Java 苹果内购

controller代码

@PostMapping("chongzhi")
    @ApiOperation("苹果内购支付返回")
    public void iosConfirmOrder(String receipt_data,Integer payMoney) {
            //首先调用正式环境查看验证结果;
            String verifyResult = IosVerifyUtil.buyAppVerify(receipt_data, 1);//type:1->正式环境,发送平台验证
            if (verifyResult == null) {
                //如果验证结果不存在;提示前端;订单信息不存在;
                return ResultModel.error("充值验证不通过!");
            }
            JSONObject job = JSONObject.parseObject(verifyResult);
            String states = job.getString("status");
            //states为21007表示,收据信息是沙盒测试用;需要请求沙盒测试地址对凭证进行校验
            if ("21007".equals(states)) {
                //如果正式环境校验不成功,则请求沙盒测试地址对凭证进行校验
                verifyResult = IosVerifyUtil.buyAppVerify(receipt_data, 0);//type:0->沙盒测试,发送平台验证
                job = JSONObject.parseObject(verifyResult);
                states = job.getString("status");
            }
            if (states.equals("0")) {
                // 前端所提供的收据是有效的,验证成功
            
                String r_receipt = job.getString("receipt");
                JSONObject returnJson = JSONObject.parseObject(r_receipt);
                String in_app = returnJson.getString("in_app");
                JSONArray jsonArray = JSONArray.parseArray(in_app);
                JSONObject in_appJson = jsonArray.getJSONObject(jsonArray.size() - 1);
                System.out.println("IOS支付验证结果3:" + in_appJson);
                String product_id = in_appJson.getString("product_id");//产品ID
                String transaction_id = in_appJson.getString("transaction_id");   // 订单号
                 //业务代码
              
                 //支付成功
            } else {
                //支付失败
            }
       
    }

工具类

import javax.net.ssl.*;
import java.io.BufferedOutputStream;
import java.io.BufferedReader;
import java.io.InputStream;
import java.io.InputStreamReader;
import java.net.URL;
import java.security.cert.CertificateException;
import java.security.cert.X509Certificate;
import java.util.Locale;

public class IosVerifyUtil {
    private static class TrustAnyTrustManager implements X509TrustManager {

        public void checkClientTrusted(X509Certificate[] chain, String authType) throws CertificateException {
        }

        public void checkServerTrusted(X509Certificate[] chain, String authType) throws CertificateException {
        }

        public X509Certificate[] getAcceptedIssuers() {
            return new X509Certificate[] {};
        }
    }

    private static class TrustAnyHostnameVerifier implements HostnameVerifier {
        public boolean verify(String hostname, SSLSession session) {
            return true;
        }
    }

    private static final String url_sandbox = "https://sandbox.itunes.apple.com/verifyReceipt";
    private static final String url_verify = "https://buy.itunes.apple.com/verifyReceipt";

    /**
     * 苹果服务器验证
     *
     * @param receipt
     *            账单
     * @url 要验证的地址
     * @return null 或返回结果 沙盒 https://sandbox.itunes.apple.com/verifyReceipt
     *
     */
    public static String buyAppVerify(String receipt,int type) {
        //环境判断 线上/开发环境用不同的请求链接
        String url = "";
        if(type==0){
            url = url_sandbox; //沙盒测试
        }else{
            url = url_verify; //线上测试
        }
        //String url = EnvUtils.isOnline() ?url_verify : url_sandbox;

        try {
            SSLContext sc = SSLContext.getInstance("SSL");
            sc.init(null, new TrustManager[] { new TrustAnyTrustManager() }, new java.security.SecureRandom());
            URL console = new URL(url);
            HttpsURLConnection conn = (HttpsURLConnection) console.openConnection();
            conn.setSSLSocketFactory(sc.getSocketFactory());
            conn.setHostnameVerifier(new TrustAnyHostnameVerifier());
            conn.setRequestMethod("POST");
            conn.setRequestProperty("content-type", "text/json");
            conn.setRequestProperty("Proxy-Connection", "Keep-Alive");
            conn.setDoInput(true);
            conn.setDoOutput(true);
            BufferedOutputStream hurlBufOus = new BufferedOutputStream(conn.getOutputStream());

