http.go 5.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166
  1. package asign
  2. import (
  3. "bytes"
  4. "crypto"
  5. "crypto/md5"
  6. "crypto/rand"
  7. "crypto/rsa"
  8. "crypto/sha1"
  9. "crypto/x509"
  10. "encoding/base64"
  11. "encoding/hex"
  12. "encoding/pem"
  13. "fmt"
  14. "io"
  15. "mime/multipart"
  16. "mtp2_if/config"
  17. "mtp2_if/logger"
  18. "net/http"
  19. "sort"
  20. "strconv"
  21. "strings"
  22. "time"
  23. )
  24. // HttpPost
  25. //
  26. // 爱签HttpPost请求方法
  27. func HttpPost(apiUrl string, bizData map[string]interface{}) (rspBody []byte, err error) {
  28. appId := config.SerCfg.AsignCfg.AppId
  29. privateKey := fmt.Sprintf("-----BEGIN PRIVATE KEY-----\n%s\n-----END PRIVATE KEY-----", config.SerCfg.AsignCfg.PrivateKey)
  30. // fuck asign dev.
  31. timestamp := strconv.Itoa(int(time.Now().UnixMilli() + 1000*60))
  32. // 签名
  33. sortedData := sortMapByKey(bizData)
  34. signature, err := getSignature(sortedData, appId, timestamp, privateKey)
  35. if err != nil {
  36. logger.GetLogger().Errorf("[asign.HttpPost] 签名失败:" + err.Error())
  37. return
  38. }
  39. // 构建form-data请求参数
  40. var requestBody bytes.Buffer
  41. multipartWriter := multipart.NewWriter(&requestBody)
  42. multipartWriter.WriteField("appId", appId)
  43. multipartWriter.WriteField("timestamp", timestamp)
  44. multipartWriter.WriteField("bizData", sortedData)
  45. multipartWriter.Close()
  46. // 构建请求
  47. req, err := http.NewRequest("POST", apiUrl, &requestBody)
  48. // 设置请求头
  49. req.Header.Set("sign", signature)
  50. req.Header.Set("timestamp", timestamp)
  51. req.Header.Set("Content-Type", multipartWriter.FormDataContentType())
  52. // 调用接口
  53. client := &http.Client{}
  54. rsp, err := client.Do(req)
  55. if err != nil {
  56. logger.GetLogger().Errorf("[asign.HttpPost] 调用接口失败:" + err.Error())
  57. return
  58. }
  59. defer rsp.Body.Close()
  60. rspBody, err = io.ReadAll(rsp.Body)
  61. return
  62. }
  63. // 签名规范:
  64. // 1、表单提交方式:form-data
  65. // 示例:1B2M2Y8AsgTpgAmY7PhCfg==
  66. // 2、请求头部参数
  67. // 参数1:sign(签名值,具体算法参考一下的前面算法)
  68. // 参数2:timestamp(时间戳,13位)
  69. // 3、请求体参数:
  70. // 参数1:appId(appId值,每个接入者唯一一个)
  71. // 参数2:timestamp(时间戳,13位,与上述一致)
  72. // 参数3:bizData(json字符串,举个例子,比方说要传合同编号如:{"contractNo":"0001"})
  73. // 4、签名算法:
  74. // 4.1、将上述3所属的bizData(json字符串),按照阿拉伯字母排序(如:{"ba":1,"ac":2}--->{"ac":2,"ba":1}),
  75. // 4.2、将4.1排序后的字符串,将【bizData+md5(bizData)+ appId + timestatmp】拼接后利用RSA非对称加密算法(SHA1withRSA),计算出最后的签名sign,对其base64编码,放入head的key(sign)中。
  76. //
  77. // String sign ;
  78. // String rsaSuffix = jsonStr + DigestUtils.md5Hex ( jsonStr ) + appId + timestatmp ;
  79. // byte [] bytes = RSAUtils.generateSHA1withRSASignature ( rsaSuffix, privateKey ) ;
  80. // try {
  81. // sign = Base64Utils.encode ( bytes ) ;
  82. // sign = sign.replaceAll ( " \r\n" , "" ) ;
  83. // } catch ( Exception e ) {
