WeChatFunctionForHD.cs 26 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445
  1. using System;
  2. using System.Collections.Generic;
  3. using Library;
  4. using LitJson;
  5. using System.Linq;
  6. using System.Security.Cryptography.X509Certificates;
  7. using System.Security.Cryptography;
  8. using System.Text;
  9. using System.IO;
  10. using System.Net;
  11. using System.Web;
  12. using MySystem.Models;
  13. using Org.BouncyCastle.Crypto.Modes;
  14. using Org.BouncyCastle.Crypto.Parameters;
  15. using Org.BouncyCastle.Crypto.Engines;
  16. namespace MySystem
  17. {
  18. public class WeChatFunctionForHD
  19. {
  20. public readonly static WeChatFunctionForHD Instance = new WeChatFunctionForHD();
  21. private WeChatFunctionForHD()
  22. { }
  23. public string MchId = "178590308";
  24. public string ApiKey = "XTH7TLTSJH4SOZC3NVFQJ726B5VRNVO6"; //AesGcmDecrypt解密使用
  25. public string serialNo = "5293C873581457469F1BE1839EA127B08ADE2D7B";
  26. public string getSerialNo = "7C6E6AD5DA1F7EB4A1071F2333C2FED0D8CC3A46"; //平台证书序列号Wechatpay-Serial
  27. // string pubkey = "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"; //公钥
  28. string pubkey = "MIIEFDCCAvygAwIBAgIUfG5q1doffrShBx8jM8L+0NjMOkYwDQYJKoZIhvcNAQELBQAwXjELMAkGA1UEBhMCQ04xEzARBgNVBAoTClRlbnBheS5jb20xHTAbBgNVBAsTFFRlbnBheS5jb20gQ0EgQ2VudGVyMRswGQYDVQQDExJUZW5wYXkuY29tIFJvb3QgQ0EwHhcNMjMwODE3MTA0NzAxWhcNMjgwODE1MTA0NzAxWjBuMRgwFgYDVQQDDA9UZW5wYXkuY29tIHNpZ24xEzARBgNVBAoMClRlbnBheS5jb20xHTAbBgNVBAsMFFRlbnBheS5jb20gQ0EgQ2VudGVyMQswCQYDVQQGDAJDTjERMA8GA1UEBwwIU2hlblpoZW4wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC7z1k/J0F1FK8ZC2zKyHhhCHPJX8YEFg4Ruaj4XDU4eoBzbTXS+wN1gJCLqXMw5uam6L5NO3jXaHHC6izTKhAog1jiO+mfcXKpno/EtZ1be2xKOguqPNIOrw7aPDoAcytrUy2wsLCpM6+LFIa+tBXwzOuVauXtcWqtXrL75Wo/NEMMcfe4lsFxPatdkF90BodDfMB6niVQyNkVqBhtdQQzBrPOjpNBX4f2WpcMpEy7TSge5VxCXGGSYW+E5xYzmiloRR0d1eJA7tdJ8VOdNbvaZSPSPHARZM7LsNC43bXMQJUpymRTf2wpV+imiB4XYL6Vx1gk2G77jdWPtLXLbZ8LAgMBAAGjgbkwgbYwCQYDVR0TBAIwADALBgNVHQ8EBAMCA/gwgZsGA1UdHwSBkzCBkDCBjaCBiqCBh4aBhGh0dHA6Ly9ldmNhLml0cnVzLmNvbS5jbi9wdWJsaWMvaXRydXNjcmw/Q0E9MUJENDIyMEU1MERCQzA0QjA2QUQzOTc1NDk4NDZDMDFDM0U4RUJEMiZzZz1IQUNDNDcxQjY1NDIyRTEyQjI3QTlEMzNBODdBRDFDREY1OTI2RTE0MDM3MTANBgkqhkiG9w0BAQsFAAOCAQEAEFh9Tm1uH1ZbQ3Nz/bxRlkYb6Y/O5buAoptMMJb95QIiTODtRx8+f8eXHVQ+slP2MuzrEGfGuoJ2c/clcEmjG4WGMm3h8hTXlL/jBKn8jW2qKj1gVlHdn+V9qdhy2gaS9VV6ZSdtpZmkqCYxfg9DI4GF+CjNxCxfpYH9Qd/gKe/anA5ps4j1j/ZUnQtIBhgcRyXhh7e5NOa6LM+1ui+wNb1uUSiick6oYiSo6FlnblBRQ6Yvx9OSJasqqD/5rl59eikibUhX2qgBeRlIsJOBUvUkl+Pdl/b86e+jirclYqxIWApv79BLR7akw6y94XEgMXOuGt5Xf1LzN3AW3OmKAQ=="; //公钥(通过GetPlatCert方法获取证书,解密得到)
