InAppPurchaseController.py 17 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354
  1. # @Author : Rocky
  2. # @File : InAppPurchaseController.py
  3. # @Time : 2024/6/21 9:10
  4. import logging
  5. import time
  6. import json
  7. import requests
  8. from appstoreserverlibrary.api_client import AppStoreServerAPIClient, GetTransactionHistoryVersion
  9. from appstoreserverlibrary.models.Environment import Environment
  10. from appstoreserverlibrary.receipt_utility import ReceiptUtility
  11. from appstoreserverlibrary.models.HistoryResponse import HistoryResponse
  12. from appstoreserverlibrary.models.TransactionHistoryRequest import TransactionHistoryRequest, ProductType, Order
  13. from appstoreserverlibrary.signed_data_verifier import SignedDataVerifier
  14. from cryptography.hazmat.backends import default_backend
  15. from cryptography.hazmat.primitives.serialization import load_pem_private_key
  16. from django.db.models import Q
  17. from django.views import View
  18. from django.http import HttpResponse
  19. from Ansjer.config import LOGGER, CONFIG_INFO, CONFIG_TEST, PAY_TYPE_IN_APP_PURCHASE, BASE_DIR, CONFIG_US
  20. from Controller.CheckUserData import DataValid
  21. from Model.models import Order_Model, Store_Meal, Device_Info, UID_Bucket, Unused_Uid_Meal, AiService, Device_User, \
  22. SysMsgModel
  23. from Object.AWS.S3Email import S3Email
  24. from Object.AliSmsObject import AliSmsObject
  25. from Object.RedisObject import RedisObject
  26. from Service.CommonService import CommonService
  27. ENV = Environment.SANDBOX if CONFIG_INFO == CONFIG_TEST else Environment.PRODUCTION
  28. class InAppPurchaseView(View):
  29. def get(self, request, *args, **kwargs):
  30. request.encoding = 'utf-8'
  31. operation = kwargs.get('operation')
  32. return self.validation(request.GET, request, operation)
  33. def post(self, request, *args, **kwargs):
  34. request.encoding = 'utf-8'
  35. operation = kwargs.get('operation')
  36. return self.validation(request.POST, request, operation)
  37. def validation(self, request_dict, request, operation):
  38. if operation == 'AppStoreServerNotifications': # App Store服务器通知
  39. return self.app_store_server_notifications(request)
  40. token_code, user_id, response = CommonService.verify_token_get_user_id(request_dict, request)
  41. if token_code != 0:
  42. return response.json(token_code)
  43. if operation == 'verifyTransaction': # 认证交易
  44. return self.verify_transaction(user_id, request_dict, response)
  45. @classmethod
  46. def verify_transaction(cls, user_id, request_dict, response):
  47. """
  48. 认证交易
  49. @param user_id: 用户id
  50. @param request_dict: 请求参数
  51. @request_dict receipt: 收据
  52. @param response: 响应对象
  53. @return: response
  54. """
  55. receipt = request_dict.get('receipt', None)
  56. order_id = request_dict.get('orderID', None)
  57. uid = request_dict.get('uid', None)
  58. lang = request_dict.get('lang', 'en')
  59. channel = request_dict.get('channel', None)
  60. logger = logging.getLogger('apple_pay')
  61. logger.info(f"receipt: {receipt}, 订单orderId: {order_id}, uid: {uid}")
  62. if not all([receipt, uid, channel, order_id]):
  63. return response.json(444)
  64. # redis加锁,防止订单重复
  65. redis_obj = RedisObject()
  66. redis_key = order_id + 'in_app_purchase'
  67. is_lock = redis_obj.CONN.setnx(redis_key, 1)
  68. redis_obj.CONN.expire(redis_key, 60)
  69. if not is_lock:
  70. return response.json(5)
  71. try:
  72. # 从交易信息中获取product_id
  73. key_path = '{}/Ansjer/file/in_app_purchase/SubscriptionKey_N42WMFCV6A.p8'.format(BASE_DIR)
  74. with open(key_path, 'rb') as file:
  75. # 读取文件内容
  76. private_key = file.read()
  77. key_id = 'N42WMFCV6A'
  78. issuer_id = '69a6de8c-789b-47e3-e053-5b8c7c11a4d1'
  79. bundle_id = 'com.ansjer.zccloud'
  80. environment = ENV
  81. client = AppStoreServerAPIClient(private_key, key_id, issuer_id, bundle_id, environment)
  82. receipt_util = ReceiptUtility()
  83. transaction_id = receipt_util.extract_transaction_id_from_app_receipt(receipt)
  84. logger.info(f"订单orderId:{order_id}, transaction_id:{transaction_id}")
  85. if transaction_id is None:
  86. pay_result_url = CommonService.get_payment_status_url(lang, 'fail')
