InAppPurchaseController.py 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391
  1. # @Author : Rocky
  2. # @File : InAppPurchaseController.py
  3. # @Time : 2024/6/21 9:10
  4. import logging
  5. import time
  6. import json
  7. import requests
  8. from appstoreserverlibrary.api_client import AppStoreServerAPIClient, GetTransactionHistoryVersion
  9. from appstoreserverlibrary.models.Environment import Environment
  10. from appstoreserverlibrary.receipt_utility import ReceiptUtility
  11. from appstoreserverlibrary.models.HistoryResponse import HistoryResponse
  12. from appstoreserverlibrary.models.TransactionHistoryRequest import TransactionHistoryRequest, ProductType, Order
  13. from appstoreserverlibrary.signed_data_verifier import SignedDataVerifier
  14. from cryptography.hazmat.backends import default_backend
  15. from cryptography.hazmat.primitives.serialization import load_pem_private_key
  16. from django.db.models import Q
  17. from django.views import View
  18. from django.http import HttpResponse
  19. from Ansjer.config import LOGGER, CONFIG_INFO, CONFIG_TEST, PAY_TYPE_IN_APP_PURCHASE, BASE_DIR, CONFIG_US
  20. from Controller.CheckUserData import DataValid
  21. from Model.models import Order_Model, Store_Meal, Device_Info, UID_Bucket, Unused_Uid_Meal, AiService, Device_User, \
  22. SysMsgModel, InAppPurchasePackage
  23. from Object.AWS.S3Email import S3Email
  24. from Object.AliSmsObject import AliSmsObject
  25. from Object.AppleInAppPurchaseSubscriptionObject import InAppPurchase
  26. from Object.RedisObject import RedisObject
  27. from Service.CommonService import CommonService
  28. ENV = Environment.SANDBOX if CONFIG_INFO == CONFIG_TEST else Environment.PRODUCTION
  29. class InAppPurchaseView(View):
  30. def get(self, request, *args, **kwargs):
  31. request.encoding = 'utf-8'
  32. operation = kwargs.get('operation')
  33. return self.validation(request.GET, request, operation)
  34. def post(self, request, *args, **kwargs):
  35. request.encoding = 'utf-8'
  36. operation = kwargs.get('operation')
  37. return self.validation(request.POST, request, operation)
  38. def validation(self, request_dict, request, operation):
  39. if operation == 'AppStoreServerNotifications': # App Store服务器通知
  40. return self.app_store_server_notifications(request)
  41. token_code, user_id, response = CommonService.verify_token_get_user_id(request_dict, request)
  42. if token_code != 0:
  43. return response.json(token_code)
  44. if operation == 'verifyTransaction': # 认证交易
  45. return self.verify_transaction(user_id, request_dict, response)
  46. @classmethod
  47. def verify_transaction(cls, user_id, request_dict, response):
  48. """
  49. 认证交易
  50. @param user_id: 用户id
  51. @param request_dict: 请求参数
  52. @request_dict receipt: 收据
  53. @param response: 响应对象
  54. @return: response
  55. """
  56. receipt = request_dict.get('receipt', None)
  57. order_id = request_dict.get('orderID', None)
  58. uid = request_dict.get('uid', None)
  59. lang = request_dict.get('lang', 'en')
  60. channel = request_dict.get('channel', None)
  61. app_type = request_dict.get('appType', 1)
  62. logger = logging.getLogger('apple_pay')
  63. logger.info(f"receipt: {receipt}, 订单orderId: {order_id}, uid: {uid}")
  64. if not all([receipt, uid, channel, order_id]):
  65. return response.json(444)
  66. # redis加锁,防止订单重复
  67. redis_obj = RedisObject()
  68. redis_key = order_id + 'in_app_purchase'
  69. is_lock = redis_obj.CONN.setnx(redis_key, 1)
  70. redis_obj.CONN.expire(redis_key, 60)
  71. if not is_lock:
  72. return response.json(5)
  73. try:
  74. # 检查商品id是否正确
  75. app_type = int(app_type)
  76. if app_type == 1:
  77. bundle_id = "com.ansjer.zccloud"
  78. elif app_type == 2:
