server.go 6.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250
  1. package server
  2. import (
  3. "encoding/xml"
  4. "errors"
  5. "fmt"
  6. "io/ioutil"
  7. "net/http"
  8. "reflect"
  9. "runtime/debug"
  10. "strconv"
  11. "github.com/silenceper/wechat/v2/officialaccount/context"
  12. "github.com/silenceper/wechat/v2/officialaccount/message"
  13. log "github.com/sirupsen/logrus"
  14. "github.com/silenceper/wechat/v2/util"
  15. )
  16. //Server struct
  17. type Server struct {
  18. *context.Context
  19. Writer http.ResponseWriter
  20. Request *http.Request
  21. skipValidate bool
  22. openID string
  23. messageHandler func(message.MixMessage) *message.Reply
  24. RequestRawXMLMsg []byte
  25. RequestMsg message.MixMessage
  26. ResponseRawXMLMsg []byte
  27. ResponseMsg interface{}
  28. isSafeMode bool
  29. random []byte
  30. nonce string
  31. timestamp int64
  32. }
  33. //NewServer init
  34. func NewServer(context *context.Context) *Server {
  35. srv := new(Server)
  36. srv.Context = context
  37. return srv
  38. }
  39. // SkipValidate set skip validate
  40. func (srv *Server) SkipValidate(skip bool) {
  41. srv.skipValidate = skip
  42. }
  43. //Serve 处理微信的请求消息
  44. func (srv *Server) Serve() error {
  45. if !srv.Validate() {
  46. log.Error("Validate Signature Failed.")
  47. return fmt.Errorf("请求校验失败")
  48. }
  49. echostr, exists := srv.GetQuery("echostr")
  50. if exists {
  51. srv.String(echostr)
  52. return nil
  53. }
  54. response, err := srv.handleRequest()
  55. if err != nil {
  56. return err
  57. }
  58. //debug print request msg
  59. log.Debugf("request msg =%s", string(srv.RequestRawXMLMsg))
  60. return srv.buildResponse(response)
  61. }
  62. //Validate 校验请求是否合法
  63. func (srv *Server) Validate() bool {
  64. if srv.skipValidate {
  65. return true
  66. }
  67. timestamp := srv.Query("timestamp")
  68. nonce := srv.Query("nonce")
  69. signature := srv.Query("signature")
  70. log.Debugf("validate signature, timestamp=%s, nonce=%s", timestamp, nonce)
  71. return signature == util.Signature(srv.Token, timestamp, nonce)
  72. }
  73. //HandleRequest 处理微信的请求
  74. func (srv *Server) handleRequest() (reply *message.Reply, err error) {
  75. //set isSafeMode
  76. srv.isSafeMode = false
  77. encryptType := srv.Query("encrypt_type")
  78. if encryptType == "aes" {
  79. srv.isSafeMode = true
  80. }
  81. //set openID
  82. srv.openID = srv.Query("openid")
  83. var msg interface{}
  84. msg, err = srv.getMessage()
  85. if err != nil {
  86. return
  87. }
  88. mixMessage, success := msg.(message.MixMessage)
  89. if !success {
  90. err = errors.New("消息类型转换失败")
  91. }
  92. srv.RequestMsg = mixMessage
  93. reply = srv.messageHandler(mixMessage)
  94. return
  95. }
  96. //GetOpenID return openID
  97. func (srv *Server) GetOpenID() string {
  98. return srv.openID
  99. }
  100. //getMessage 解析微信返回的消息
  101. func (srv *Server) getMessage() (interface{}, error) {
  102. var rawXMLMsgBytes []byte
  103. var err error
  104. if srv.isSafeMode {
  105. var encryptedXMLMsg message.EncryptedXMLMsg
  106. if err := xml.NewDecoder(srv.Request.Body).Decode(&encryptedXMLMsg); err != nil {
  107. return nil, fmt.Errorf("从body中解析xml失败,err=%v", err)
  108. }
  109. //验证消息签名
  110. timestamp := srv.Query("timestamp")
  111. srv.timestamp, err = strconv.ParseInt(timestamp, 10, 32)
  112. if err != nil {
  113. return nil, err
  114. }
  115. nonce := srv.Query("nonce")
  116. srv.nonce = nonce