  87. return response.json(0, {'url': pay_result_url})
  88. transaction_info = client.get_transaction_info(transaction_id)
  89. signed_transaction_info = transaction_info.signedTransactionInfo
  90. root_certificates = []
  91. for cert_name in [
  92. 'AppleIncRootCertificate.cer', 'AppleComputerRootCertificate.cer',
  93. 'AppleRootCA-G2.cer', 'AppleRootCA-G3.cer'
  94. ]:
  95. cert_path = '{}/Ansjer/file/in_app_purchase/{}'.format(BASE_DIR, cert_name)
  96. with open(cert_path, 'rb') as file:
  97. # 读取文件内容
  98. root_certificates.append(file.read())
  99. enable_online_checks = True
  100. app_apple_id = 1355964934 # 生产环境必需
  101. signed_data_verifier = SignedDataVerifier(
  102. root_certificates, enable_online_checks, environment, bundle_id, app_apple_id)
  103. payload = signed_data_verifier.verify_and_decode_signed_transaction(signed_transaction_info)
  104. product_id = None
  105. if payload and payload.productId:
  106. product_id = payload.productId
  107. if not product_id:
  108. pay_result_url = CommonService.get_payment_status_url(lang, 'fail')
  109. return response.json(0, {'url': pay_result_url})
  110. now_time = int(time.time())
  111. order_qs = Order_Model.objects.filter(orderID=order_id, UID=uid).values("rank_id")
  112. if not order_qs.exists():
  113. return response.json(173, "订单不存在")
  114. store_qs = Store_Meal.objects.filter(id=order_qs[0]['rank_id']).values(
  115. 'id', 'currency', 'price', 'lang__content', 'day', 'commodity_type', 'lang__title', 'expire',
  116. 'commodity_code', 'discount_price', 'bucket_id', 'bucket__mold', 'cycle_config_id', 'is_ai')
  117. if not store_qs.exists():
  118. return response.json(173, "套餐不存在")
  119. bucket_id = store_qs[0]['bucket_id']
  120. is_ai = store_qs[0]['is_ai']
  121. expire = store_qs[0]['expire']
  122. end_time = CommonService.calcMonthLater(expire)
  123. # 查询设备是否已开过云存
  124. use_flag = True
  125. uid_bucket_qs = UID_Bucket.objects.filter(uid=uid). \
  126. values('id', 'bucket_id', 'bucket__region', 'endTime', 'use_status')
  127. if uid_bucket_qs.exists():
  128. uid_bucket = uid_bucket_qs.first()
  129. uid_bucket_id = uid_bucket['id']
  130. # 叠加相同套餐的过期时间
  131. if uid_bucket['use_status'] == 1 and uid_bucket['endTime'] > now_time:
  132. Unused_Uid_Meal.objects.create(
  133. uid=uid, channel=channel, addTime=now_time, order_id=order_id, expire=expire, is_ai=is_ai,
  134. bucket_id=bucket_id)
  135. UID_Bucket.objects.filter(id=uid_bucket_id).update(has_unused=1)
  136. use_flag = False
  137. # 更新套餐的过期时间
  138. else:
  139. UID_Bucket.objects.filter(id=uid_bucket_id).update(
  140. channel=channel, bucket_id=bucket_id, endTime=end_time, updateTime=now_time, use_status=1,
  141. orderId=order_id)
  142. else:
  143. uid_bucket = UID_Bucket.objects.create(
  144. uid=uid, channel=channel, bucket_id=bucket_id, endTime=end_time, use_status=1, orderId=order_id,
  145. addTime=now_time, updateTime=now_time)
  146. uid_bucket_id = uid_bucket.id
  147. # 开通AI服务
  148. if is_ai and use_flag:
  149. ai_service = AiService.objects.filter(uid=uid, channel=channel)
  150. # 有正在使用的套餐,叠加套餐时间,否则创建
  151. if ai_service.exists():
  152. ai_service.update(updTime=now_time, use_status=1, orders_id=order_id, endTime=end_time)
  153. else:
  154. AiService.objects.create(
  155. uid=uid, channel=channel, detect_status=1, use_status=1, orders_id=order_id,
  156. addTime=now_time, updTime=now_time, endTime=end_time)
  157. order_qs.update(status=1, uid_bucket_id=uid_bucket_id, transaction_id=transaction_id, create_vod=1)
  158. # 发送云存开通信息
  159. date_time = time.strftime("%Y-%m-%d", time.localtime())
  160. # 如果存在序列号,消息提示用序列号
  161. device_info_qs = Device_Info.objects.filter(UID=uid).values('serial_number', 'Type')
  162. serial_number = device_info_qs[0]['serial_number']
  163. device_type = device_info_qs[0]['Type']
  164. if serial_number:
  165. device_name = CommonService.get_full_serial_number(uid, serial_number, device_type)
  166. else:
  167. device_name = uid
  168. sys_msg_text_list = [
  169. '温馨提示:尊敬的客户,您的{}设备在{}已成功购买云存套餐'.format(device_name, date_time),
  170. 'Dear customer,you already subscribed the cloud storage package successfully for device {} on '.
