------------jsonRes:"+jsonRes.toString()); //
// // System.out.println("------step.2----使用客服消息接口回复粉丝------- component_access_token = "+component_access_token + "---------authorization_code = "+authorization_code);
// System.out.println("------step.1----使用客服消息接口回复粉丝----逻辑开始---------------------jsonRes.authorization_info:"+jsonRes.get("authorization_info")); // net.sf.json.JSONObject authorizationInfoJson = JwThirdAPI.getApiQueryAuthInfo(COMPONENT_APPID, authorization_code, component_access_token);
// ThirdWeixin thirdWeixin = new ThirdWeixin(); // System.out.println("------step.3----使用客服消息接口回复粉丝-------------- 获取authorizationInfoJson = "+authorizationInfoJson);
// thirdWeixin = JSON.parseObject(JSON.toJSONString(jsonRes.get("authorization_info")), ThirdWeixin.class); // net.sf.json.JSONObject infoJson = authorizationInfoJson.getJSONObject("authorization_info");
// thirdWeixin.setEntCode("test"); // String authorizer_access_token = infoJson.getString("authorizer_access_token");
// CommonUtil.setInsertCommonField(thirdWeixin, "system_getauthinfo");
// thirdWeixinService.saveThirdWeixin(thirdWeixin);
// //
// //
// Map<String,Object> obj = new HashMap<String,Object>();
// Map<String,Object> msgMap = new HashMap<String,Object>();
// String msg = auth_code + "_from_api"; // String msg = auth_code + "_from_api";
// JSONObject jsonObject = new JSONObject(); // msgMap.put("content", msg);
// jsonObject.put("touser", fromUserName); //
// jsonObject.put("msgtype", "text"); // obj.put("touser", fromUserName);
// JSONObject text = new JSONObject(); // obj.put("msgtype", "text");
// text.put("content", msg); // obj.put("text", msgMap);
// jsonObject.put("text", text); // JwThirdAPI.sendMessage(obj, authorizer_access_token);
// WeixinToKenServiceImpl.httpRequest("https://api.weixin.qq.com/cgi-bin/message/custom/send?access_token="+thirdWeixin.getAuthorizer_access_token(), "POST", jsonObject); // } catch (WexinReqException e) {
// } catch (Exception e) {
// e.printStackTrace(); // e.printStackTrace();
// } // }
//
} // }
} }

Loading…
Cancel
Save