Files
DotNetCore.SKIT.FlurlHttpCl…/src/SKIT.FlurlHttpClient.Wechat.TenpayV3/Extensions/WechatTenpayClientEventDecryptionExtensions.cs

109 lines
5.3 KiB
C#
Raw Normal View History

using System;
2021-05-10 15:30:00 +08:00
namespace SKIT.FlurlHttpClient.Wechat.TenpayV3
{
using SKIT.FlurlHttpClient.Primitives;
using SKIT.FlurlHttpClient.Wechat.TenpayV3.Constants;
public static class WechatTenpayClientEventDecryptionExtensions
2021-05-10 15:30:00 +08:00
{
/// <summary>
/// <para>反序列化得到 <see cref="WechatTenpayEvent"/> 对象。</para>
2021-05-10 15:30:00 +08:00
/// </summary>
/// <param name="client"></param>
2024-01-29 23:12:37 +08:00
/// <param name="webhookJson"></param>
2021-05-10 15:30:00 +08:00
/// <returns></returns>
2024-01-29 23:12:37 +08:00
public static WechatTenpayEvent DeserializeEvent(this WechatTenpayClient client, string webhookJson)
2021-05-10 15:30:00 +08:00
{
2024-01-29 23:12:37 +08:00
if (client is null) throw new ArgumentNullException(nameof(client));
if (webhookJson is null) throw new ArgumentNullException(webhookJson);
2021-05-10 15:30:00 +08:00
2024-01-29 23:12:37 +08:00
return client.JsonSerializer.Deserialize<WechatTenpayEvent>(webhookJson);
2021-05-10 15:30:00 +08:00
}
/// <summary>
/// 返回序列化并解密事件数据中被加密的通知数据。
/// </summary>
/// <typeparam name="T"></typeparam>
/// <param name="client"></param>
2024-01-29 23:12:37 +08:00
/// <param name="webhookEvent"></param>
2021-05-10 15:30:00 +08:00
/// <returns></returns>
2024-01-29 23:12:37 +08:00
public static T DecryptEventResource<T>(this WechatTenpayClient client, WechatTenpayEvent webhookEvent)
where T : WechatTenpayEvent.Types.IDecryptedResource, new()
2021-05-10 15:30:00 +08:00
{
2024-01-29 23:12:37 +08:00
if (client is null) throw new ArgumentNullException(nameof(client));
if (webhookEvent is null) throw new ArgumentNullException(nameof(webhookEvent));
2021-05-10 15:30:00 +08:00
2024-01-29 23:12:37 +08:00
return DecryptEventResource<T>(client, webhookEvent.Resource);
2021-05-10 15:30:00 +08:00
}
/// <summary>
/// 返回序列化并解密事件数据中被加密的通知数据。
/// </summary>
/// <typeparam name="T"></typeparam>
/// <param name="client"></param>
2024-01-29 23:12:37 +08:00
/// <param name="webhookEventResource"></param>
2021-05-10 15:30:00 +08:00
/// <returns></returns>
2024-01-29 23:12:37 +08:00
public static T DecryptEventResource<T>(this WechatTenpayClient client, WechatTenpayEvent.Types.Resource webhookEventResource)
where T : WechatTenpayEvent.Types.IDecryptedResource, new()
2021-05-10 15:30:00 +08:00
{
2024-01-29 23:12:37 +08:00
if (client is null) throw new ArgumentNullException(nameof(client));
if (webhookEventResource is null) throw new ArgumentNullException(nameof(webhookEventResource));
2021-05-10 15:30:00 +08:00
string plainJson;
2024-01-29 23:12:37 +08:00
switch (webhookEventResource.Algorithm)
2021-05-10 15:30:00 +08:00
{
case EncryptionAlgorithms.AEAD_AES_256_GCM:
{
try
{
plainJson = Utilities.AESUtility.DecryptWithGCM(
encodingKey: new EncodedString(client.Credentials.MerchantV3Secret, EncodingKinds.Literal),
encodingNonce: new EncodedString(webhookEventResource.Nonce, EncodingKinds.Literal),
encodingAssociatedData: new EncodedString(webhookEventResource.AssociatedData, EncodingKinds.Literal),
encodingCipher: new EncodedString(webhookEventResource.CipherText, EncodingKinds.Base64)
)!;
}
catch (Exception ex)
{
2024-01-29 23:12:37 +08:00
throw new WechatTenpayException("Failed to decrypt event resource data. Please see the inner exception for more details.", ex);
}
}
break;
case EncryptionAlgorithms.AEAD_SM4_128_GCM:
{
try
{
// REF: https://pay.weixin.qq.com/doc/v3/merchant/4012076194
// 由于 SM4 密钥长度的限制,密钥由 APIv3 密钥通过国密 SM3 Hash 计算生成。SM4 密钥取其摘要256bit的前 128bit。
byte[] secretBytes = Utilities.SM3Utility.Hash(EncodedString.FromLiteralString(client.Credentials.MerchantV3Secret));
byte[] keyBytes = new byte[16];
Array.Copy(secretBytes, keyBytes, keyBytes.Length);
byte[] plainBytes = Utilities.SM4Utility.DecryptWithGCM(
keyBytes: keyBytes,
nonceBytes: EncodedString.FromLiteralString(webhookEventResource.Nonce),
associatedDataBytes: EncodedString.FromLiteralString(webhookEventResource.AssociatedData),
cipherBytes: EncodedString.FromBase64String(webhookEventResource.CipherText)
);
plainJson = EncodedString.ToLiteralString(plainBytes).Value!;
}
catch (Exception ex)
{
2024-01-29 23:12:37 +08:00
throw new WechatTenpayException("Failed to decrypt event resource data. Please see the inner exception for more details.", ex);
}
}
break;
default:
{
2024-01-29 23:12:37 +08:00
throw new WechatTenpayException($"Failed to decrypt event resource data. Unsupported encryption algorithm: \"{webhookEventResource.Algorithm}\".");
}
2021-05-10 15:30:00 +08:00
}
return client.JsonSerializer.Deserialize<T>(plainJson);
2021-05-10 15:30:00 +08:00
}
}
}