  171. format(device_name, time.strftime('%b %dth,%Y', time.localtime()))]
  172. cls.do_vod_msg_notice(uid, user_id, lang, sys_msg_text_list)
  173. redis_obj.del_data(redis_key)
  174. pay_result_url = CommonService.get_payment_status_url(lang, 'success')
  175. return response.json(0, {'url': pay_result_url})
  176. except Exception as e:
  177. redis_obj.del_data(redis_key)
  178. LOGGER.info('苹果内购认证交易接口异常:{}'.
  179. format('error_line:{}, error_msg:{}'.format(e.__traceback__.tb_lineno, repr(e))))
  180. pay_result_url = CommonService.get_payment_status_url(lang, 'fail')
  181. return response.json(0, {'url': pay_result_url})
  182. @classmethod
  183. def do_vod_msg_notice(cls, uid, user_id, lang, sys_msg_text_list):
  184. """
  185. 发送云存开通信息
  186. @param uid: uid
  187. @param user_id: 用户id
  188. @param lang: 语言
  189. @param sys_msg_text_list: 消息列表
  190. @return: response
  191. """
  192. if lang == 'cn':
  193. sys_msg_text = sys_msg_text_list[0]
  194. else:
  195. sys_msg_text = sys_msg_text_list[1]
  196. now_time = int(time.time())
  197. create_data = {
  198. 'userID_id': user_id,
  199. 'msg': sys_msg_text,
  200. 'addTime': now_time,
  201. 'updTime': now_time,
  202. 'uid': uid,
  203. 'eventType': 0
  204. }
  205. SysMsgModel.objects.create(**create_data)
  206. # 不接收邮件用户
  207. if user_id == '167015836969813800138000':
  208. return
  209. user_qs = Device_User.objects.filter(userID=user_id)
  210. if user_qs.exists():
  211. user = user_qs.first()
  212. username = user.username
  213. data_valid = DataValid()
  214. if data_valid.email_validate(username):
  215. S3Email().faEmail(sys_msg_text, username)
  216. elif data_valid.mobile_validate(username):
  217. # 如果存在序列号,消息提示用序列号
  218. device_info_qs = Device_Info.objects.filter(UID=uid).values('serial_number', 'Type')
  219. if device_info_qs.exists():
  220. serial_number = device_info_qs[0]['serial_number']
  221. device_type = device_info_qs[0]['Type']
  222. if serial_number:
  223. device_name = CommonService.get_full_serial_number(uid, serial_number, device_type)
  224. else:
  225. device_name = uid
  226. params = '{"devname":"%s","submittime":"%s"}' % (
  227. device_name, time.strftime("%Y-%m-%d", time.localtime()))
  228. cls.send_message(username, params, 'SMS_219738485')
  229. @staticmethod
  230. def send_message(phone, params, temp_msg):
  231. """
  232. 发送手机消息
  233. @param phone: 用户名
  234. @param params: 消息参数
  235. @param temp_msg: sms码
  236. """
  237. sign_ms = '周视'
  238. ali_sms = AliSmsObject()
  239. ali_sms.send_code_sms_cloud(phone=phone, params=params, sign_name=sign_ms, temp_msg=temp_msg)
  240. @classmethod
  241. def app_store_server_notifications(cls, request):
  242. logger = logging.getLogger('apple_pay')
  243. logger.info('App Store服务器通知请求类型:{}'.format(request.method))
  244. logger.info('App Store服务器通知参数:{}'.format(request.POST))
  245. logger.info('App Store服务器通知请求body:{}'.format(request.body))
  246. payload = json.loads(request.body.decode('utf-8'))
  247. logger.info('App Store服务器通知payload:{}'.format(payload))
  248. # 获取 signedPayload
  249. signed_payload = payload.get('signedPayload')
  250. if not signed_payload:
  251. return HttpResponse(status=400)
  252. bundle_id = 'com.ansjer.zccloud'
