Files
huangjingfen/pro_v3.5.1_副本/crmeb/services/upload/extend/cos/Signature.php

214 lines
6.9 KiB
PHP
Raw Normal View History

feat(fsgx): 完成全部24项开发任务 Phase1-7 Phase1 后端核心: - 新增 fsgx_v1.sql 迁移脚本(is_queue_goods/frozen_points/available_points/no_assess) - SystemConfigServices 返佣设置扩展(周期人数/分档比例/范围/时机) - StoreOrderCreateServices 周期循环佣金计算 - StoreOrderTakeServices 佣金发放后同步冻结积分 - StoreProductServices/StoreProduct 保存 is_queue_goods Phase2 后端接口: - GET /api/hjf/brokerage/progress 佣金周期进度 - GET /api/hjf/assets/overview 资产总览 - HjfPointsServices 每日 frozen_points 0.4‰ 释放定时任务 - PUT /adminapi/hjf/member/{uid}/no_assess 不考核接口 - GET /adminapi/hjf/points/release_log 积分日志接口 Phase3 前端清理: - hjfCustom.js 路由精简(仅保留 points/log) - hjfQueue.js/hjfMember.js API 清理/重定向至 CRMEB 原生接口 - pages.json 公排→推荐佣金/佣金记录/佣金规则 Phase4-5 前端改造: - queue/status.vue 推荐佣金进度页整体重写 - 商品详情/订单确认/支付结果页文案与逻辑改造 - 个人中心/资产页/引导页/规则页文案改造 - HjfQueueProgress/HjfRefundNotice/HjfAssetCard 组件改造 - 推广中心嵌入佣金进度摘要 - hjfMockData.js 全量更新(公排字段→佣金字段) Phase6 Admin 增强: - 用户列表新增 frozen_points/available_points 列及不考核操作按钮 - hjfPoints.js USE_MOCK=false 对接真实积分日志接口 Phase7 配置文档: - docs/fsgx-phase7-config-checklist.md 后台配置与全链路验收清单 Made-with: Cursor
2026-03-23 22:32:19 +08:00
<?php
/**
* +----------------------------------------------------------------------
* | CRMEB [ CRMEB赋能开发者助力企业发展 ]
* +----------------------------------------------------------------------
* | Copyright (c) 2016~2022 https://www.crmeb.com All rights reserved.
* +----------------------------------------------------------------------
* | Licensed CRMEB并不是自由软件未经许可不能去掉CRMEB相关版权
* +----------------------------------------------------------------------
* | Author: CRMEB Team <admin@crmeb.com>
* +----------------------------------------------------------------------
*/
namespace crmeb\services\upload\extend\cos;
/**
* Class 生成签名
* @author 等风来
* @email 136327134@qq.com
* @date 2022/9/26
* @package crmeb\services\upload\extend\cos
*/
class Signature
{
/**
* @var string
*/
private $accessKey;
/**
* @var string
*/
private $secretKey;
/**
* @var array
*/
private $options;
/**
* Signature constructor.
