2022-11-13 23:17:18 +08:00
|
|
|
|
using System;
|
|
|
|
|
|
using System.Text;
|
2021-05-10 15:30:00 +08:00
|
|
|
|
|
|
|
|
|
|
namespace SKIT.FlurlHttpClient.Wechat.TenpayV3
|
|
|
|
|
|
{
|
2021-07-20 01:20:31 +08:00
|
|
|
|
public static class WechatTenpayClientEventDecryptionExtensions
|
2021-05-10 15:30:00 +08:00
|
|
|
|
{
|
|
|
|
|
|
/// <summary>
|
2021-05-28 19:08:11 +08:00
|
|
|
|
/// <para>反序列化得到 <see cref="WechatTenpayEvent"/> 对象。</para>
|
2021-05-10 15:30:00 +08:00
|
|
|
|
/// </summary>
|
|
|
|
|
|
/// <param name="client"></param>
|
|
|
|
|
|
/// <param name="callbackJson"></param>
|
|
|
|
|
|
/// <returns></returns>
|
2021-05-28 19:08:11 +08:00
|
|
|
|
public static WechatTenpayEvent DeserializeEvent(this WechatTenpayClient client, string callbackJson)
|
2021-05-10 15:30:00 +08:00
|
|
|
|
{
|
|
|
|
|
|
if (client == null) throw new ArgumentNullException(nameof(client));
|
|
|
|
|
|
if (string.IsNullOrEmpty(callbackJson)) throw new ArgumentNullException(callbackJson);
|
|
|
|
|
|
|
2021-07-27 00:50:03 +08:00
|
|
|
|
return client.JsonSerializer.Deserialize<WechatTenpayEvent>(callbackJson);
|
2021-05-10 15:30:00 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
/// <summary>
|
|
|
|
|
|
/// 返回序列化并解密事件数据中被加密的通知数据。
|
|
|
|
|
|
/// </summary>
|
|
|
|
|
|
/// <typeparam name="T"></typeparam>
|
|
|
|
|
|
/// <param name="client"></param>
|
|
|
|
|
|
/// <param name="callback"></param>
|
|
|
|
|
|
/// <returns></returns>
|
2021-05-28 19:08:11 +08:00
|
|
|
|
public static T DecryptEventResource<T>(this WechatTenpayClient client, WechatTenpayEvent callback)
|
|
|
|
|
|
where T : WechatTenpayEvent.Types.IDecryptedResource, new()
|
2021-05-10 15:30:00 +08:00
|
|
|
|
{
|
|
|
|
|
|
if (client == null) throw new ArgumentNullException(nameof(client));
|
|
|
|
|
|
if (callback == null) throw new ArgumentNullException(nameof(callback));
|
|
|
|
|
|
|
2021-05-28 19:08:11 +08:00
|
|
|
|
return DecryptEventResource<T>(client, callback.Resource);
|
2021-05-10 15:30:00 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
/// <summary>
|
|
|
|
|
|
/// 返回序列化并解密事件数据中被加密的通知数据。
|
|
|
|
|
|
/// </summary>
|
|
|
|
|
|
/// <typeparam name="T"></typeparam>
|
|
|
|
|
|
/// <param name="client"></param>
|
|
|
|
|
|
/// <param name="resource"></param>
|
|
|
|
|
|
/// <returns></returns>
|
2021-05-28 19:08:11 +08:00
|
|
|
|
public static T DecryptEventResource<T>(this WechatTenpayClient client, WechatTenpayEvent.Types.Resource resource)
|
|
|
|
|
|
where T : WechatTenpayEvent.Types.IDecryptedResource, new()
|
2021-05-10 15:30:00 +08:00
|
|
|
|
{
|
|
|
|
|
|
if (client == null) throw new ArgumentNullException(nameof(client));
|
|
|
|
|
|