  79. bundle_id = "com.cloudlife.commissionf"
  80. else:
  81. return response.json(444, "app_type不存在")
  82. # 实例化订阅类
  83. in_app_purchase = InAppPurchase(bundle_id=bundle_id)
  84. # ReceiptUtility 用于解析收据为transaction_id
  85. receipt_util = in_app_purchase.receipt_util
  86. # AppStoreServerAPIClient 用于查询交易信息
  87. client = in_app_purchase.client
  88. # SignedDataVerifier 用于解析查询到的交易信息
  89. signed_data_verifier = in_app_purchase.verifier
  90. # 解析收据(循环扣款时不需要这一步, 直接获取transaction_id)
  91. transaction_id = receipt_util.extract_transaction_id_from_app_receipt(receipt)
  92. if transaction_id is None:
  93. pay_result_url = CommonService.get_payment_status_url(lang, 'fail')
  94. return response.json(0, {'url': pay_result_url})
  95. logger.info(f"订单orderId:{order_id}, transaction_id:{transaction_id}")
  96. # 查询交易信息
  97. transaction_info = client.get_transaction_info(transaction_id)
  98. signed_transaction_info = transaction_info.signedTransactionInfo
  99. # 解析交易信息
  100. payload = signed_data_verifier.verify_and_decode_signed_transaction(signed_transaction_info)
  101. # 获取交易的商品id
  102. product_id = payload.productId if payload and payload.productId else None
  103. if not product_id:
  104. pay_result_url = CommonService.get_payment_status_url(lang, 'fail')
  105. return response.json(0, {'url': pay_result_url})
  106. in_app_purchase_package_qs = InAppPurchasePackage.objects.filter(product_id=product_id, app_type=app_type)
  107. if not in_app_purchase_package_qs.exists():
  108. return response.json(173, "内购商品id不存在")
  109. # 验证订单是否存在
  110. order_qs = Order_Model.objects.filter(orderID=order_id, UID=uid, app_type=app_type).values("rank_id")
  111. if not order_qs.exists():
  112. return response.json(173, "订单不存在")
  113. # 验证套餐是否存在
  114. store_qs = Store_Meal.objects.filter(id=order_qs[0]['rank_id']).values(
  115. 'id', 'currency', 'price', 'lang__content', 'day', 'commodity_type', 'lang__title', 'expire',
  116. 'commodity_code', 'discount_price', 'bucket_id', 'bucket__mold', 'cycle_config_id', 'is_ai')
  117. if not store_qs.exists():
  118. return response.json(173, "云存套餐不存在")
  119. # 设备开通云存
  120. now_time = int(time.time())
  121. uid_bucket_id = cls.enable_cloud(channel, now_time, order_id, store_qs, uid)
  122. # 修改订单信息
  123. order_qs.update(status=1, uid_bucket_id=uid_bucket_id, transaction_id=transaction_id, create_vod=1)
  124. # 构建云存套餐消息
  125. sys_msg_text_list = cls.cloud_storage_message(uid)
  126. cls.do_vod_msg_notice(uid, user_id, lang, sys_msg_text_list)
  127. # 删除缓存
  128. redis_obj.del_data(redis_key)
  129. pay_result_url = CommonService.get_payment_status_url(lang, 'success')
  130. return response.json(0, {'url': pay_result_url})
  131. except Exception as e:
  132. redis_obj.del_data(redis_key)
  133. LOGGER.info('苹果内购认证交易接口异常:{}'.
  134. format('error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e))))
  135. pay_result_url = CommonService.get_payment_status_url(lang, 'fail')
  136. return response.json(0, {'url': pay_result_url})
  137. @classmethod
  138. def cloud_storage_message(cls, uid):
  139. # 发送云存开通信息
  140. date_time = time.strftime("%Y-%m-%d", time.localtime())
  141. # 如果存在序列号,消息提示用序列号
  142. device_info_qs = Device_Info.objects.filter(UID=uid).values('serial_number', 'Type')
  143. serial_number = device_info_qs[0]['serial_number']
  144. device_type = device_info_qs[0]['Type']
  145. if serial_number:
  146. device_name = CommonService.get_full_serial_number(uid, serial_number, device_type)
  147. else:
  148. device_name = uid
  149. sys_msg_text_list = [
  150. '温馨提示:尊敬的客户,您的{}设备在{}已成功购买云存套餐'.format(device_name, date_time),
  151. 'Dear customer,you already subscribed the cloud storage package successfully for device {} on '.