  29. // string prikey = "MIIEpAIBAAKCAQEAy6sn15bA09Umbch+Zd1rr23y7WRJ3UPc/LpPCLL7okjZRH4w3F3/pCDtZ659fyjz99WcDrP+rXkcFk31ysuXEbnyK3qUQJJ2aua1Qe9kzuAV4aF9PYedzIh6gZHaRmg36FEfgMPXBu/CIzV9Ap4YrIBWmPW2J8IM1L6Klmrt5G3XWA3A9Nu4R/ANgbe0/wskgC0Ytf0bY+B+5RVw3+93u+6Z3SNQBKpKlxY5su5sYvSqWC5AlFRh1lblemfzQsD3PGU+us5dr62y3rcWVOft9cgb8nK8nMf8sOXWmY8nbRRwU/8+9caZbLW18qGAvI7Egd02b6oVnwzo17tTE3jbowIDAQABAoIBADrgCk9vG+TgjBBWUfuea1+2F/B5+kRFNt+z997a5pT+HBiJphQ99AV9I0PClDKrIwN0s30omSmKhg0IklICUnRkXVYmRC76Z9L1SFZ8HpcS/iBQb4TW7E3Q8iD8ia2quOamdMXjVwiBTIyjDLUyAI31N5NWDEcn+E+TmTpsRMKwXXZX0M84eBjNdxhA7zFFkOzfugCqECirUx02iOg6F9/f/lUf16cC8pBI27+CH2MnjanPFHWzgeIIYnTDS/coR+UGM0RwOBvUWNXHSjR959JO81S07cAhe2XNpUYmzoVNrvjM5c21gdcGEul8RnBiJFxjlElB6e+F8GrWITdBOTECgYEA+U5S8oAz1OsxpaW92CtrWpTUz7wpQnwkm7I+iWlcUq2BIGHljbN8jVqugI8SUsIDy6F5znYb9JEwGUTFG9xAJ0UcUsjya3k2wDfi2yyJ39LkKklAQFt9gegl9aBhxucVM8us7GJ90JCk78U+kTcc5fCw5mYZPNPrxPG1pSPWS/sCgYEA0SMhSRV3xz0MdP9dm6pHPJi0jVhqjtTncTKFGJXe1B14GzbrDNsOH/907L2R0lhMALT+AX3nrhH5lzzCvDvJL6xJm1v7bG90meXdU07ZsW+C1RYDJNOQWOBv12i1+AcHKizzJMyda97x5fOrt3Kgi8tD82+01C4BGiio8Lz4NnkCgYEAsUe0DkOCGBdDT6KjdDOz/E63Yh1QTbnPonPGqpokj5pXpzpWLUSD/lSMoFic1AKpBkWGQ32TdX9E78MKUzx01jf74xaH5Erm1xsmk2qBhIsHutYp/VnRzu3RCHCK9xDd794W0mVbSFODJglh64uAXjag5MWXjry3/G1RGOR5/78CgYAqt2wzC0l9zoBe3VH3W55VSDOIs0iAiAgF3PXGgcYTuTkxBdSYuZ1296ygNlA0kIhllJJVJ6xMp6s9MtHrtKJxNFWMgAsoqNM+I+9C9tYMIeStNWPK/9N5882kR+TzFixmduvq1khJIi5yc4TdYXJdW1UzwdtDg2oCN8/Z7B8esQKBgQDaKmfe7KEdvpQlscGmuMKzW+AzS4CNZMvdaNy6SBR/5V94KwqTQXnvROpFtl6Enuz1IfP1s0DMbcmBGL7fc/kD1nFIwo7PbHsXJP6PkU01QTOibTsCm1EM7ENG1FEhQCMNaHxq7kDB7f9r+DgxRgjSORUsuGa7lhpjdndrd7jD/A=="; //私钥
  30. string prikey = "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"; //私钥
  31. #region 间连商户开户意愿确认(提交申请单)
  32. public string MerchantApply(MerchantAddInfo info)
  33. {
  34. Dictionary<string, object> result = new Dictionary<string, object>();
  35. string business_code = DateTime.Now.ToString("yyyyMMddHHmmssfff") + function.get_Random(8);
  36. result.Add("business_code", business_code); //业务申请编号
  37. WebCMSEntities dbpxc = new WebCMSEntities();
  38. //超级管理员信息
  39. Dictionary<string, object> contact_info = new Dictionary<string, object>();
  40. contact_info.Add("contact_type", "LEGAL"); //联系人类型
  41. contact_info.Add("name", RSAEncrypt(info.CertLegalPerson)); //联系人姓名
  42. contact_info.Add("id_card_number", RSAEncrypt(info.IdCardNumber)); //超级管理员身份证件号码
  43. contact_info.Add("contact_id_doc_type", "IDENTIFICATION_TYPE_IDCARD"); //联系人证件类型
  44. contact_info.Add("mobile", RSAEncrypt(info.MobilePhone)); //联系手机
  45. result.Add("contact_info", contact_info);
  46. //主体资料
  47. Dictionary<string, object> subject_info = new Dictionary<string, object>();
  48. string SubjectType = info.SubjectType;
  49. if(SubjectType == "SUBJECT_TYPE_SMALL") SubjectType = "SUBJECT_TYPE_MICRO";
  50. subject_info.Add("subject_type", SubjectType); //主体类型
  51. Dictionary<string, object> business_licence_info = new Dictionary<string, object>();
  52. business_licence_info.Add("licence_number", info.LicenseNumber); //注册号/统一社会信用代码
  53. business_licence_info.Add("licence_copy", GetMediaId("/" + info.LicenseCopy)); //营业执照照片
  54. business_licence_info.Add("merchant_name", info.CertMerchantName); //商户名称
