br_pay/
alipay.rs

1use br_reqwest::Client;
2use std::collections::{HashMap};
3use base64::{Engine};
4use base64::engine::general_purpose::STANDARD;
5use chrono::{Local};
6use crate::{PayMode, PayNotify, RefundNotify, RefundStatus, TradeState, TradeType, Types};
7use json::{object, JsonValue};
8use openssl::hash::MessageDigest;
9use openssl::pkey::{PKey};
10use openssl::rsa::Rsa;
11use openssl::sign::{Signer, Verifier};
12use urlencoding::{decode, encode};
13use log::error;
14
15#[derive(Clone)]
16pub struct AliPay {
17    /// 应用appid
18    pub appid: String,
19    /// 服务商商家号
20    pub sp_mchid: String,
21    /// 授权token
22    pub app_auth_token: String,
23    /// 应用私钥证书路径
24    pub app_private: String,
25    /// 接口内容加密密钥
26    pub content_encryp: String,
27    /// 支付宝公钥
28    pub alipay_public_key: String,
29    pub notify_url: String,
30}
31impl AliPay {
32    pub fn sign(&mut self, txt: &str) -> Result<JsonValue, String> {
33        let t = self.app_private.as_bytes().chunks(64).map(|chunk| std::str::from_utf8(chunk).unwrap_or("")).collect::<Vec<&str>>().join("\n");
34        let cart = format!("-----BEGIN PRIVATE KEY-----\n{}\n-----END PRIVATE KEY-----\n", t);
35
36        // 1. 加载私钥
37        let rsa = match Rsa::private_key_from_pem(cart.as_bytes()) {
38            Ok(e) => e,
39            Err(e) => return Err(e.to_string())
40        };
41
42        let pkey = match PKey::from_rsa(rsa) {
43            Ok(e) => e,
44            Err(e) => return Err(e.to_string())
45        };
46
47        // 2. 创建签名器,使用 SHA256
48        let mut signer = match Signer::new(MessageDigest::sha256(), &pkey) {
49            Ok(e) => e,
50            Err(e) => return Err(e.to_string())
51        };
52        match signer.update(txt.as_bytes()) {
53            Ok(()) => {}
54            Err(e) => return Err(e.to_string())
55        };
56        // 3. 生成签名
57        let signature = match signer.sign_to_vec() {
58            Ok(e) => e,
59            Err(e) => return Err(e.to_string())
60        };
61        // 4. Base64 编码输出
62        Ok(STANDARD.encode(signature).into())
63    }
64    pub fn http(&mut self, method: &str, biz_content: JsonValue) -> Result<JsonValue, String> {
65        let mut http = Client::new();
66        //http.debug();
67        let sign = "";
68
69        let now = Local::now();
70        let timestamp = now.format("%Y-%m-%d %H:%M:%S").to_string();
71
72        let mut data = object! {
73                    "charset":"UTF-8",
74                    "method":method,
75                    "app_id":self.appid.clone(),
76                    "app_private_key":self.app_private.clone(),
77                    "version":"1.0",
78                    "sign_type":"RSA2",
79                    "timestamp":timestamp,
80                    "alipay_public_key":self.alipay_public_key.clone(),
81                    "sign":sign
82        };
83        if !self.app_auth_token.is_empty() {
84            data["app_auth_token"] = self.app_auth_token.clone().into();
85        }
86        if method.contains("alipay.trade.") {
87            data["notify_url"] = self.notify_url.clone().into();
88        }
89        for (key, value) in biz_content.entries() {
90            data[key] = value.clone()
91        }
92        let mut map = HashMap::new();
93        for (key, value) in data.entries() {
94            if key == "sign" {
95                continue;
96            }
97            if value.is_empty() {
98                continue;
99            }
100            map.insert(key, value);
101        }
102
103        let mut keys: Vec<_> = map.keys().cloned().collect();
104        keys.sort();
105        let mut txt = vec![];
106        for key in keys {
107            txt.push(format!("{}={}", key, map.get(&key).unwrap()));
108        }
109        let txt = txt.join("&");
110        data["sign"] = self.sign(&txt)?;
111
112        let mut new_data = object! {};
113        for (key, value) in data.entries() {
114            let t = encode(value.to_string().as_str()).to_string();
115            new_data[key] = t.into();
116        }
117        data = new_data;
118        let url = "https://openapi.alipay.com/gateway.do".to_string();
119        let res = match method {
120            "alipay.trade.wap.pay" => {
121                let tt = http.get(url.as_str()).query(data);
122                return Ok(tt.url.clone().into());
123            }
124            _ => {
125                match http.get(&url).query(data).form_data(biz_content).send() {
126                    Ok(e) => e,
127                    Err(e) => return Err(e.to_string())
128                }
129            }
130        };
131
132        let res = res.json()?;
133        if res.has_key("error_response") {
134            return Err(res["error_response"]["sub_msg"].to_string());
135        }
136        let key = method.replace(".", "_");
137        let key = format!("{}_response", key);
138        let data = res[key].clone();
139        if data.has_key("code") {
140            if data["code"] != "10000" {
141                Err(data["sub_msg"].to_string())
142            } else {