  253. environment = ENV
  254. root_certificates = []
  255. for cert_name in [
  256. 'AppleIncRootCertificate.cer', 'AppleComputerRootCertificate.cer',
  257. 'AppleRootCA-G2.cer', 'AppleRootCA-G3.cer'
  258. ]:
  259. cert_path = '{}/Ansjer/file/in_app_purchase/{}'.format(BASE_DIR, cert_name)
  260. with open(cert_path, 'rb') as file:
  261. # 读取文件内容
  262. root_certificates.append(file.read())
  263. enable_online_checks = True
  264. app_apple_id = 1355964934 # 生产环境必需
  265. # 验证签名并解码 payload
  266. verifier = SignedDataVerifier(
  267. root_certificates, enable_online_checks, environment, bundle_id, app_apple_id)
  268. decoded_payload = verifier.verify_and_decode_notification(signed_payload)
  269. logger.info('App Store服务器通知decoded_payload: {}'.format(decoded_payload))
  270. status_code = 200
  271. if str(decoded_payload.rawNotificationType) == "REFUND":
  272. # 一种通知类型,表示 App Store 成功退还了消耗性应用内购买、非消耗性应用内购买、自动续订或不可续订的交易。
  273. # revocationDate 包含退款交易的时间戳。originalTransactionId 和 productId 用于标识原始交易和产品。revocationReason 包含原因。
  274. # 要请求客户所有退款交易的列表,请参阅 App Store 服务器 API 中的获取退款历史记录。
  275. # 1. 找套餐 使用 transaction_id 找orders
  276. decoded_transaction_information = verifier.verify_and_decode_signed_transaction(
  277. decoded_payload.data.signedTransactionInfo)
  278. transaction_id = decoded_transaction_information.transactionId
  279. logger.info('App Store服务器通知退款, transaction_id:{}'.format(transaction_id))
  280. orders_qs = Order_Model.objects.filter(transaction_id=transaction_id)
  281. # 2. 查找云存套餐使用表 和 云存套餐
  282. if orders_qs.exists():
  283. orders_qs.update(status=11)
  284. orderID = orders_qs[0].orderID
  285. uid = orders_qs[0].UID
  286. user_id = orders_qs[0].userID
  287. # 3. 未使用则删除未使用套餐表,已使用过则删除设备正在使用套餐,并关闭设备云存
  288. uid_bucket_qs = UID_Bucket.objects.filter(uid=uid, orderId=orderID, use_status=1, endTime__gt=int(time.time()))
  289. unused_uid_meal_qs = Unused_Uid_Meal.objects.filter(order_id=orderID)
  290. ai_service_qs = AiService.objects.filter(uid=uid, orderId=orderID, use_status=1, endTime__gt=int(time.time()))
  291. if unused_uid_meal_qs.exists():
  292. unused_uid_meal_qs.delete()
  293. if uid_bucket_qs.exists():
  294. uid_bucket_qs.update(status=0, use_status=2, endTime=int(time.time()), updateTime=int(time.time()))
  295. if ai_service_qs.exists():
  296. ai_service_qs.update(detect_status=0, use_status=2, endTime=int(time.time()), updTime=int(time.time()))
  297. # 关闭ai
  298. msg = {'commandType': 'AIDisable'}
  299. thing_name = CommonService.query_serial_with_uid(uid) # 存在序列号则为使用序列号作为物品名
  300. topic_name = 'ansjer/generic/{}'.format(thing_name)
  301. req_success = CommonService.req_publish_mqtt_msg(thing_name, topic_name, msg)
  302. LOGGER.info(f'App Store服务器通知用户退款, 关闭AI:{req_success}')
  303. # 4.发送邮件告知用户退款
  304. email_content = f'{CONFIG_INFO}用户{user_id}, 订单:{orderID}, 设备{uid}退款'
  305. S3Email().faEmail(email_content, 'servers@ansjer.com')
  306. else:
  307. if CONFIG_INFO == CONFIG_US:
  308. url = "https://api.zositeche.com/inAppPurchase/AppStoreServerNotifications"
  309. eur_response = requests.post(url=url, json=json.loads(request.body))
  310. status_code = eur_response.status_code
  311. return HttpResponse(status=status_code)