  55. business_licence_info.Add("legal_person", info.CertLegalPerson); //个体户经营者/法人姓名
  56. business_licence_info.Add("company_address", info.BizStoreAddress); //注册地址
  57. string PeriodEnd = info.PeriodEnd.Value.ToString("yyyy-MM-dd");
  58. if(PeriodEnd.Substring(0, 4) == "2050")
  59. {
  60. PeriodEnd = "forever";
  61. }
  62. business_licence_info.Add("licence_valid_date", "[\"" + info.PeriodBegin.Value.ToString("yyyy-MM-dd") + "\",\"" + PeriodEnd + "\"]"); //营业执照有效日期
  63. subject_info.Add("business_licence_info", business_licence_info); //营业执照
  64. result.Add("subject_info", subject_info);
  65. Dictionary<string, object> identification_info = new Dictionary<string, object>();
  66. identification_info.Add("id_holder_type", "LEGAL"); //证件持有人类型
  67. identification_info.Add("identification_type", "IDENTIFICATION_TYPE_IDCARD"); //证件类型
  68. identification_info.Add("identification_name", RSAEncrypt(info.CertLegalPerson)); //身份证姓名
  69. identification_info.Add("identification_number", RSAEncrypt(info.IdCardNumber)); //身份证号码
  70. string CardPeriodEnd = info.CardPeriodEnd.Value.ToString("yyyy-MM-dd");
  71. if(CardPeriodEnd.Substring(0, 4) == "2050")
  72. {
  73. CardPeriodEnd = "forever";
  74. }
  75. identification_info.Add("identification_valid_date", "[\"" + info.CardPeriodBegin.Value.ToString("yyyy-MM-dd") + "\",\"" + CardPeriodEnd + "\"]"); //身份证有效期
  76. identification_info.Add("identification_front_copy", GetMediaId("/" + info.IdCardCopy)); //身份证件正面照片
  77. identification_info.Add("identification_back_copy", GetMediaId("/" + info.IdCardNational)); //身份证件反面照片
  78. if(info.SubjectType == "SUBJECT_TYPE_ENTERPRISE")
  79. {
  80. identification_info.Add("identification_address", RSAEncrypt(info.IdCardAddress)); //身份证居住地址
  81. identification_info.Add("owner", true);
  82. }
  83. result.Add("identification_info", identification_info); //经营者/法人身份证件
  84. //最终受益人信息列表(UBO)----仅企业需要填写
  85. if(info.SubjectType == "SUBJECT_TYPE_ENTERPRISE")
  86. {
  87. List<Dictionary<string, object>> ubo_info_list = new List<Dictionary<string, object>>();
  88. Dictionary<string, object> ubo_info_list_item = new Dictionary<string, object>();
  89. ubo_info_list_item.Add("ubo_id_doc_type", "IDENTIFICATION_TYPE_IDCARD"); //证件类型
  90. ubo_info_list_item.Add("ubo_id_doc_copy", GetMediaId("/" + info.IdCardCopy)); //身份证件正面照片
  91. ubo_info_list_item.Add("ubo_id_doc_copy_back", GetMediaId("/" + info.IdCardNational)); //身份证件反面照片
  92. ubo_info_list_item.Add("ubo_id_doc_name", RSAEncrypt(info.CertLegalPerson)); //身份证姓名
  93. ubo_info_list_item.Add("ubo_id_doc_number", RSAEncrypt(info.IdCardNumber)); //身份证号码
  94. ubo_info_list_item.Add("ubo_id_doc_address", RSAEncrypt(info.IdCardAddress)); //身份证居住地址
  95. ubo_info_list_item.Add("ubo_period_begin", info.CardPeriodBegin.Value.ToString("yyyy-MM-dd")); //身份证有效期
  96. if(CardPeriodEnd == "forever")
  97. {
  98. CardPeriodEnd = "长期";
  99. }
