PreProc.php 8.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200
  1. <?php
  2. namespace loyalsoft;
  3. /**
  4. * Description of PreProc
  5. * 预处理流程
  6. * 提供数据包预处理机制、加解密、合法化判定等等
  7. * @author jgao
  8. */
  9. class PreProc {
  10. /**
  11. * tk判定
  12. * @param Req $req
  13. * @return int 返回操作结果,0:成功,其余为错误码
  14. */
  15. public static function tk($req) {
  16. if (config::Inst()->isBaned($req->uid)) { # 检查封号
  17. return ErrCode::err_server_updating; # 针对这几个人封号
  18. }
  19. $ret = self::checkVersion($req); # 检查客户端版本
  20. if ($ret != ErrCode::ok) { # 客户端版本过低
  21. return $ret;
  22. }
  23. # 检查是否处于更新阶段,暂停对玩家请求的响应。
  24. if (GAME_ONLINE # 外网
  25. && self::isUpdating() # 更新
  26. && !config::Inst()->isTester($req->uid)) { # 排除测试号
  27. return ErrCode::err_server_updating;
  28. }
  29. $ssd = GameConfig::service_schedule_getItem(1); # 服务计划(固定只有1条)
  30. if (now() > $ssd->startts && now() < $ssd->endts) { # 在维护期间
  31. $ret = ErrCode::err_server_maintaining;
  32. }
  33. // if (!GAME_ONLINE || config::Inst()->isTester($req->uid)) { # 内网不做token校验操作
  34. return ErrCode::ok;
  35. // }
  36. if ($req->cmd == CmdCode::cmd_user_getzonelist) { # 如果是获取分区列表的消息初始化tk信息,不做校验
  37. $siginfo = SigInfo::InitSig($req); # 初始化sigInfo
  38. $req->sig = $siginfo->sig; # 每次resp会从req上取sig值返回
  39. $req->msgid = PreProc::createMsgId($siginfo); # 初始化msgid
  40. $siginfo->msgid = SigInfo::calcMsgid($siginfo, $req); # sigInfo和本次的$req身上的msgid,用于下次消息校验,
  41. self::updateUserSigInfo($req, $siginfo); # 写入Cmem,下次登录的时候校验
  42. return ErrCode::ok;
  43. }
  44. # 其余消息,全部进行校验
  45. $siginfo = self::getUserSigInfo($req); # 1.从Cmem读取证书验证信息
  46. if ($siginfo == null) {
  47. return ErrCode::err_signo;
  48. }
  49. if ($req->sig != $siginfo->sig) { # 2.如果一次性证书不一致,则证明已经在其他地方登录
  50. return ErrCode::err_anotherlogin;
  51. }
  52. if ($siginfo->msgid != SigInfo::calcMsgid($siginfo, $req)) { # 3.如果消息id错位,则证明该条消息非法
  53. return ErrCode::err_illegal;
  54. }
  55. if (now() - $req->ts > OFFSET_MSGTIME) { # 4.如果服务端客户端时间戳超过规定误差,则消息非法
  56. return ErrCode::err_outtime;
  57. }
  58. # 更新siginfo
  59. $siginfo->msgnum++; # 消息编号递增
  60. $req->msgid = PreProc::createMsgId($siginfo); # ...