* @param string $accessKey
* @param string $secretKey
* @param array $options
* @param string $token
*/
public function __construct(string $accessKey, string $secretKey, array $options = [], string $token = '')
{
$this->accessKey = $accessKey;
$this->secretKey = $secretKey;
$this->options = $options;
$this->token = $token;
$this->signHeader = [
'cache-control',
'content-disposition',
'content-encoding',
'content-length',
'content-md5',
'content-type',
'expect',
'expires',
'host',
'if-match',
'if-modified-since',
'if-none-match',
'if-unmodified-since',
'origin',
'range',
'response-cache-control',
'response-content-disposition',
'response-content-encoding',
'response-content-language',
'response-content-type',
'response-expires',
'transfer-encoding',
'versionid',
];
date_default_timezone_set('PRC');
}
public function needCheckHeader($header)
{
if ($this->startWith($header, 'x-cos-')) {
return true;
}
if (in_array($header, $this->signHeader)) {
return true;
}
return false;
}
/**
* @author 等风来
* @email 136327134@qq.com
* @date 2022/9/29
* @param $haystack
* @param $needle
* @return bool
*/
protected function startWith($haystack, $needle)
{
$length = strlen($needle);
if ($length == 0) {
return true;
}
return (substr($haystack, 0, $length) === $needle);
}
/**
* @param string $method
* @param string $urlPath
* @param array $querys
* @param array $headers
* @return string[]
* @author 等风来
* @email 136327134@qq.com
* @date 2022/9/26
*/
public function signRequest(string $method, string $urlPath, array $querys = [], array $headers = [])
{
$authorization = $this->createAuthorization($method, $urlPath, $querys, $headers);
return ['Authorization' => $authorization];
}
/**
* @param string $method
* @param string $urlPath
* @param array $querys
* @param array $headers
* @param string $expires
* @return string
* @author 等风来
* @email 136327134@qq.com
* @date 2022/9/26
*/
public function createAuthorization(string $method, string $urlPath, array $querys = [], array $headers = [], $expires = '+30 minutes')
{
if (is_null($expires) || !strtotime($expires)) {
$expires = '+30 minutes';
}
$signTime = ( string )(time() - 60) . ';' . ( string )(strtotime($expires));
$urlParamListArray = [];
foreach ($querys as $query) {
if (!empty($query)) {
$tmpquery = explode('=', $query);
//为了保证CI的key中有=号的情况也能正常通过ci在这层之前已经encode了这里需要拆开重新encode防止上方explode拆错
$key = strtolower(rawurlencode(urldecode($tmpquery[0])));
if (count($tmpquery) >= 2) {
$value = $tmpquery[1];
} else {
$value = "";
}
//host开关
if (!$this->options['signHost'] && $key == 'host') {
continue;
}
$urlParamListArray[$key] = $key . '=' . $value;
}
}
ksort($urlParamListArray);
$urlParamList = join(';', array_keys($urlParamListArray));
$httpParameters = join('&', array_values($urlParamListArray));
$headerListArray = [];
foreach ($headers as $key => $value) {
$key = strtolower(urlencode($key));
$value = rawurlencode($value);
if (!$this->options['signHost'] && $key == 'host') {
continue;
}
if ($this->needCheckHeader($key)) {
$headerListArray[$key] = $key . '=' . $value;
}
}
ksort($headerListArray);
$headerList = join(';', array_keys($headerListArray));
$httpHeaders = join('&', array_values($headerListArray));
$httpString = strtolower($method) . "\n" . urldecode($urlPath) . "\n" . $httpParameters .
"\n" . $httpHeaders . "\n";
$sha1edHttpString = sha1($httpString);
$stringToSign = "sha1\n$signTime\n$sha1edHttpString\n";
$signKey = hash_hmac('sha1', $signTime, trim($this->secretKey));
$signature = hash_hmac('sha1', $stringToSign, $signKey);
$authorization = 'q-sign-algorithm=sha1&q-ak=' . trim($this->accessKey) .
"&q-sign-time=$signTime&q-key-time=$signTime&q-header-list=$headerList&q-url-param-list=$urlParamList&" .
"q-signature=$signature";
return $authorization;
}
/**
* @param string $url
* @param string $method
* @param string $urlPath
* @param array $querys
* @param array $headers
* @param string $expires
* @return string[]
* @author 等风来
* @email 136327134@qq.com
* @date 2022/9/26
*/
public function createPresignedUrl(string $url, string $method, string $urlPath, array $querys = [], array $headers = [], string $expires = '+30 minutes')
{
$authorization = $this->createAuthorization($method, $urlPath, $querys, $headers, $expires);
$uri = $url;
$query = 'sign=' . urlencode($authorization) . '&' . implode('&', $querys);
if ($this->token != null) {
$query = $query . '&x-cos-security-token=' . $this->token;
}
return [$uri, $query];
}
}