WeixinService.php 3.2 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495
  1. <?php
  2. namespace App\Service\Weixin;
  3. use App\Model\Settings;
  4. use App\Service\Service;
  5. use Illuminate\Support\Facades\Redis;
  6. class WeixinService extends Service
  7. {
  8. public function getToken(){
  9. $config = config('qingyaoWx');
  10. $token_key = $config['redis_key'];
  11. $token = Redis::get($token_key);
  12. if(empty($token)){
  13. $url = sprintf($config['get_token'], $config['appid'], $config['appsecret']);
  14. $res = $this->curlOpen($url);
  15. $res = json_decode($res,true);
  16. if(isset($res['errmsg'])) return [false, $res['errmsg']];
  17. if(! isset($res['access_token'])) return [false, 'request error'];
  18. $token = $res['access_token'];
  19. $expire_time = $res['expires_in']-300;
  20. Redis::set($token_key,$token);
  21. Redis::expire($token_key, $expire_time);
  22. return [true,$token];
  23. }
  24. return [true, $token];
  25. }
  26. public function getPublicWxArticle($data){
  27. list($status, $msg) = $this->rule($data);
  28. if(! $status) {
  29. file_put_contents('record_ip.txt',date("Y-m-d H:i:s",time()).json_encode($data) . PHP_EOL."来源IP".$msg.PHP_EOL,8);
  30. return [false, 'IP未入白名单'];
  31. }
  32. list($status, $msg) = $this->getToken();
  33. if(! $status) return [false, $msg];
  34. $config = config('qingyaoWx');
  35. $url = sprintf($config['get_article'], $msg);
  36. $offset = empty($data['page_index']) ? 1 : $data['page_index'] - 1;
  37. $count = empty($data['page_size']) || $data['page_size'] > 10 ? 10 : $data['page_size'];
  38. $post = [
  39. 'offset' => $offset,
  40. 'count' => $count,
  41. 'no_content' => 0,
  42. ];
  43. $result = $this->curlOpen($url, ['post' => json_encode($post)]);
  44. $result = json_decode($result,true);
  45. if(isset($result['errmsg'])) return [false, $result['errmsg']];
  46. return [true, ['data' => $result['item'] ?? [], 'total' => $result['total_count'], 'data_count' => $result['item_count']]];
  47. }
  48. public function rule($data){
  49. // 获取用户的IP地址
  50. $userIP = $_SERVER['REMOTE_ADDR'];
  51. // 获取设置的IP地址
  52. $allowedIPs = $this->allowedIPs();
  53. if(empty($allowedIPs)) return [false, $userIP];
  54. // 校验用户IP是否在允许的范围内
  55. $isValidIP = false;
  56. foreach ($allowedIPs as $allowedIP) {
  57. if (strpos($allowedIP, '/') !== false) {
  58. // IP段表示法校验
  59. list($subnet, $mask) = explode('/', $allowedIP);
  60. if ((ip2long($userIP) & ~((1 << (32 - $mask)) - 1)) == ip2long($subnet)) {
  61. $isValidIP = true;
  62. break;
  63. }
  64. } else {
  65. // 单个IP地址校验
  66. if ($allowedIP === $userIP) {
  67. $isValidIP = true;
  68. break;
  69. }
  70. }
  71. }
  72. return [$isValidIP, $userIP];
  73. }
  74. public function allowedIPs(){
  75. $allowedIPs = Settings::where('setting_name','allowedIPs')->first();
  76. if(empty($allowedIPs) || empty($allowedIPs->setting_value)) return [];
  77. return explode(',',$allowedIPs->setting_value);
  78. }
  79. }