PreProc.php 8.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197
  1. <?php
  2. namespace loyalsoft;
  3. /**
  4. * Description of PreProc
  5. * 预处理流程
  6. * 提供数据包预处理机制、加解密、合法化判定等等
  7. * @author jgao
  8. */
  9. class PreProc {
  10. /**
  11. * tk判定
  12. * @param Req $req
  13. * @return int 返回操作结果,0:成功,其余为错误码
  14. */
  15. public static function tk($req) {
  16. my_Assert(!config::Inst()->isBaned($req->uid), ErrCode::err_server_updating); # 检查封号
  17. // $ret = self::checkVersion($req); # 检查客户端版本 -王刚 已经于2020.4.29 废弃, 改为提前检查版本号了.
  18. // my_Assert(ErrCode::ok == $ret, $ret); # 客户端版本过低
  19. # 检查是否处于更新阶段,暂停对玩家请求的响应。
  20. if (GAME_ONLINE # 外网
  21. && self::isUpdating() # 更新
  22. && !config::Inst()->isTester($req->uid)) { # 排除测试号
  23. return ErrCode::err_server_updating;
  24. }
  25. $ssd = GameConfig::service_schedule_getItem(1); # 服务计划(固定只有1条)
  26. if (now() > $ssd->startts && now() < $ssd->endts) { # 在维护期间
  27. // return ErrCode::err_server_maintaining;
  28. Err(ErrCode::err_server_maintaining, $ssd->reason);
  29. }
  30. // if (!GAME_ONLINE || config::Inst()->isTester($req->uid)) { # 内网不做token校验操作
  31. return ErrCode::ok;
  32. // }
  33. if ($req->cmd == CmdCode::cmd_user_getzonelist) { # 如果是获取分区列表的消息初始化tk信息,不做校验
  34. $siginfo = SigInfo::InitSig($req); # 初始化sigInfo
  35. $req->sig = $siginfo->sig; # 每次resp会从req上取sig值返回
  36. $req->msgid = PreProc::createMsgId($siginfo); # 初始化msgid
  37. $siginfo->msgid = SigInfo::calcMsgid($siginfo, $req); # sigInfo和本次的$req身上的msgid,用于下次消息校验,
  38. self::updateUserSigInfo($req, $siginfo); # 写入Cmem,下次登录的时候校验
  39. return ErrCode::ok;
  40. }
  41. # 其余消息,全部进行校验
  42. $siginfo = self::getUserSigInfo($req); # 1.从Cmem读取证书验证信息
  43. if ($siginfo == null) {
  44. return ErrCode::err_signo;
  45. }
  46. if ($req->sig != $siginfo->sig) { # 2.如果一次性证书不一致,则证明已经在其他地方登录
  47. return ErrCode::err_anotherlogin;
  48. }
  49. if ($siginfo->msgid != SigInfo::calcMsgid($siginfo, $req)) { # 3.如果消息id错位,则证明该条消息非法
  50. return ErrCode::err_illegal;
  51. }
  52. if (now() - $req->ts > OFFSET_MSGTIME) { # 4.如果服务端客户端时间戳超过规定误差,则消息非法
  53. return ErrCode::err_outtime;
  54. }
  55. # 更新siginfo
  56. $siginfo->msgnum++; # 消息编号递增
  57. $req->msgid = PreProc::createMsgId($siginfo); # ...
