CallbackController.cs 5.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131
  1. using OASystem.Domain.Dtos.CallBack.QiYeWeChat;
  2. namespace OASystem.API.Controllers
  3. {
  4. /// <summary>
  5. /// 回调地址
  6. /// </summary>
  7. [Route("/callback")]
  8. public class CallbackController : Controller
  9. {
  10. private readonly IMapper _mapper;
  11. private readonly ILogger<CallbackController> _logger;
  12. #region 企业微信 通讯录通知回调key And token
  13. private readonly string _qiYeWechat_Token = "WWiCDK";
  14. private readonly string _qiYeWechat_EncodingAESKey = "3BWKiWnvp6xJGQ5oD3TBaOKYniNgX1g6kZZEehbM3ym";
  15. private readonly string _qiYeWechat_CorpId = "wwe978bef5495a0728";
  16. #endregion
  17. public CallbackController(IMapper mapper, ILogger<CallbackController> logger)
  18. {
  19. _mapper = mapper;
  20. _logger = logger;
  21. }
  22. #region 企业微信回调
  23. /// <summary>
  24. /// 回调通知
  25. /// </summary>
  26. /// <returns></returns>
  27. [Route("memberschange")]
  28. [HttpGet, HttpPost]
  29. public async Task<ActionResult> ApproveCallBack(string msg_signature, string timestamp, string nonce, string echostr)
  30. {
  31. _logger.LogInformation("【企业微信】【通讯录助手】【回调】进入回调");
  32. var input = new ApproveCallBackInputDTO
  33. {
  34. msg_signature = msg_signature,
  35. timestamp = timestamp,
  36. nonce = nonce,
  37. echostr = echostr
  38. };
  39. _logger.LogInformation("【企业微信】【通讯录助手】【回调】【参数】:{Input}", input.ToJson());
  40. if (HttpContext.Request.Method == System.Net.Http.HttpMethod.Get.Method)
  41. {
  42. var model = await VerifyURLCallBack(input);
  43. return Content(model, "text/xml");
  44. }
  45. if (HttpContext.Request.Method == System.Net.Http.HttpMethod.Post.Method)
  46. {
  47. var stream = Request.Body;
  48. var model = await ApproveCallBack(stream, input);
  49. return Content(model, "text/xml");
  50. }
  51. _logger.LogInformation("【企业微信】【通讯录助手】【回调】回调成功");
  52. return Content("ok", "text/xml");
  53. }
  54. /// <summary>
  55. /// 验证URL有效性
  56. /// </summary>
  57. /// <returns></returns>
  58. private async Task<string> VerifyURLCallBack(ApproveCallBackInputDTO input)
  59. {
  60. string sEchoStr = "";
  61. try
  62. {
  63. //企业微信官方加解密校验解析类
  64. var wxcpt = new Tencent.WXBizMsgCrypt(_qiYeWechat_Token, _qiYeWechat_EncodingAESKey, _qiYeWechat_CorpId);
  65. string sReqMsgSig = input.msg_signature;
  66. string sReqTimeStamp = input.timestamp;
  67. string sReqNonce = input.nonce;
  68. string sReqEchostr = input.echostr;
  69. //企业微信官方验证URL
  70. var ret = wxcpt.VerifyURL(sReqMsgSig, sReqTimeStamp, sReqNonce, sReqEchostr, ref sEchoStr);
  71. if (ret != 0)
  72. {
  73. throw new Exception($"ERR: VerifyURL fail, ret: {ret}");
  74. }
  75. return sEchoStr;
  76. }
  77. catch (Exception ex)
  78. {
  79. _logger.LogError(ex, "【企业微信】【通讯录助手】【回调】验证URL失败");
  80. return ex.Message;
  81. }
  82. }
  83. /// <summary>
  84. /// 回调通知处理业务
  85. /// </summary>
  86. /// <returns></returns>
  87. private async Task<string> ApproveCallBack(Stream context, ApproveCallBackInputDTO input)
  88. {
  89. var sReqData = "";
  90. string sMsg = "";
  91. try
  92. {
  93. //企业微信官方加解密校验解析类
  94. var wxcpt = new Tencent.WXBizMsgCrypt(_qiYeWechat_Token, _qiYeWechat_EncodingAESKey, _qiYeWechat_CorpId);
  95. string sReqMsgSig = input.msg_signature;
  96. string sReqTimeStamp = input.timestamp;
  97. string sReqNonce = input.nonce;
  98. string sReqEchostr = input.echostr;
  99. // Post请求的密文数据
  100. using (var reader = new StreamReader(context))
  101. {
  102. sReqData = await reader.ReadToEndAsync();
  103. }
  104. //回调数据
  105. // 解析之后的明文
  106. var ret = wxcpt.DecryptMsg(sReqMsgSig, sReqTimeStamp, sReqNonce, sReqData, ref sMsg);
  107. if (ret != 0)
  108. {
  109. throw new Exception($"ERR: Decrypt Fail, ret: {ret}");
  110. }
  111. // ret==0表示解密成功,sMsg表示解密之后的明文xml串
  112. //下一步处理实际业务数据了
  113. return sMsg;
  114. }
  115. catch (Exception ex)
  116. {
  117. _logger.LogError(ex, "【企业微信】【通讯录助手】【回调】解密失败");
  118. throw new Exception(ex.Message);
  119. }
  120. }
  121. #endregion
  122. }
  123. }