  61. $siginfo->msgid = SigInfo::calcMsgid($siginfo, $req); # 计算新的
  62. self::updateUserSigInfo($req, $siginfo); # 回写siginfo
  63. return ErrCode::ok; # 返回操作结果,0:成功,其余为错误码
  64. }
  65. public static function createMsgId($siginfo) {
  66. $temp = 8888 - $siginfo->msgnum;
  67. return substr(md5(substr($siginfo->uid, 2, 20) . $temp . substr($siginfo->sig, 5, 15)), 7, 23);
  68. }
  69. /**
  70. * 检查客户端版本是否需要强制更新
  71. * @param Req $req
  72. * @return int ErrCode
  73. */
  74. public static function checkVersion($req) {
  75. $clientVer = $req->clientVer;
  76. $ClientVerArr = explode('.', $clientVer);
  77. $ServerVerArr = explode('.', glc()->clientVer);
  78. if ($ClientVerArr[0] < $ServerVerArr[0] # # 主版本号小
  79. || $ClientVerArr[1] < $ServerVerArr[1]) { # 次版本号小
  80. $req->updateInfo = GameConfig::clientVersionHistory_getItem(glc()->clientVer);
  81. $req->updateInfo->newVer = glc()->clientVer;
  82. return ErrCode::clientversionlow_err; # 返回错误码,强制更新1
  83. }
  84. if ($ClientVerArr[0] == $ServerVerArr[0] # 主版本号相同
  85. && $ClientVerArr[1] == $ServerVerArr[1] # 此版本号相同
  86. && $ClientVerArr[2] < $ServerVerArr[2] && # # 修订版本号不一致, 提示更新
  87. ($req->cmd == CmdCode::cmd_user_getzonelist # 只在拉取分区列表的时候提示下得了.又不是强更
  88. || $req->cmd == CmdCode::cmd_user_gameconstinfo)) { # 或者是拉取常量信息也行
  89. $req->updateInfo = GameConfig::clientVersionHistory_getItem(glc()->clientVer); # 提示更新,可以暂不更新,不返回错误码了
  90. $req->updateInfo->newVer = glc()->clientVer;
  91. }
  92. return ErrCode::ok;
  93. }
  94. /**
  95. * 返回是否处于更新中
  96. * @return boolean
  97. */
  98. public static function isUpdating() {
  99. $ts = now();
  100. if ($ts > glc()->updatingBeginTs && $ts < glc()->updatingEndTs) {
  101. return true;
  102. }
  103. return false;
  104. }
  105. /**
  106. * 把玩家的SigInfo写入数据库
  107. * @param Req $req
  108. * @param SigInfo $siginfo
  109. */
  110. public static function updateUserSigInfo($req, $siginfo) {
  111. gMem()->set(MemKey_User::Sig($req->zoneid, $siginfo->uid), $siginfo);
  112. }
  113. /**
  114. * 从Cmem中读取玩家的SigInfo数据
  115. * @param Req $req
  116. * @return SigInfo
  117. */
  118. public static function getUserSigInfo($req) {
  119. return gMem()->get(MemKey_User::Sig($req->zoneid, $req->uid));
  120. }
  121. }
  122. /**
  123. * 校验信息
  124. */
  125. class SigInfo {
  126. public $uid;
  127. public $zoneid;
  128. public $sig;
  129. public $msgnum;
  130. public $msgid;
  131. /**
  132. *
  133. * @param SigInfo $siginfo
  134. * @param Req $req
  135. */
  136. public static function calcMsgid($siginfo, $req) {
  137. return substr(md5($siginfo->sig . $req->msgid), 0, 32);
  138. }
  139. /**
  140. * 玩家登陆的时候初始化sig
  141. * @param Req $req
  142. */
  143. public static function InitSig($req) {
  144. $paras = array();
  145. $paras["openid"] = $req->uid;
  146. $paras["ep"] = HttpUtil::getClientEP();
  147. $paras["ts"] = now();
  148. $self_url_path = "atomsoft.com";
  149. $siginfo = new SigInfo();
  150. $siginfo->uid = $req->uid;
  151. $siginfo->zoneid = $req->zoneid;
  152. $siginfo->sig = self::makeSig('post', $self_url_path, $paras, PROJECTNAME);
  153. $siginfo->msgnum = 0;
  154. return $siginfo;
  155. }
  156. /**
  157. * 生成签名
  158. *
  159. * @param string $method 请求方法 "get" or "post"
  160. * @param string $url_path
  161. * @param array $params 表单参数
  162. * @param string $secret 密钥
  163. */
  164. public static function makeSig($method, $url_path, $params, $secret) {
  165. $mk = self::makeSource($method, $url_path, $params);
  166. $my_sign = hash_hmac("sha1", $mk, strtr($secret, '-_', '+/'), true);
  167. $my_sign = base64_encode($my_sign);
  168. return $my_sign;
  169. }
  170. private static function makeSource($method, $url_path, $params) {
  171. $strs = strtoupper($method) . '&' . rawurlencode($url_path) . '&';
  172. ksort($params);
  173. $query_string = array();
  174. foreach ($params as $key => $val) {
  175. array_push($query_string, $key . '=' . $val);
  176. }
  177. $query_string = join('&', $query_string);
  178. return $strs . str_replace('~', '%7E', rawurlencode($query_string));
  179. }
  180. }