PreProc.php 8.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197
  1. <?php
  2. namespace loyalsoft;
  3. /**
  4. * Description of PreProc
  5. * 预处理流程
  6. * 提供数据包预处理机制、加解密、合法化判定等等
  7. * @author jgao
  8. */
  9. class PreProc {
  10. /**
  11. * tk判定
  12. * @param Req $req
  13. * @return int 返回操作结果,0:成功,其余为错误码
  14. */
  15. public static function tk($req) {
  16. my_Assert(!config::Inst()->isBaned($req->uid), ErrCode::err_server_updating); # 检查封号
  17. $ret = self::checkVersion($req); # 检查客户端版本
  18. my_Assert(ErrCode::ok == $ret, $ret); # 客户端版本过低
  19. # 检查是否处于更新阶段,暂停对玩家请求的响应。
  20. if (GAME_ONLINE # 外网
  21. && self::isUpdating() # 更新
  22. && !config::Inst()->isTester($req->uid)) { # 排除测试号
  23. return ErrCode::err_server_updating;
  24. }
  25. $ssd = GameConfig::service_schedule_getItem(1); # 服务计划(固定只有1条)
  26. if (now() > $ssd->startts && now() < $ssd->endts) { # 在维护期间
  27. // return ErrCode::err_server_maintaining;
  28. Err(ErrCode::err_server_maintaining, $ssd->reason);
  29. }
  30. // if (!GAME_ONLINE || config::Inst()->isTester($req->uid)) { # 内网不做token校验操作
  31. return ErrCode::ok;
  32. // }
  33. if ($req->cmd == CmdCode::cmd_user_getzonelist) { # 如果是获取分区列表的消息初始化tk信息,不做校验
  34. $siginfo = SigInfo::InitSig($req); # 初始化sigInfo
  35. $req->sig = $siginfo->sig; # 每次resp会从req上取sig值返回
  36. $req->msgid = PreProc::createMsgId($siginfo); # 初始化msgid
  37. $siginfo->msgid = SigInfo::calcMsgid($siginfo, $req); # sigInfo和本次的$req身上的msgid,用于下次消息校验,
  38. self::updateUserSigInfo($req, $siginfo); # 写入Cmem,下次登录的时候校验
  39. return ErrCode::ok;
  40. }
  41. # 其余消息,全部进行校验
  42. $siginfo = self::getUserSigInfo($req); # 1.从Cmem读取证书验证信息
  43. if ($siginfo == null) {
  44. return ErrCode::err_signo;
  45. }
  46. if ($req->sig != $siginfo->sig) { # 2.如果一次性证书不一致,则证明已经在其他地方登录
  47. return ErrCode::err_anotherlogin;
  48. }
  49. if ($siginfo->msgid != SigInfo::calcMsgid($siginfo, $req)) { # 3.如果消息id错位,则证明该条消息非法
  50. return ErrCode::err_illegal;
  51. }
  52. if (now() - $req->ts > OFFSET_MSGTIME) { # 4.如果服务端客户端时间戳超过规定误差,则消息非法
  53. return ErrCode::err_outtime;
  54. }
  55. # 更新siginfo
  56. $siginfo->msgnum++; # 消息编号递增
  57. $req->msgid = PreProc::createMsgId($siginfo); # ...