  100. ubo_info_list_item.Add("ubo_period_end", CardPeriodEnd); //身份证有效期
  101. ubo_info_list.Add(ubo_info_list_item);
  102. result.Add("ubo_info_list", ubo_info_list);
  103. }
  104. dbpxc.Dispose();
  105. string req = Newtonsoft.Json.JsonConvert.SerializeObject(result);
  106. // 如何查看证书序列号?
  107. // 登陆商户平台【API安全】->【API证书】->【查看证书】,可查看商户API证书序列号。
  108. // 商户API证书和微信支付平台证书均可以使用第三方的证书解析工具,查看证书内容。或者使用openssl命令行工具查看证书序列号。
  109. // $ openssl x509 -in 1900009191_20180326_cert.pem -noout -serial
  110. // serial=1DDE55AD98ED71D6EDD4A4A16996DE7B47773A8C
  111. function.WriteLog(req, "间连商户开户意愿确认");
  112. string resp = postJson("https://api.mch.weixin.qq.com/v3/apply4subject/applyment", req);
  113. function.WriteLog(resp + "\n\n", "间连商户开户意愿确认");
  114. return resp;
  115. }
  116. #endregion
  117. #region 获取平台证书
  118. public string GetPlatCert()
  119. {
  120. string merchantId = MchId; //商户号
  121. string result = postJson("https://api.mch.weixin.qq.com/v3/certificates", "", "GET");
  122. return result;
  123. }
  124. #endregion
  125. #region 敏感信息加密
  126. public string RSAEncrypt(string text)
  127. {
  128. byte[] publicKey = Convert.FromBase64String(pubkey);
  129. // var rsa = RSA.Create();
  130. // rsa.ImportRSAPublicKey(publicKey, out _);
  131. // var buff = rsa.Encrypt(Encoding.UTF8.GetBytes(text), RSAEncryptionPadding.OaepSHA1);
  132. // return Convert.ToBase64String(buff);
  133. using (var x509 = new X509Certificate2(publicKey))
  134. {
  135. using (var rsa = x509.GetRSAPublicKey())
  136. {
  137. var buff = rsa.Encrypt(Encoding.UTF8.GetBytes(text), RSAEncryptionPadding.OaepSHA1);
  138. return Convert.ToBase64String(buff);
  139. }
  140. }
  141. }
  142. public string RSADecrypt(string text)
  143. {
  144. byte[] key = Encoding.UTF8.GetBytes(AppConfig.WeChatParam.AesGemKey);
  145. byte[] nonce = Encoding.UTF8.GetBytes("1234567890ab");
  146. byte[] ciphertext = Convert.FromBase64String(text);
  147. AesGcm aes = new AesGcm(key);
  148. byte[] plaintext = new byte[ciphertext.Length];
  149. aes.Decrypt(nonce, ciphertext, plaintext, null);
  150. return Encoding.UTF8.GetString(plaintext);
  151. }
  152. public string AesGcmDecrypt(string associatedData, string nonce, string ciphertext)
  153. {
  154. // GcmBlockCipher gcmBlockCipher = new GcmBlockCipher(new AesEngine());
  155. // AeadParameters aeadParameters = new AeadParameters(
  156. // new KeyParameter(Encoding.UTF8.GetBytes(AppConfig.WeChatParam.AesGemKey)),
  157. // 128,
  158. // Encoding.UTF8.GetBytes(nonce),
  159. // Encoding.UTF8.GetBytes(associatedData));
  160. // gcmBlockCipher.Init(false, aeadParameters);
  161. // byte[] data = Convert.FromBase64String(ciphertext);
  162. // byte[] plaintext = new byte[gcmBlockCipher.GetOutputSize(data.Length)];
  163. // int length = gcmBlockCipher.ProcessBytes(data, 0, data.Length, plaintext, 0);
  164. // gcmBlockCipher.DoFinal(plaintext, length);
  165. // return Encoding.UTF8.GetString(plaintext);