143                Ok(data)
144            }
145        } else {
146            Err(data.to_string())
147        }
148    }
149    pub fn https(&mut self, method: &str, biz_content: JsonValue) -> Result<JsonValue, String> {
150        let mut http = Client::new();
151        //http.debug();
152        let sign = "";
153
154        let now = Local::now();
155        let timestamp = now.format("%Y-%m-%d %H:%M:%S").to_string();
156
157        let mut data = object! {
158                    "charset":"UTF-8",
159                    "method":method,
160                    "app_id":self.appid.clone(),
161                    "app_private_key":self.app_private.clone(),
162                    "version":"1.0",
163                    "sign_type":"RSA2",
164                    "timestamp":timestamp,
165                    "alipay_public_key":self.alipay_public_key.clone(),
166                    "sign":sign
167        };
168        if !self.app_auth_token.is_empty() {
169            data["app_auth_token"] = self.app_auth_token.clone().into();
170        }
171        if method.contains("alipay.trade.") {
172            data["notify_url"] = self.notify_url.clone().into();
173        }
174        for (key, value) in biz_content.entries() {
175            data[key] = value.clone()
176        }
177        let mut map = HashMap::new();
178        for (key, value) in data.entries() {
179            if key == "sign" {
180                continue;
181            }
182            if value.is_empty() {
183                continue;
184            }
185            map.insert(key, value);
186        }
187
188        let mut keys: Vec<_> = map.keys().cloned().collect();
189        keys.sort();
190        let mut txt = vec![];
191        for key in keys {
192            txt.push(format!("{}={}", key, map.get(&key).unwrap()));
193        }
194        let txt = txt.join("&");
195        data["sign"] = self.sign(&txt)?;
196
197        let mut new_data = object! {};
198        for (key, value) in data.entries() {
199            let t = encode(value.to_string().as_str()).to_string();
200            new_data[key] = t.into();
201        }
202        data = new_data;
203        let url = "https://openapi.alipay.com/gateway.do".to_string();
204        let res = match method {
205            "alipay.trade.wap.pay" => {
206                let tt = http.get(url.as_str()).query(data);
207                return Ok(tt.url.clone().into());
208            }
209            _ => {
210                match http.get(&url).query(data).form_data(biz_content).send() {
211                    Ok(e) => e,
212                    Err(e) => return Err(e.to_string())
213                }
214            }
215        };
216
217        let res = res.json()?;
218        if res.has_key("error_response") {
219            return Err(res["error_response"]["sub_msg"].to_string());
220        }
221        let key = method.replace(".", "_");
222        let key = format!("{}_response", key);
223        let data = res[key].clone();
224        Ok(data)
225    }
226}
227impl PayMode for AliPay {
228    fn notify(&mut self, data: JsonValue) -> Result<JsonValue, String> {
229        let sign = match STANDARD.decode(data["sign"].to_string()) {
230            Ok(e) => e,
231            Err(e) => return Err(format!("decode sign: {}", e))
232        };
233        let mut map = HashMap::new();
234        for (key, value) in data.entries() {
235            if key == "sign" {
236                continue;
237            }
238            if value.is_empty() {
239                continue;
240            }
241            map.insert(key, value);
242        }
243
244        let mut keys: Vec<_> = map.keys().cloned().collect();
245        keys.sort();
246
247        let mut txt = vec![];
248        for key in keys {
249            let value = decode(map.get(&key).unwrap().to_string().as_str()).unwrap().to_string();
250            txt.push(format!("{}={}", key, value));
251        }
252        let txt = txt.join("&");
253
254        let public_key_pem = self.alipay_public_key.clone();
255        let public_key_pem = format!("-----BEGIN PUBLIC KEY-----\n{}\n-----END PUBLIC KEY-----\n", public_key_pem);
256        let public_key = match PKey::public_key_from_pem(public_key_pem.as_bytes()) {
257            Ok(e) => e,
258            Err(e) => return Err(format!("Invalid public key: {}", e))
259        };
260
261        // 4. 验签
262        let mut verifier = match Verifier::new(MessageDigest::sha256(), &public_key) {
263            Ok(e) => e,
264            Err(e) => return Err(format!("Invalid verifier: {}", e))
265        };
266        match verifier.update(txt.as_bytes()) {
267            Ok(_) => {}
268            Err(_) => return Err("Invalid transaction signature".to_string())
269        };
270
271        let result = match verifier.verify(&sign) {
272            Ok(e) => e,
273            Err(_) => return Err("Invalid transaction signature".to_string())
274        };
275        if !result {
276            return Err("sign error".to_string());
277        }
278        if data.has_key("service") {