  58. $siginfo->msgid = SigInfo::calcMsgid($siginfo, $req); # 计算新的
  59. self::updateUserSigInfo($req, $siginfo); # 回写siginfo
  60. return ErrCode::ok; # 返回操作结果,0:成功,其余为错误码
  61. }
  62. public static function createMsgId($siginfo) {
  63. $temp = 8888 - $siginfo->msgnum;
  64. return substr(md5(substr($siginfo->uid, 2, 20) . $temp . substr($siginfo->sig, 5, 15)), 7, 23);
  65. }
  66. // /**
  67. // * 检查客户端版本是否需要强制更新
  68. // * @param Req $req
  69. // * @return int ErrCode
  70. // */
  71. // public static function checkVersion($req) {
  72. // $clientVer = $req->clientVer;
  73. // $ClientVerArr = explode('.', $clientVer);
  74. // $ServerVerArr = explode('.', glc()->clientVer);
  75. //
  76. // if ($ClientVerArr[0] < $ServerVerArr[0] # # 主版本号小
  77. // || $ClientVerArr[1] < $ServerVerArr[1]) { # 次版本号小
  78. // $req->updateInfo = GameConfig::clientVersionHistory_getItem(glc()->clientVer);
  79. // $req->updateInfo->newVer = glc()->clientVer;
  80. // return ErrCode::clientversionlow_err; # 返回错误码,强制更新1
  81. // }
  82. //
  83. // if ($ClientVerArr[0] == $ServerVerArr[0] # 主版本号相同
  84. // && $ClientVerArr[1] == $ServerVerArr[1] # 次版本号相同
  85. // && $ClientVerArr[2] < $ServerVerArr[2] && # # 修订版本号不一致, 提示更新
  86. // ($req->cmd == CmdCode::cmd_user_getzonelist # 只在拉取分区列表的时候提示下得了.又不是强更
  87. // || $req->cmd == CmdCode::cmd_user_gameconstinfo)) { # 或者是拉取常量信息也行
  88. // $req->updateInfo = GameConfig::clientVersionHistory_getItem(glc()->clientVer); # 提示更新,可以暂不更新,不返回错误码了
  89. // $req->updateInfo->newVer = glc()->clientVer;
  90. // }
  91. // return ErrCode::ok;
  92. // }
  93. /**
  94. * 返回是否处于更新中
  95. * @return boolean
  96. */
  97. public static function isUpdating() {
  98. $ts = now();
  99. if ($ts > glc()->updatingBeginTs && $ts < glc()->updatingEndTs) {
  100. return true;
  101. }
  102. return false;
  103. }
  104. /**
  105. * 把玩家的SigInfo写入数据库
  106. * @param Req $req
  107. * @param SigInfo $siginfo
  108. */
  109. public static function updateUserSigInfo($req, $siginfo) {
  110. gMem()->set(MemKey_User::Sig($req->zoneid, $siginfo->uid), $siginfo);
  111. }
  112. /**
  113. * 从Cmem中读取玩家的SigInfo数据
  114. * @param Req $req
  115. * @return SigInfo
  116. */
  117. public static function getUserSigInfo($req) {
  118. return gMem()->get(MemKey_User::Sig($req->zoneid, $req->uid));
  119. }
  120. }
  121. /**
  122. * 校验信息
  123. */
  124. class SigInfo {
  125. public $uid;
  126. public $zoneid;
  127. public $sig;
  128. public $msgnum;
  129. public $msgid;
  130. /**
  131. *
  132. * @param SigInfo $siginfo
  133. * @param Req $req
  134. */
  135. public static function calcMsgid($siginfo, $req) {
  136. return substr(md5($siginfo->sig . $req->msgid), 0, 32);
  137. }
  138. /**
  139. * 玩家登陆的时候初始化sig
  140. * @param Req $req
  141. */
  142. public static function InitSig($req) {
  143. $paras = array();
  144. $paras["openid"] = $req->uid;
  145. $paras["ep"] = HttpUtil::getClientEP();
  146. $paras["ts"] = now();
  147. $self_url_path = "atomsoft.com";
  148. $siginfo = new SigInfo();
  149. $siginfo->uid = $req->uid;
  150. $siginfo->zoneid = $req->zoneid;
  151. $siginfo->sig = self::makeSig('post', $self_url_path, $paras, PROJECTNAME);
  152. $siginfo->msgnum = 0;
  153. return $siginfo;
  154. }
  155. /**
  156. * 生成签名
  157. *
  158. * @param string $method 请求方法 "get" or "post"
  159. * @param string $url_path
  160. * @param array $params 表单参数
  161. * @param string $secret 密钥
  162. */
  163. public static function makeSig($method, $url_path, $params, $secret) {
  164. $mk = self::makeSource($method, $url_path, $params);
  165. $my_sign = hash_hmac("sha1", $mk, strtr($secret, '-_', '+/'), true);
  166. $my_sign = base64_encode($my_sign);
  167. return $my_sign;
  168. }
  169. private static function makeSource($method, $url_path, $params) {
  170. $strs = strtoupper($method) . '&' . rawurlencode($url_path) . '&';
  171. ksort($params);
  172. $query_string = array();
  173. foreach ($params as $key => $val) {
  174. array_push($query_string, $key . '=' . $val);
  175. }
  176. $query_string = join('&', $query_string);
  177. return $strs . str_replace('~', '%7E', rawurlencode($query_string));
  178. }
  179. }