  166. byte[] key = Encoding.UTF8.GetBytes(ApiKey); // 256-bit key
  167. byte[] nonceByte = Encoding.UTF8.GetBytes(nonce); // 96-bit nonce
  168. byte[] cipherByte = Convert.FromBase64String(ciphertext);
  169. byte[] associatedByte = Encoding.UTF8.GetBytes(associatedData);
  170. GcmBlockCipher cipher = new GcmBlockCipher(new AesEngine());
  171. AeadParameters parameters = new AeadParameters(new KeyParameter(key), 128, nonceByte, associatedByte);
  172. cipher.Init(false, parameters);
  173. byte[] plaintext = new byte[cipher.GetOutputSize(cipherByte.Length)];
  174. int len = cipher.ProcessBytes(cipherByte, 0, cipherByte.Length, plaintext, 0);
  175. cipher.DoFinal(plaintext, len);
  176. return Encoding.UTF8.GetString(plaintext);
  177. }
  178. public string postJson(string url, string postData, string method = "POST")
  179. {
  180. HttpWebRequest request = (HttpWebRequest)WebRequest.Create(url);
  181. request.Method = method;
  182. request.ContentType = "application/json;charset=UTF-8";
  183. request.UserAgent = "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3100.0 Safari/537.36";
  184. request.Accept = "application/json";
  185. string Authorization = GetAuthorization(url, method, postData, prikey, MchId, serialNo);
  186. request.Headers.Add("Authorization", Authorization);
  187. request.Headers.Add("Wechatpay-Serial", getSerialNo);
  188. if (!string.IsNullOrEmpty(postData))
  189. {
  190. byte[] paramJsonBytes;
  191. paramJsonBytes = System.Text.Encoding.UTF8.GetBytes(postData);
  192. request.ContentLength = paramJsonBytes.Length;
  193. Stream writer;
  194. try
  195. {
  196. writer = request.GetRequestStream();
  197. }
  198. catch (Exception ex)
  199. {
  200. writer = null;
  201. function.WriteLog(DateTime.Now.ToString() + "\n" + ex.ToString(), "http请求异常");
  202. }
  203. writer.Write(paramJsonBytes, 0, paramJsonBytes.Length);
  204. writer.Close();
  205. }
  206. HttpWebResponse response;
  207. try
  208. {
  209. response = (HttpWebResponse)request.GetResponse();
  210. }
  211. catch (WebException ex)
  212. {
  213. response = ex.Response as HttpWebResponse;
  214. }
  215. Stream resStream = response.GetResponseStream();
  216. StreamReader reader = new StreamReader(resStream);
  217. string text = reader.ReadToEnd();
  218. return text;
  219. //{\"code\":\"PARAM_ERROR\",\"message\":\"请确认待处理的消息是否为加密后的密文\"}
  220. //{\"applyment_id\":2000002247709762}
  221. }
  222. #endregion
  223. #region 图片上传
  224. public string GetMediaId(string imgPath)
  225. {
  226. if (string.IsNullOrEmpty(imgPath))
  227. {
  228. return "";
  229. }
  230. if (imgPath.Contains(","))
  231. {
  232. imgPath = imgPath.Split(',')[0];
  233. }
  234. string key = "wechatpic:" + function.MD5_16(imgPath);
  235. string media_id = RedisDbconn.Instance.Get<string>(key);
  236. if (!string.IsNullOrEmpty(media_id))
  237. {
  238. return media_id;
