SignatureHelper.php 3.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899
  1. <?php
  2. namespace alisms;
  3. // namespace Aliyun\DySDKLite;
  4. /**
  5. * 签名助手 2017/11/19
  6. *
  7. * Class SignatureHelper
  8. */
  9. class SignatureHelper {
  10. /**
  11. * 生成签名并发起请求
  12. *
  13. * @param $accessKeyId string AccessKeyId (https://ak-console.aliyun.com/)
  14. * @param $accessKeySecret string AccessKeySecret
  15. * @param $domain string API接口所在域名
  16. * @param $params array API具体参数
  17. * @param $security boolean 使用https
  18. * @param $method boolean 使用GET或POST方法请求,VPC仅支持POST
  19. * @return bool|\stdClass 返回API接口调用结果,当发生错误时返回false
  20. */
  21. public function request($accessKeyId, $accessKeySecret, $domain, $params, $security=false, $method='POST') {
  22. $apiParams = array_merge(array (
  23. "SignatureMethod" => "HMAC-SHA1",
  24. "SignatureNonce" => uniqid(mt_rand(0,0xffff), true),
  25. "SignatureVersion" => "1.0",
  26. "AccessKeyId" => $accessKeyId,
  27. "Timestamp" => gmdate("Y-m-d\TH:i:s\Z"),
  28. "Format" => "JSON",
  29. ), $params);
  30. ksort($apiParams);
  31. $sortedQueryStringTmp = "";
  32. foreach ($apiParams as $key => $value) {
  33. $sortedQueryStringTmp .= "&" . $this->encode($key) . "=" . $this->encode($value);
  34. }
  35. $stringToSign = "${method}&%2F&" . $this->encode(substr($sortedQueryStringTmp, 1));
  36. $sign = base64_encode(hash_hmac("sha1", $stringToSign, $accessKeySecret . "&",true));
  37. $signature = $this->encode($sign);
  38. $url = ($security ? 'https' : 'http')."://{$domain}/";
  39. try {
  40. $content = $this->fetchContent($url, $method, "Signature={$signature}{$sortedQueryStringTmp}");
  41. return json_decode($content);
  42. } catch( \Exception $e) {
  43. return false;
  44. }
  45. }
  46. private function encode($str)
  47. {
  48. $res = urlencode($str);
  49. $res = preg_replace("/\+/", "%20", $res);
  50. $res = preg_replace("/\*/", "%2A", $res);
  51. $res = preg_replace("/%7E/", "~", $res);
  52. return $res;
  53. }
  54. private function fetchContent($url, $method, $body) {
  55. $ch = curl_init();
  56. if($method == 'POST') {
  57. curl_setopt($ch, CURLOPT_POST, 1);//post提交方式
  58. curl_setopt($ch, CURLOPT_POSTFIELDS, $body);
  59. } else {
  60. $url .= '?'.$body;
  61. }
  62. curl_setopt($ch, CURLOPT_URL, $url);
  63. curl_setopt($ch, CURLOPT_TIMEOUT, 5);
  64. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  65. curl_setopt($ch, CURLOPT_HTTPHEADER, array(
  66. "x-sdk-client" => "php/2.0.0"
  67. ));
  68. if(substr($url, 0,5) == 'https') {
  69. curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  70. curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, false);
  71. }
  72. $rtn = curl_exec($ch);
  73. if($rtn === false) {
  74. // 大多由设置等原因引起,一般无法保障后续逻辑正常执行,
  75. // 所以这里触发的是E_USER_ERROR,会终止脚本执行,无法被try...catch捕获,需要用户排查环境、网络等故障
  76. trigger_error("[CURL_" . curl_errno($ch) . "]: " . curl_error($ch), E_USER_ERROR);
  77. }
  78. curl_close($ch);
  79. return $rtn;
  80. }
  81. }