  152. format(device_name, time.strftime('%b %dth,%Y', time.localtime()))]
  153. return sys_msg_text_list
  154. @classmethod
  155. def enable_cloud(cls, channel, now_time, order_id, store_qs, uid):
  156. bucket_id = store_qs[0]['bucket_id']
  157. is_ai = store_qs[0]['is_ai']
  158. expire = store_qs[0]['expire']
  159. end_time = CommonService.calcMonthLater(expire)
  160. # 查询设备是否已开过云存
  161. use_flag = True
  162. uid_bucket_qs = UID_Bucket.objects.filter(uid=uid). \
  163. values('id', 'bucket_id', 'bucket__region', 'endTime', 'use_status')
  164. if uid_bucket_qs.exists():
  165. uid_bucket = uid_bucket_qs.first()
  166. uid_bucket_id = uid_bucket['id']
  167. # 有正在使用的套餐,创建为未使用套餐
  168. if uid_bucket['use_status'] == 1 and uid_bucket['endTime'] > now_time:
  169. Unused_Uid_Meal.objects.create(
  170. uid=uid, channel=channel, addTime=now_time, order_id=order_id, expire=expire, is_ai=is_ai,
  171. bucket_id=bucket_id)
  172. UID_Bucket.objects.filter(id=uid_bucket_id).update(has_unused=1)
  173. use_flag = False
  174. # 无正在使用套餐,直接使用套餐
  175. else:
  176. UID_Bucket.objects.filter(id=uid_bucket_id).update(
  177. channel=channel, bucket_id=bucket_id, endTime=end_time, updateTime=now_time, use_status=1,
  178. orderId=order_id)
  179. else:
  180. uid_bucket = UID_Bucket.objects.create(
  181. uid=uid, channel=channel, bucket_id=bucket_id, endTime=end_time, use_status=1, orderId=order_id,
  182. addTime=now_time, updateTime=now_time)
  183. uid_bucket_id = uid_bucket.id
  184. # 开通AI服务
  185. if is_ai and use_flag:
  186. ai_service = AiService.objects.filter(uid=uid, channel=channel)
  187. # 有正在使用的套餐,叠加套餐时间,否则创建
  188. if ai_service.exists():
  189. ai_service.update(updTime=now_time, use_status=1, orders_id=order_id, endTime=end_time)
  190. else:
  191. AiService.objects.create(
  192. uid=uid, channel=channel, detect_status=1, use_status=1, orders_id=order_id,
  193. addTime=now_time, updTime=now_time, endTime=end_time)
  194. return uid_bucket_id
  195. @classmethod
  196. def do_vod_msg_notice(cls, uid, user_id, lang, sys_msg_text_list):
  197. """
  198. 发送云存开通信息
  199. @param uid: uid
  200. @param user_id: 用户id
  201. @param lang: 语言
  202. @param sys_msg_text_list: 消息列表
  203. @return: response
  204. """
  205. if lang == 'cn':
  206. sys_msg_text = sys_msg_text_list[0]
  207. else:
  208. sys_msg_text = sys_msg_text_list[1]
  209. now_time = int(time.time())
  210. create_data = {
  211. 'userID_id': user_id,
  212. 'msg': sys_msg_text,
  213. 'addTime': now_time,
  214. 'updTime': now_time,
  215. 'uid': uid,
  216. 'eventType': 0
  217. }
  218. SysMsgModel.objects.create(**create_data)
  219. # 不接收邮件用户
  220. if user_id == '167015836969813800138000':
  221. return
  222. user_qs = Device_User.objects.filter(userID=user_id)
  223. if user_qs.exists():
  224. user = user_qs.first()
  225. username = user.username
  226. data_valid = DataValid()
  227. if data_valid.email_validate(username):
  228. S3Email().faEmail(sys_msg_text, username)
  229. elif data_valid.mobile_validate(username):
  230. # 如果存在序列号,消息提示用序列号