  239. }
  240. string filePath = function.getPath(imgPath);
  241. var filename = Path.GetFileName(filePath);
  242. FileStream fs = new FileStream(filePath, FileMode.Open, FileAccess.Read);
  243. Byte[] imgBytesIn = new Byte[fs.Length];
  244. fs.Read(imgBytesIn, 0, imgBytesIn.Length);
  245. fs.Close();
  246. byte[] hash = SHA256Managed.Create().ComputeHash(imgBytesIn);
  247. StringBuilder builder = new StringBuilder();
  248. for (int i = 0; i < hash.Length; i++)
  249. {
  250. builder.Append(hash[i].ToString("x2"));
  251. }
  252. var sha256 = builder.ToString();
  253. string metaStr = "{\"filename\":\""+ filename + "\",\"sha256\":\"" + sha256 + "\"}";
  254. media_id = UploadImgApi(metaStr, imgBytesIn, filename);
  255. RedisDbconn.Instance.Set(key, media_id);
  256. return media_id;
  257. }
  258. public string UploadImgApi(string metaStr, Byte[] imgBytesIn,string filename)
  259. {
  260. string url = "https://api.mch.weixin.qq.com/v3/merchant/media/upload";
  261. string merchantId = MchId; //商户号
  262. string privateKey = prikey;
  263. #region 定义请求体中的内容 并转成二进制
  264. string boundary = "lc199aecd61b4653ef";
  265. string Enter = "\r\n";
  266. string campaignIDStr1
  267. = "--" + boundary
  268. + Enter
  269. + "Content-Disposition: form-data; name=\"meta\";"
  270. + Enter
  271. + "Content-Type:application/json;"
  272. + Enter
  273. + Enter
  274. + metaStr
  275. + Enter
  276. + "--" + boundary
  277. + Enter
  278. + "Content-Disposition:form-data;name=\"file\";filename=\""+ filename + "\";"
  279. + Enter
  280. + "Content-Type:image/jpeg"
  281. + Enter
  282. + Enter;
  283. byte[] byteData2
  284. = imgBytesIn;
  285. string campaignIDStr3
  286. = Enter
  287. + "--" + boundary
  288. + Enter;
  289. var byteData1 = System.Text.Encoding.UTF8.GetBytes(campaignIDStr1);
  290. var byteData3 = System.Text.Encoding.UTF8.GetBytes(campaignIDStr3);
  291. #endregion
  292. string transactionsResponse = UploadImg_postJson(url, byteData1, byteData2, byteData3, metaStr, privateKey, merchantId, serialNo, boundary, "POST");
  293. var result=JsonMapper.ToObject(transactionsResponse);
  294. return result["media_id"].ToString();
  295. }
  296. public string UploadImg_postJson(string url, byte[] b1, byte[] b2, byte[] b3, string metaStr, string privateKey, string merchantId, string serialNo, string boundary, string method = "POST")
  297. {
  298. HttpWebRequest request = (HttpWebRequest)WebRequest.Create(url);
  299. request.Method = method;
  300. //request.ContentType = "application/json;charset=UTF-8";
  301. request.ContentType = "multipart/form-data;boundary=" + boundary;
  302. request.UserAgent = "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3100.0 Safari/537.36";
  303. request.Accept = "application/json";
  304. string Authorization = GetAuthorization(url, method, metaStr, privateKey, merchantId, serialNo);
  305. request.Headers.Add("Authorization", Authorization);