  58. $siginfo->msgid = SigInfo::calcMsgid($siginfo, $req); # 计算新的
  59. self::updateUserSigInfo($req, $siginfo); # 回写siginfo
  60. return ErrCode::ok; # 返回操作结果,0:成功,其余为错误码
  61. }
  62. public static function createMsgId($siginfo) {
  63. $temp = 8888 - $siginfo->msgnum;
  64. return substr(md5(substr($siginfo->uid, 2, 20) . $temp . substr($siginfo->sig, 5, 15)), 7, 23);
  65. }
  66. /**
  67. * 检查客户端版本是否需要强制更新
  68. * @param Req $req
  69. * @return int ErrCode
  70. */
  71. public static function checkVersion($req) {
  72. $clientVer = $req->clientVer;
  73. $ClientVerArr = explode('.', $clientVer);
  74. $ServerVerArr = explode('.', glc()->clientVer);
  75. if ($ClientVerArr[0] < $ServerVerArr[0] # # 主版本号小
  76. || $ClientVerArr[1] < $ServerVerArr[1]) { # 次版本号小
  77. $req->updateInfo = GameConfig::clientVersionHistory_getItem(glc()->clientVer);
  78. $req->updateInfo->newVer = glc()->clientVer;
  79. return ErrCode::clientversionlow_err; # 返回错误码,强制更新1
  80. }
  81. if ($ClientVerArr[0] == $ServerVerArr[0] # 主版本号相同
  82. && $ClientVerArr[1] == $ServerVerArr[1] # 次版本号相同
  83. && $ClientVerArr[2] < $ServerVerArr[2] && # # 修订版本号不一致, 提示更新
  84. ($req->cmd == CmdCode::cmd_user_getzonelist # 只在拉取分区列表的时候提示下得了.又不是强更
  85. || $req->cmd == CmdCode::cmd_user_gameconstinfo)) { # 或者是拉取常量信息也行
  86. $req->updateInfo = GameConfig::clientVersionHistory_getItem(glc()->clientVer); # 提示更新,可以暂不更新,不返回错误码了
  87. $req->updateInfo->newVer = glc()->clientVer;
  88. }
  89. return ErrCode::ok;
  90. }
  91. /**
  92. * 返回是否处于更新中
  93. * @return boolean
  94. */
  95. public static function isUpdating() {
  96. $ts = now();
  97. if ($ts > glc()->updatingBeginTs && $ts < glc()->updatingEndTs) {
  98. return true;
  99. }
  100. return false;
  101. }
  102. /**
  103. * 把玩家的SigInfo写入数据库
  104. * @param Req $req
  105. * @param SigInfo $siginfo
  106. */
  107. public static function updateUserSigInfo($req, $siginfo) {
  108. gMem()->set(MemKey_User::Sig($req->zoneid, $siginfo->uid), $siginfo);
  109. }
  110. /**
  111. * 从Cmem中读取玩家的SigInfo数据
  112. * @param Req $req
  113. * @return SigInfo
  114. */
  115. public static function getUserSigInfo($req) {
  116. return gMem()->get(MemKey_User::Sig($req->zoneid, $req->uid));
  117. }
  118. }
  119. /**
  120. * 校验信息
  121. */
  122. class SigInfo {
  123. public $uid;
  124. public $zoneid;
  125. public $sig;
  126. public $msgnum;
  127. public $msgid;
  128. /**
  129. *
  130. * @param SigInfo $siginfo
  131. * @param Req $req
  132. */
  133. public static function calcMsgid($siginfo, $req) {
  134. return substr(md5($siginfo->sig . $req->msgid), 0, 32);
  135. }
  136. /**
  137. * 玩家登陆的时候初始化sig
  138. * @param Req $req
  139. */
  140. public static function InitSig($req) {
  141. $paras = array();
  142. $paras["openid"] = $req->uid;
  143. $paras["ep"] = HttpUtil::getClientEP();
  144. $paras["ts"] = now();
  145. $self_url_path = "atomsoft.com";
  146. $siginfo = new SigInfo();
  147. $siginfo->uid = $req->uid;
  148. $siginfo->zoneid = $req->zoneid;
  149. $siginfo->sig = self::makeSig('post', $self_url_path, $paras, PROJECTNAME);
  150. $siginfo->msgnum = 0;
  151. return $siginfo;
  152. }
  153. /**
  154. * 生成签名
  155. *
  156. * @param string $method 请求方法 "get" or "post"
  157. * @param string $url_path
  158. * @param array $params 表单参数
  159. * @param string $secret 密钥
  160. */
  161. public static function makeSig($method, $url_path, $params, $secret) {
  162. $mk = self::makeSource($method, $url_path, $params);
  163. $my_sign = hash_hmac("sha1", $mk, strtr($secret, '-_', '+/'), true);
  164. $my_sign = base64_encode($my_sign);
  165. return $my_sign;
  166. }
  167. private static function makeSource($method, $url_path, $params) {
  168. $strs = strtoupper($method) . '&' . rawurlencode($url_path) . '&';
  169. ksort($params);
  170. $query_string = array();
  171. foreach ($params as $key => $val) {
  172. array_push($query_string, $key . '=' . $val);
  173. }
  174. $query_string = join('&', $query_string);
  175. return $strs . str_replace('~', '%7E', rawurlencode($query_string));
  176. }
  177. }