  84. // log.error( "sdk异常", e ) ;
  85. // return ApiRespBody.create ( ApiResponseInfo. _ERROR ) ;
  86. // }
  87. func getSignature(sortedData string, appId, timestamp, privateKey string) (signature string, err error) {
  88. pem10, _ := pem.Decode([]byte(privateKey))
  89. privateKey10I, _ := x509.ParsePKCS8PrivateKey(pem10.Bytes)
  90. privateKey10 := privateKey10I.(*rsa.PrivateKey)
  91. // md5(bizData)
  92. m := md5.New()
  93. m.Write([]byte(sortedData))
  94. bdMd5Hx := hex.EncodeToString(m.Sum(nil))
  95. // 待签内容
  96. message := sortedData + bdMd5Hx + appId + timestamp
  97. h := sha1.New()
  98. h.Write([]byte(message))
  99. sum := h.Sum(nil)
  100. // 使用私钥进行签名
  101. sign, err := rsa.SignPKCS1v15(rand.Reader, privateKey10, crypto.SHA1, sum)
  102. if err != nil {
  103. fmt.Println("Error signing:", err)
  104. return
  105. }
  106. // fmt.Println(signature)
  107. signature = base64.StdEncoding.EncodeToString(sign)
  108. signature = strings.ReplaceAll(signature, "\r\n", "")
  109. return
  110. }
  111. // sortMapByKey 按key排序map返回string
  112. func sortMapByKey(data map[string]interface{}) (sortedData string) {
  113. keys := make([]string, 0, len(data))
  114. for k := range data {
  115. keys = append(keys, k)
  116. }
  117. sort.Strings(keys)
  118. for i, k := range keys {
  119. if i > 0 {
  120. sortedData += ","
  121. }
  122. switch data[k].(type) {
  123. case string:
  124. sortedData += fmt.Sprintf(`"%s":"%s"`, k, data[k].(string))
  125. case map[string]interface{}:
  126. sortedData += fmt.Sprintf(`"%s":%s`, k, sortMapByKey(data[k].(map[string]interface{})))
  127. case []interface{}:
  128. list := data[k].([]interface{})
  129. sortedData += fmt.Sprintf(`"%s":[`, k)
  130. for j, item := range list {
  131. if j > 0 {
  132. sortedData += ","
  133. }
  134. sortedData += sortMapByKey(item.(map[string]interface{}))
  135. }
  136. sortedData += "]"
  137. default:
  138. sortedData += fmt.Sprintf(`"%s":%v`, k, data[k])
  139. }
  140. }
  141. return fmt.Sprintf("{%s}", sortedData)
  142. }
  143. // func main() {
  144. // datas := make(map[string]interface{})
  145. // json.Unmarshal([]byte(`{"account":"12345","name":"张三","map":{"ccc":"adfasd","aaa":34355},"list":[{"ccc":"adfasd","aaa":34355},{"dddd":"8ghg","kkkk":12.55}]}`), &datas)
  146. // getSignature(datas, "290912417", "1701866011940",
  147. // `-----BEGIN PRIVATE KEY-----
  148. // MIIBUwIBADANBgkqhkiG9w0BAQEFAASCAT0wggE5AgEAAkEAkMD+72J6iAF0ZNV+3t628lsRHfJ80nKZWK5/C7Pg+AZmOIzJlwHsKhRzCvxoxqYHQprhiFzW9l73v9vD9l1JYwIDAQABAkBVijccr01JYdKuY5t9iI8D2NzcnZc1pZMI3NUmzT18Uyg7b9CUvGHlLeg/gdT4QtVd7wIzHYCY4letEcEMh54BAiEAwzNWusj5XiLmty7PI0Hbakx4HtcND1+P0UHLEWqWOuECIQC91zQuL7nStgGzT3HvaeBB5Ouapa39fHRm2nCjHaxwwwIgRR2XdvmUOj23XWMomr5F14SN/7V7fVcD0D8wjNElsmECIDYavV5kb7tj7/wgqkInlKhzC8rZaUsTS0F9BBkY/eptAiAQJ8Saz8YlMIESdHMxANGSog01fECbcZqLFMuNf8SorA==
  149. // -----END PRIVATE KEY-----`)
  150. // }