  306. Stream writer;
  307. try
  308. {
  309. writer = request.GetRequestStream();
  310. }
  311. catch (Exception)
  312. {
  313. writer = null;
  314. }
  315. writer.Write(b1, 0, b1.Length);
  316. writer.Write(b2, 0, b2.Length);
  317. writer.Write(b3, 0, b3.Length);
  318. writer.Close();
  319. HttpWebResponse response;
  320. try
  321. {
  322. response = (HttpWebResponse)request.GetResponse();
  323. }
  324. catch (WebException ex)
  325. {
  326. response = ex.Response as HttpWebResponse;
  327. }
  328. Stream resStream = response.GetResponseStream();
  329. StreamReader reader = new StreamReader(resStream);
  330. string text = reader.ReadToEnd();
  331. return text;
  332. }
  333. protected string GetAuthorization(string url, string method, string jsonParame, string privateKey, string merchantId, string serialNo)
  334. {
  335. var uri = new Uri(url);
  336. string urlPath = uri.PathAndQuery;
  337. string nonce = Guid.NewGuid().ToString();
  338. var timestamp = DateTimeOffset.Now.ToUnixTimeSeconds();
  339. //数据签名 HTTP请求方法\n接口地址的url\n请求时间戳\n请求随机串\n请求报文主体\n
  340. method = string.IsNullOrEmpty(method) ? "" : method;
  341. string message = string.Format("{0}\n{1}\n{2}\n{3}\n{4}\n", method, urlPath, timestamp, nonce, jsonParame);
  342. string signTxt = Sign(message, privateKey);
  343. //Authorization和格式
  344. string authorzationTxt = string.Format("WECHATPAY2-SHA256-RSA2048 mchid=\"{0}\",nonce_str=\"{1}\",timestamp=\"{2}\",serial_no=\"{3}\",signature=\"{4}\"",
  345. merchantId,
  346. nonce,
  347. timestamp,
  348. serialNo,
  349. signTxt
  350. );
  351. return authorzationTxt;
  352. }
  353. protected string Sign(string message, string privateKey)
  354. {
  355. byte[] keyData = Convert.FromBase64String(privateKey);
  356. byte[] data = System.Text.Encoding.UTF8.GetBytes(message);
  357. var rsa = RSA.Create();
  358. rsa.ImportPkcs8PrivateKey(keyData, out _);
  359. return Convert.ToBase64String(rsa.SignData(data, HashAlgorithmName.SHA256, RSASignaturePadding.Pkcs1));
  360. // using (CngKey cngKey = CngKey.Import(keyData, CngKeyBlobFormat.Pkcs8PrivateBlob))
  361. // using (RSACng rsa = new RSACng(cngKey))
  362. // {
  363. // return Convert.ToBase64String(rsa.SignData(data, HashAlgorithmName.SHA256, RSASignaturePadding.Pkcs1));
  364. // }
  365. }
  366. #endregion
  367. #region 获取文件sha256
  368. public string GetSha256(FileStream stream)
  369. {
  370. using (SHA256 mySHA256 = SHA256.Create())
  371. {
  372. byte[] hashValue = mySHA256.ComputeHash(stream);
  373. return Encoding.UTF8.GetString(hashValue);
  374. }
  375. }
  376. #endregion
  377. #region 判断长期
  378. public string CheckForever(DateTime? time)
  379. {
  380. if (time == null)
  381. {
  382. return "";
  383. }
  384. if (time.Value.Year >= 2050)
  385. {
  386. return "长期";
  387. }
  388. return time.Value.ToString("yyyy-MM-dd");
  389. }
  390. #endregion
  391. }
  392. }