PaymentController.php 5.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198
  1. <?php
  2. namespace App\Http\Controllers;
  3. use Illuminate\Http\JsonResponse;
  4. use Illuminate\Http\Request;
  5. use App\Http\Models\User;
  6. use App\Http\Models\Payment;
  7. use Redirect;
  8. use Response;
  9. use Log;
  10. class PaymentController extends Controller
  11. {
  12. protected static $config;
  13. protected static $url = 'https://api.daimiyun.cn/v2/';
  14. public function __construct()
  15. {
  16. self::$config = $this->systemConfig();
  17. }
  18. /**
  19. * 查询订单状态(ajax)
  20. * @param Request $request [description]
  21. * @return Payment 订单 JSON
  22. */
  23. public function query(Request $request)
  24. {
  25. $pid = $request->get('pid');
  26. $payment = Payment::query()->find($pid);
  27. return Response::json($payment);
  28. }
  29. /**
  30. * 发起订单创建请求
  31. * @param Request $request 请求
  32. * @return JSON 订单信息
  33. */
  34. public function new(Request $request)
  35. {
  36. $type = $request->get('type');
  37. $price = $request->get('price');
  38. if (empty($type)) {
  39. return Response::json(['errcode' => -1, 'errmsg'=> '请选择支付方式']);
  40. } else if (self::$config['dmf_' . $type] == 0) {
  41. return Response::json(['errcode' => -1, 'errmsg' => '支付方式不合法']);
  42. } else if ($price <= 0) {
  43. return Response::json(['errcode' => -1, 'errmsg' => '请输入正确的充值金额']);
  44. }
  45. $user = $request->session()->get('user');
  46. $user = User::query()->find($user['id']);
  47. $payment = new Payment();
  48. $payment->user_id = $user->id;
  49. $payment->pay_way = '黛米云-' . self::$config['dmf_' . $type];
  50. $payment->money = $price * 100;
  51. $payment->status = 0;
  52. $payment->save();
  53. $settings = [
  54. 'phone' => self::$config['dmf_' . $type . "_phone"],
  55. 'mchid' => self::$config['dmf_' . $type . "_mchid"],
  56. 'token' => self::$config['dmf_' . $type . "_token"],
  57. ];
  58. $data = [
  59. 'trade' => $payment->id,
  60. 'price' => $price,
  61. 'phone' => $settings['phone'],
  62. 'mchid' => $settings['mchid'],
  63. 'subject' => '[SSRPanel]' . self::$config['website_name'] . "充值" . $price . "元",
  64. 'body' => '[SSRPanel]' . self::$config['website_name'] . "充值" . $price . "元",
  65. ];
  66. $data = $this->sign($data, $settings['token']);
  67. $ret = $this->post(self::$url . $type . "/create", $data);
  68. $result = json_decode($ret, true);
  69. if ($result and $result['errcode'] == 0) {
  70. $result['pid'] = $payment->id;
  71. return Response::json($result);
  72. } else {
  73. return json_encode([
  74. 'errcode' => -1,
  75. 'errmsg' => "接口调用失败!" . $ret,
  76. ]);
  77. }
  78. return $result;
  79. }
  80. /**
  81. * 支付宝接口返回
  82. * @param Request $req [description]
  83. * @param [type] $type [description]
  84. * @return [type] [description]
  85. */
  86. public function return (Request $req, $type)
  87. {
  88. $money = $_GET['money'];
  89. echo "您已经成功支付 $money 元,正在跳转..";
  90. echo <<<HTML
  91. <script>
  92. location.href="/user/payment";
  93. </script>
  94. HTML;
  95. return;
  96. }
  97. /**
  98. * 回调处理 标记订单状态
  99. * @param Request $request [description]
  100. * @param [type] $type [description]
  101. * @return function [description]
  102. */
  103. public function callback(Request $request, $type)
  104. {
  105. $order_data = $_POST;
  106. $status = $order_data['status']; // 获取传递过来的交易状态
  107. $invoiceid = $order_data['out_trade_no']; // 订单号
  108. $transid = $order_data['trade_no']; // 转账交易号
  109. $amount = $order_data['money']; // 获取递过来的总价格
  110. if (!$this->checksign($_POST, self::$config['dmf_' . $type . "_token"])) {
  111. return Response::json(['errcode' => 2333]);
  112. }
  113. if ($status == 'success') {
  114. $payment = Payment::query()->find($invoiceid);
  115. if ($payment->status == 1) {
  116. return Response::json(['errcode' => 0]);
  117. }
  118. $payment->status = 1;
  119. $payment->save();
  120. // 用户加余额
  121. $user = User::query()->find($payment->user_id);
  122. $user->balance += $payment->money * 100;
  123. $user->save();
  124. return json_encode(['errcode' => 0]);
  125. } else {
  126. return '';
  127. }
  128. }
  129. private function getSign($array, $key)
  130. {
  131. unset($array['sign']);
  132. ksort($array);
  133. $sss = http_build_query($array);
  134. $sign = hash("sha256", $sss . $key);
  135. $sign = sha1($sign . hash("sha256", $key));
  136. return $sign;
  137. }
  138. private function sign($array, $key)
  139. {
  140. $array['sign'] = $this->getSign($array, $key);
  141. return $array;
  142. }
  143. private function checkSign($array, $key)
  144. {
  145. $new = $array;
  146. $new = $this->sign($new, $key);
  147. if (!isset($array['sign'])) {
  148. return false;
  149. }
  150. return $array['sign'] == $new['sign'];
  151. }
  152. private function post($url, $data = null)
  153. {
  154. $curl = curl_init();
  155. curl_setopt($curl, CURLOPT_URL, $url);
  156. curl_setopt($curl, CURLOPT_SSL_VERIFYPEER, false);
  157. curl_setopt($curl, CURLOPT_SSL_VERIFYHOST, false);
  158. if (!empty($data)) {
  159. curl_setopt($curl, CURLOPT_POST, 1);
  160. curl_setopt($curl, CURLOPT_POSTFIELDS, $data);
  161. }
  162. curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1);
  163. $output = curl_exec($curl);
  164. curl_close($curl);
  165. return $output;
  166. }
  167. }