279            let service = data["service"].to_string();
280            if service.as_str() == "alipay.service.check" {
281                let sign_txt = "<success>true</success>";
282                let sign = self.sign(sign_txt)?;
283                let text = format!(r#"<?xml version="1.0" encoding="GBK"?><alipay><response><success>true</success></response><sign>{}</sign><sign_type>RSA2</sign_type></alipay>"#, sign);
284                return Ok(JsonValue::String(text));
285            }
286        }
287        Ok(result.into())
288    }
289
290    fn config(&mut self) -> JsonValue {
291        todo!()
292    }
293
294    fn login(&mut self, code: &str) -> Result<JsonValue, String> {
295        let res = self.https("alipay.system.oauth.token", object! {
296            "grant_type":"authorization_code",
297            "code":code
298        })?;
299        Ok(res)
300    }
301
302    fn auth(&mut self, code: &str) -> Result<JsonValue, String> {
303        let biz_content = object! {
304            "biz_content":{
305                "grant_type":"authorization_code",
306                "code":code
307            }
308        };
309        let res = match self.http("alipay.open.auth.token.app", biz_content) {
310            Ok(e) => e,
311            Err(e) => {
312                error!("Err: {:#}", e);
313                return Err(e);
314            }
315        };
316        let data = object! {
317            user_id : res["user_id"].clone(),
318            auth_app_id : res["auth_app_id"].clone(),
319            re_expires_in :res["re_expires_in"].clone(),
320            app_auth_token:res["app_auth_token"].clone(),
321            app_refresh_token:res["app_refresh_token"].clone()
322        };
323        Ok(data)
324    }
325
326    fn pay(&mut self, types: Types, sub_mchid: &str, out_trade_no: &str, description: &str, total_fee: f64, sp_openid: &str) -> Result<JsonValue, String> {
327        let mut api = "";
328        let mut order = object! {
329            out_trade_no:out_trade_no,
330            total_amount:total_fee,
331            subject:description,
332            product_code:"JSAPI_PAY",
333            op_app_id:sub_mchid,
334            buyer_open_id:sp_openid
335        };
336
337        match types {
338            Types::MiniJsapi => {
339                api = "alipay.trade.create";
340                order["product_code"] = "JSAPI_PAY".into();
341                order["op_app_id"] = self.appid.clone().into();
342                order["buyer_open_id"] = sp_openid.into();
343                self.app_auth_token = "".to_string();
344            }
345            Types::Jsapi => {
346                api = "alipay.trade.create";
347                order["product_code"] = "JSAPI_PAY".into();
348            }
349            Types::H5 => {
350                api = "alipay.trade.wap.pay";
351                order["product_code"] = "QUICK_WAP_WAY".into();
352            }
353            Types::Native => {
354                api = "alipay.trade.wap.pay";
355                order["product_code"] = "QUICK_WAP_WAY".into();
356            }
357            _ => {
358                order["product_code"] = "JSAPI_PAY".into();
359            }
360        };
361        match self.http(api, object! {"biz_content":order}) {
362            Ok(e) => {
363                match types {
364                    Types::Jsapi => {}
365                    Types::Native => {}
366                    Types::H5 => {
367                        return Ok(object! {url:e});
368                    }
369                    Types::MiniJsapi => {
370                        println!("alipay.trade.wap.pay:{:#}", e);
371                        return Ok(e);
372                    }
373                    Types::App => {}
374                    Types::Micropay => {}
375                }
376                Ok(e)
377            }
378            Err(e) => {
379                println!("Err: {:#}", e);
380                Err(e)
381            }
382        }
383    }
384
385
386    fn close(&mut self, out_trade_no: &str, sub_mchid: &str) -> Result<JsonValue, String> {
387        let order = object! {
388              "biz_content"=> object! {
389                out_trade_no:out_trade_no,
390                operator_id:sub_mchid
391              }
392        };
393        match self.http("alipay.trade.close", order) {
394            Ok(_) => {
395                Ok(true.into())
396            }
397            Err(e) => {
398                if e.contains("交易不存在") {
399                    return Ok(true.into());
400                }
401                Err(e)
402            }
403        }
404    }
405
406    fn pay_query(&mut self, out_trade_no: &str, sub_mchid: &str) -> Result<JsonValue, String> {
407        let order = object! {
408              "biz_content"=> object! {
409               out_trade_no:out_trade_no
410              }
411        };
412        match self.http("alipay.trade.query", order) {
413            Ok(e) => {
414                if e.has_key("code") && e["code"].as_str().unwrap() != "10000" {
415                    return Err(e["msg"].to_string());