            String str = String.format(Locale.CHINA, "{\"receipt-data\":\"" + receipt + "\"}");//拼成固定的格式传给平台
            hurlBufOus.write(str.getBytes());
            hurlBufOus.flush();

            InputStream is = conn.getInputStream();
            BufferedReader reader = new BufferedReader(new InputStreamReader(is));
            String line = null;
            StringBuffer sb = new StringBuffer();
            while ((line = reader.readLine()) != null) {
                sb.append(line);
            }

            return sb.toString();
        } catch (Exception ex) {
            System.out.println("苹果服务器异常");
            ex.printStackTrace();
        }
        return null;
    }

    /**
     * 用BASE64加密
     *
     * @param str
     * @return
     */
    public static String getBASE64(String str) {
        byte[] b = str.getBytes();
        String s = null;
        if (b != null) {
            s = new sun.misc.BASE64Encoder().encode(b);
        }
        return s;
    }
}

 

  • 0
    点赞
  • 2
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
对于Java苹果内购回调signedPayload的解密,可以使用Java代码中的Base64解码和RSA解密方法进行处理。示例如下: ```java import java.security.KeyFactory; import java.security.PublicKey; import java.security.spec.X509EncodedKeySpec; import javax.crypto.Cipher; import org.apache.commons.codec.binary.Base64; public class AppleIAPUtils { // 苹果支付公钥 private static final String APPLE_PUBLIC_KEY = "MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhdEEU6HmI6QHyUZ6x+ZDyt9CErA8gVrJ+Lw2yVUjz6uMS7VUgHl1cXZ+lEC28ycg2R+sC/DLKPssI/aD+LbEJ3pT1T/lfsNcX9Zflcjhq3YSNb1YZJ/1JKbd+j/0W0zQztRtCYa5PQm9fH/VeO8a5D46hijwCpBFJlnY4+L77v4z5G2HbX5h5g8RUvS46VPi4Cwz7e36oyY88Yv4/f4/dhJx9Z+SxLge3q3p+rnFJnpvgbOhHEtYl2tRfn/h/TZhNc1ULX0a0oQaR7/SHjkkTpnctoA+ud71NqEMNz1HzxIpylsX9FgO8WyVrJLf6V7ML9Q2hjGcZSdA0wIDAQAB"; /** * 对signedPayload进行解密 * * @param signedPayload 苹果服务器返回的加密字符串 * @return 解密后的字符串 */ public static String decryptSignedPayload(String signedPayload) throws Exception { // 先进行Base64解码 byte[] payloadBytes = Base64.decodeBase64(signedPayload); // 使用RSA算法解密 Cipher cipher = Cipher.getInstance("RSA/ECB/PKCS1Padding"); PublicKey publicKey = getPublicKeyFromX509(); cipher.init(Cipher.DECRYPT_MODE, publicKey); byte[] resultBytes = cipher.doFinal(payloadBytes); // 返回解密后的字符串 return new String(resultBytes); } /** * 获取苹果支付公钥 */ private static PublicKey getPublicKeyFromX509() throws Exception { byte[] keyBytes = Base64.decodeBase64(APPLE_PUBLIC_KEY); X509EncodedKeySpec keySpec = new X509EncodedKeySpec(keyBytes); KeyFactory keyFactory = KeyFactory.getInstance("RSA"); return keyFactory.generatePublic(keySpec); } } ``` 以上代码实现了对苹果内购回调signedPayload进行解密的过程,其中使用了Base64解码和RSA解密两种算法。注意,在实际使用过程中需要替换APPLE_PUBLIC_KEY为自己应用的公钥。
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值