  231. device_info_qs = Device_Info.objects.filter(UID=uid).values('serial_number', 'Type')
  232. if device_info_qs.exists():
  233. serial_number = device_info_qs[0]['serial_number']
  234. device_type = device_info_qs[0]['Type']
  235. if serial_number:
  236. device_name = CommonService.get_full_serial_number(uid, serial_number, device_type)
  237. else:
  238. device_name = uid
  239. params = '{"devname":"%s","submittime":"%s"}' % (
  240. device_name, time.strftime("%Y-%m-%d", time.localtime()))
  241. cls.send_message(username, params, 'SMS_219738485')
  242. @staticmethod
  243. def send_message(phone, params, temp_msg):
  244. """
  245. 发送手机消息
  246. @param phone: 用户名
  247. @param params: 消息参数
  248. @param temp_msg: sms码
  249. """
  250. sign_ms = '周视'
  251. ali_sms = AliSmsObject()
  252. ali_sms.send_code_sms_cloud(phone=phone, params=params, sign_name=sign_ms, temp_msg=temp_msg)
  253. @classmethod
  254. def app_store_server_notifications(cls, request):
  255. logger = logging.getLogger('apple_pay')
  256. logger.info('App Store服务器通知请求类型:{}'.format(request.method))
  257. logger.info('App Store服务器通知参数:{}'.format(request.POST))
  258. logger.info('App Store服务器通知请求body:{}'.format(request.body))
  259. payload = json.loads(request.body.decode('utf-8'))
  260. logger.info('App Store服务器通知payload:{}'.format(payload))
  261. # 获取 signedPayload
  262. signed_payload = payload.get('signedPayload')
  263. if not signed_payload:
  264. return HttpResponse(status=400)
  265. bundle_id = 'com.ansjer.zccloud'
  266. environment = ENV
  267. root_certificates = []
  268. for cert_name in [
  269. 'AppleIncRootCertificate.cer', 'AppleComputerRootCertificate.cer',
  270. 'AppleRootCA-G2.cer', 'AppleRootCA-G3.cer'
  271. ]:
  272. cert_path = '{}/Ansjer/file/in_app_purchase/{}'.format(BASE_DIR, cert_name)
  273. with open(cert_path, 'rb') as file:
  274. # 读取文件内容
  275. root_certificates.append(file.read())
  276. enable_online_checks = True
  277. app_apple_id = 1355964934 # 生产环境必需
  278. # 验证签名并解码 payload
  279. verifier = SignedDataVerifier(
  280. root_certificates, enable_online_checks, environment, bundle_id, app_apple_id)
  281. decoded_payload = verifier.verify_and_decode_notification(signed_payload)
  282. logger.info('App Store服务器通知decoded_payload: {}'.format(decoded_payload))
  283. status_code = 200
  284. if str(decoded_payload.rawNotificationType) == "REFUND":
  285. # 一种通知类型,表示 App Store 成功退还了消耗性应用内购买、非消耗性应用内购买、自动续订或不可续订的交易。
  286. # revocationDate 包含退款交易的时间戳。originalTransactionId 和 productId 用于标识原始交易和产品。revocationReason 包含原因。
  287. # 要请求客户所有退款交易的列表,请参阅 App Store 服务器 API 中的获取退款历史记录。
  288. # 1. 找套餐 使用 transaction_id 找orders
  289. decoded_transaction_information = verifier.verify_and_decode_signed_transaction(
  290. decoded_payload.data.signedTransactionInfo)
  291. transaction_id = decoded_transaction_information.transactionId
  292. logger.info('App Store服务器通知退款, transaction_id:{}'.format(transaction_id))
  293. orders_qs = Order_Model.objects.filter(transaction_id=transaction_id)
  294. # 2. 查找云存套餐使用表 和 云存套餐
  295. if orders_qs.exists():
  296. orders_qs.update(status=11)