416                }
417                let buyer_open_id = if e.has_key("buyer_open_id") {
418                    e["buyer_open_id"].to_string()
419                } else {
420                    e["buyer_user_id"].to_string()
421                };
422                let res = PayNotify {
423                    trade_type: TradeType::None,
424                    out_trade_no: e["out_trade_no"].to_string(),
425                    sp_mchid: "".to_string(),
426                    sub_mchid: sub_mchid.to_string(),
427                    sp_appid: "".to_string(),
428                    transaction_id: e["trade_no"].to_string(),
429                    success_time: PayNotify::alipay_time(e["send_pay_date"].as_str().unwrap()),
430                    sp_openid: buyer_open_id.clone(),
431                    sub_openid: buyer_open_id.clone(),
432                    total: (e["total_amount"].to_string().parse::<f64>().unwrap_or(0.0)) as usize,
433                    payer_total: (e["total_amount"].to_string().parse::<f64>().unwrap_or(0.0)) as usize,
434                    currency: "CNY".to_string(),
435                    payer_currency: "CNY".to_string(),
436                    trade_state: TradeState::from(e["trade_status"].as_str().unwrap()),
437                };
438                Ok(res.json())
439            }
440            Err(e) => Err(e)
441        }
442    }
443
444    fn pay_notify(&mut self, _nonce: &str, _ciphertext: &str, _associated_data: &str) -> Result<JsonValue, String> {
445        todo!()
446    }
447
448    fn refund(&mut self, sub_mchid: &str, out_trade_no: &str, transaction_id: &str, out_refund_no: &str, amount: f64, total: f64, _currency: &str) -> Result<JsonValue, String> {
449        let body = object! {
450            "biz_content"=> object! {
451                "trade_no"=>transaction_id,
452                "out_trade_no"=>out_trade_no,
453                "out_request_no"=>out_refund_no,
454                "refund_amount"=>format!("{:.2}",amount),
455            }
456        };
457        match self.http("alipay.trade.refund", body.clone()) {
458            Ok(e) => {
459                if e.has_key("code") && e["code"].as_str().unwrap() != "10000" {
460                    return Err(e["msg"].to_string());
461                }
462                let res = RefundNotify {
463                    out_trade_no: e["out_trade_no"].to_string(),
464                    refund_no: out_refund_no.to_string(),
465                    sp_mchid: "".to_string(),
466                    sub_mchid: sub_mchid.to_string(),
467                    transaction_id: e["trade_no"].to_string(),
468                    refund_id: out_refund_no.to_string(),
469                    success_time: PayNotify::alipay_time(e["gmt_refund_pay"].as_str().unwrap()),
470                    total,
471                    refund: e["refund_fee"].to_string().parse::<f64>().unwrap(),
472                    payer_total: e["refund_fee"].to_string().parse::<f64>().unwrap(),
473                    payer_refund: e["send_back_fee"].to_string().parse::<f64>().unwrap(),
474                    status: RefundStatus::from(e["fund_change"].as_str().unwrap()),
475                };
476                Ok(res.json())
477            }
478            Err(e) => Err(e)
479        }
480    }
481
482    fn refund_notify(&mut self, _nonce: &str, _ciphertext: &str, _associated_data: &str) -> Result<JsonValue, String> {
483        todo!()
484    }
485
486    fn refund_query(&mut self, trade_no: &str, out_refund_no: &str, sub_mchid: &str) -> Result<JsonValue, String> {
487        let body = object! {
488             "biz_content"=> object! {
489               "out_request_no"=>out_refund_no,
490            "trade_no"=>trade_no,
491             }
492        };
493        match self.http("alipay.trade.fastpay.refund.query", body.clone()) {
494            Ok(e) => {
495                if e.has_key("code") && e["code"].as_str().unwrap() != "10000" {
496                    return Err(e["msg"].to_string());
497                }
498                let res = RefundNotify {
499                    out_trade_no: e["out_trade_no"].to_string(),
500                    refund_no: e["out_request_no"].to_string(),
501                    sp_mchid: "".to_string(),
502                    sub_mchid: sub_mchid.to_string(),
503                    transaction_id: e["trade_no"].to_string(),
504                    refund_id: e["out_request_no"].to_string(),
505                    success_time: Local::now().timestamp(),
506                    total: e["total_amount"].to_string().parse::<f64>().unwrap(),
507                    payer_total: e["total_amount"].to_string().parse::<f64>().unwrap(),
508                    refund: e["refund_amount"].to_string().parse::<f64>().unwrap(),
509                    payer_refund: e["refund_amount"].to_string().parse::<f64>().unwrap(),
510                    status: RefundStatus::from(e["refund_status"].as_str().unwrap()),
511                };
512                Ok(res.json())
513            }
514            Err(e) => Err(e)
515        }
516    }
517}