  117. msgSignature := srv.Query("msg_signature")
  118. msgSignatureGen := util.Signature(srv.Token, timestamp, nonce, encryptedXMLMsg.EncryptedMsg)
  119. if msgSignature != msgSignatureGen {
  120. return nil, fmt.Errorf("消息不合法,验证签名失败")
  121. }
  122. //解密
  123. srv.random, rawXMLMsgBytes, err = util.DecryptMsg(srv.AppID, encryptedXMLMsg.EncryptedMsg, srv.EncodingAESKey)
  124. if err != nil {
  125. return nil, fmt.Errorf("消息解密失败, err=%v", err)
  126. }
  127. } else {
  128. rawXMLMsgBytes, err = ioutil.ReadAll(srv.Request.Body)
  129. if err != nil {
  130. return nil, fmt.Errorf("从body中解析xml失败, err=%v", err)
  131. }
  132. }
  133. srv.RequestRawXMLMsg = rawXMLMsgBytes
  134. return srv.parseRequestMessage(rawXMLMsgBytes)
  135. }
  136. func (srv *Server) parseRequestMessage(rawXMLMsgBytes []byte) (msg message.MixMessage, err error) {
  137. msg = message.MixMessage{}
  138. err = xml.Unmarshal(rawXMLMsgBytes, &msg)
  139. return
  140. }
  141. //SetMessageHandler 设置用户自定义的回调方法
  142. func (srv *Server) SetMessageHandler(handler func(message.MixMessage) *message.Reply) {
  143. srv.messageHandler = handler
  144. }
  145. func (srv *Server) buildResponse(reply *message.Reply) (err error) {
  146. defer func() {
  147. if e := recover(); e != nil {
  148. err = fmt.Errorf("panic error: %v\n%s", e, debug.Stack())
  149. }
  150. }()
  151. if reply == nil {
  152. //do nothing
  153. return nil
  154. }
  155. msgType := reply.MsgType
  156. switch msgType {
  157. case message.MsgTypeText:
  158. case message.MsgTypeImage:
  159. case message.MsgTypeVoice:
  160. case message.MsgTypeVideo:
  161. case message.MsgTypeMusic:
  162. case message.MsgTypeNews:
  163. case message.MsgTypeTransfer:
  164. default:
  165. err = message.ErrUnsupportReply
  166. return
  167. }
  168. msgData := reply.MsgData
  169. value := reflect.ValueOf(msgData)
  170. //msgData must be a ptr
  171. kind := value.Kind().String()
  172. if "ptr" != kind {
  173. return message.ErrUnsupportReply
  174. }
  175. params := make([]reflect.Value, 1)
  176. params[0] = reflect.ValueOf(srv.RequestMsg.FromUserName)
  177. value.MethodByName("SetToUserName").Call(params)
  178. params[0] = reflect.ValueOf(srv.RequestMsg.ToUserName)
  179. value.MethodByName("SetFromUserName").Call(params)
  180. params[0] = reflect.ValueOf(msgType)
  181. value.MethodByName("SetMsgType").Call(params)
  182. params[0] = reflect.ValueOf(util.GetCurrTs())
  183. value.MethodByName("SetCreateTime").Call(params)
  184. srv.ResponseMsg = msgData
  185. srv.ResponseRawXMLMsg, err = xml.Marshal(msgData)
  186. return
  187. }
  188. //Send 将自定义的消息发送
  189. func (srv *Server) Send() (err error) {
  190. replyMsg := srv.ResponseMsg
  191. log.Debugf("response msg =%+v", replyMsg)
  192. if srv.isSafeMode {
  193. //安全模式下对消息进行加密
  194. var encryptedMsg []byte
  195. encryptedMsg, err = util.EncryptMsg(srv.random, srv.ResponseRawXMLMsg, srv.AppID, srv.EncodingAESKey)
  196. if err != nil {
  197. return
  198. }
  199. //TODO 如果获取不到timestamp nonce 则自己生成
  200. timestamp := srv.timestamp
  201. timestampStr := strconv.FormatInt(timestamp, 10)
  202. msgSignature := util.Signature(srv.Token, timestampStr, srv.nonce, string(encryptedMsg))
  203. replyMsg = message.ResponseEncryptedXMLMsg{
  204. EncryptedMsg: string(encryptedMsg),
  205. MsgSignature: msgSignature,
  206. Timestamp: timestamp,
  207. Nonce: srv.nonce,
  208. }
  209. }
  210. if replyMsg != nil {
  211. srv.XML(replyMsg)
  212. }
  213. return
  214. }