  297. orderID = orders_qs[0].orderID
  298. uid = orders_qs[0].UID
  299. user_id = orders_qs[0].userID
  300. # 3. 未使用则删除未使用套餐表,已使用过则删除设备正在使用套餐,并关闭设备云存
  301. uid_bucket_qs = UID_Bucket.objects.filter(uid=uid, orderId=orderID, use_status=1, endTime__gt=int(time.time()))
  302. uid_bucket_qs = UID_Bucket.objects.filter(uid=uid, orderId=orderID, use_status=1,
  303. endTime__gt=int(time.time()))
  304. unused_uid_meal_qs = Unused_Uid_Meal.objects.filter(order_id=orderID)
  305. ai_service_qs = AiService.objects.filter(uid=uid, orderId=orderID, use_status=1,
  306. endTime__gt=int(time.time()))
  307. if unused_uid_meal_qs.exists():
  308. unused_uid_meal_qs.delete()
  309. if uid_bucket_qs.exists():
  310. uid_bucket_qs.update(status=0, use_status=2, endTime=int(time.time()), updateTime=int(time.time()))
  311. if ai_service_qs.exists():
  312. ai_service_qs.update(detect_status=0, use_status=2, endTime=int(time.time()),
  313. updTime=int(time.time()))
  314. # 关闭ai
  315. msg = {'commandType': 'AIDisable'}
  316. thing_name = CommonService.query_serial_with_uid(uid) # 存在序列号则为使用序列号作为物品名
  317. topic_name = 'ansjer/generic/{}'.format(thing_name)
  318. req_success = CommonService.req_publish_mqtt_msg(thing_name, topic_name, msg)
  319. LOGGER.info(f'App Store服务器通知用户退款, 关闭AI:{req_success}')
  320. # 4.发送邮件告知用户退款
  321. email_content = f'{CONFIG_INFO}用户{user_id}, 订单:{orderID}, 设备{uid}退款'
  322. S3Email().faEmail(email_content, 'servers@ansjer.com')
  323. else:
  324. if CONFIG_INFO == CONFIG_US:
  325. url = "https://api.zositeche.com/inAppPurchase/AppStoreServerNotifications"
  326. eur_response = requests.post(url=url, json=json.loads(request.body))
  327. status_code = eur_response.status_code
  328. return HttpResponse(status=status_code)
  329. unused_uid_meal_qs = Unused_Uid_Meal.objects.filter(order_id=orderID)
  330. ai_service_qs = AiService.objects.filter(uid=uid, orderId=orderID, use_status=1, endTime__gt=int(time.time()))
  331. if unused_uid_meal_qs.exists():
  332. unused_uid_meal_qs.delete()
  333. if uid_bucket_qs.exists():
  334. uid_bucket_qs.update(status=0, use_status=2, endTime=int(time.time()), updateTime=int(time.time()))
  335. if ai_service_qs.exists():
  336. ai_service_qs.update(detect_status=0, use_status=2, endTime=int(time.time()), updTime=int(time.time()))
  337. # 关闭ai
  338. msg = {'commandType': 'AIDisable'}
  339. thing_name = CommonService.query_serial_with_uid(uid) # 存在序列号则为使用序列号作为物品名
  340. topic_name = 'ansjer/generic/{}'.format(thing_name)
  341. req_success = CommonService.req_publish_mqtt_msg(thing_name, topic_name, msg)
  342. LOGGER.info(f'App Store服务器通知用户退款, 关闭AI:{req_success}')
  343. # 4.发送邮件告知用户退款
  344. email_content = f'{CONFIG_INFO}用户{user_id}, 订单:{orderID}, 设备{uid}退款'
  345. S3Email().faEmail(email_content, 'servers@ansjer.com')
  346. else:
  347. if CONFIG_INFO == CONFIG_US:
  348. url = "https://api.zositeche.com/inAppPurchase/AppStoreServerNotifications"
  349. eur_response = requests.post(url=url, json=json.loads(request.body))
  350. status_code = eur_response.status_code
  351. return HttpResponse(status=status_code)