if (resource == null) throw new ArgumentNullException(nameof(resource));
|
|
|
|
|
|
|
|
|
|
|
|
string plainJson;
|
2022-11-13 23:17:18 +08:00
|
|
|
|
switch (resource.Algorithm)
|
2021-05-10 15:30:00 +08:00
|
|
|
|
{
|
2022-11-13 23:17:18 +08:00
|
|
|
|
case Constants.EncryptionAlgorithms.AEAD_AES_256_GCM:
|
|
|
|
|
|
{
|
|
|
|
|
|
try
|
|
|
|
|
|
{
|
|
|
|
|
|
plainJson = Utilities.AESUtility.DecryptWithGCM(
|
|
|
|
|
|
key: client.Credentials.MerchantV3Secret,
|
|
|
|
|
|
nonce: resource.Nonce,
|
|
|
|
|
|
aad: resource.AssociatedData,
|
|
|
|
|
|
cipherText: resource.CipherText
|
|
|
|
|
|
);
|
|
|
|
|
|
}
|
|
|
|
|
|
catch (Exception ex)
|
|
|
|
|
|
{
|
2023-03-09 18:12:30 +08:00
|
|
|
|
throw new Exceptions.WechatTenpayEventDecryptionException("Failed to decrypt event resource data. Please see the inner exception for more details.", ex);
|
2022-11-13 23:17:18 +08:00
|
|
|
|
}
|
|
|
|
|
|
}
|
|
|
|
|
|
break;
|
|
|
|
|
|
|
|
|
|
|
|
case Constants.EncryptionAlgorithms.AEAD_SM4_128_GCM:
|
|
|
|
|
|
{
|
|
|
|
|
|
try
|
|
|
|
|
|
{
|
|
|
|
|
|
// REF: https://pay.weixin.qq.com/docs/merchant/development/shangmi/guide.html
|
|
|
|
|
|
// 由于 SM4 密钥长度的限制,密钥由 APIv3 密钥通过国密 SM3 Hash 计算生成。SM4 密钥取其摘要(256bit)的前 128bit。
|
|
|
|
|
|
byte[] secretBytes = Utilities.SM3Utility.Hash(Encoding.UTF8.GetBytes(client.Credentials.MerchantV3Secret));
|
|
|
|
|
|
byte[] keyBytes = new byte[16];
|
|
|
|
|
|
Array.Copy(secretBytes, keyBytes, keyBytes.Length);
|
|
|
|
|
|
|
|
|
|
|
|
byte[] plainBytes = Utilities.SM4Utility.DecryptWithGCM(
|
|
|
|
|
|
keyBytes: keyBytes,
|
|
|
|
|
|
nonceBytes: Encoding.UTF8.GetBytes(resource.Nonce),
|
2022-11-18 11:43:45 +08:00
|
|
|
|
aadBytes: resource.AssociatedData is null ? null : Encoding.UTF8.GetBytes(resource.AssociatedData),
|
2022-11-13 23:17:18 +08:00
|
|
|
|
cipherBytes: Convert.FromBase64String(resource.CipherText)
|
|
|
|
|
|
);
|
|
|
|
|
|
plainJson = Encoding.UTF8.GetString(plainBytes);
|
|
|
|
|
|
}
|
|
|
|
|
|
catch (Exception ex)
|
|
|
|
|
|
{
|
2023-03-09 18:12:30 +08:00
|
|
|
|
throw new Exceptions.WechatTenpayEventDecryptionException("Failed to decrypt event resource data. Please see the inner exception for more details.", ex);
|
2022-11-13 23:17:18 +08:00
|
|
|
|
}
|
|
|
|
|
|
}
|
|
|
|
|
|
break;
|
|
|
|
|
|
|
|
|
|
|
|
default:
|
|
|
|
|
|
{
|
|
|
|
|
|
throw new Exceptions.WechatTenpayEventDecryptionException($"Unsupported encryption algorithm: \"{resource.Algorithm}\".");
|
|
|
|
|
|
}
|
2021-05-10 15:30:00 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
2021-07-27 00:50:03 +08:00
|
|
|
|
return client.JsonSerializer.Deserialize<T>(plainJson);
|
2021-05-10 15:30:00 +08:00
|
|
|
|
}
|
|
|
|
|
|
}
|
|
|
|
|
|
}
|