AliSmsService.java 4.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116
  1. package com.izouma.nineth.service.sms;
  2. import com.aliyuncs.CommonRequest;
  3. import com.aliyuncs.CommonResponse;
  4. import com.aliyuncs.DefaultAcsClient;
  5. import com.aliyuncs.IAcsClient;
  6. import com.aliyuncs.exceptions.ClientException;
  7. import com.aliyuncs.http.MethodType;
  8. import com.aliyuncs.profile.DefaultProfile;
  9. import com.izouma.nineth.config.Constants;
  10. import com.izouma.nineth.domain.SmsRecord;
  11. import com.izouma.nineth.exception.BusinessException;
  12. import com.izouma.nineth.repo.SmsRecordRepo;
  13. import io.jsonwebtoken.Jwts;
  14. import io.jsonwebtoken.SignatureAlgorithm;
  15. import lombok.extern.slf4j.Slf4j;
  16. import org.apache.commons.lang3.RandomStringUtils;
  17. import org.springframework.beans.factory.annotation.Autowired;
  18. import org.springframework.beans.factory.annotation.Value;
  19. import org.springframework.boot.configurationprocessor.json.JSONException;
  20. import org.springframework.boot.configurationprocessor.json.JSONObject;
  21. import org.springframework.stereotype.Service;
  22. import java.time.LocalDateTime;
  23. import java.time.ZoneOffset;
  24. import java.util.Date;
  25. import java.util.HashMap;
  26. @Service
  27. @Slf4j
  28. public class AliSmsService implements SmsService {
  29. @Value("${aliyun.access-key-id}")
  30. private String accessKeyId;
  31. @Value("${aliyun.access-key-secret}")
  32. private String accessKeySecret;
  33. @Value("${aliyun.sms-sign}")
  34. private String smsSign;
  35. @Value("${aliyun.sms-code}")
  36. private String smsCode;
  37. @Autowired
  38. private SmsRecordRepo smsRecordRepo;
  39. @Override
  40. public String sendVerify(String phone) {
  41. smsRecordRepo.findLastByPhoneAndExpiresAtAfterAndExpiredFalse(phone, LocalDateTime.now()).ifPresent(record -> {
  42. if (record.getCreatedAt().plusMinutes(1L).isAfter(LocalDateTime.now())) {
  43. long sec = record.getCreatedAt().plusMinutes(1L).toInstant(ZoneOffset.UTC)
  44. .getEpochSecond() - LocalDateTime.now().toInstant(ZoneOffset.UTC).getEpochSecond() + 1;
  45. throw new BusinessException("请" + sec + "秒后再试");
  46. }
  47. });
  48. String code = RandomStringUtils.randomNumeric(4);
  49. DefaultProfile profile = DefaultProfile.getProfile("cn-hangzhou", accessKeyId, accessKeySecret);
  50. IAcsClient client = new DefaultAcsClient(profile);
  51. CommonRequest request = new CommonRequest();
  52. request.setMethod(MethodType.POST);
  53. request.setDomain("dysmsapi.aliyuncs.com");
  54. request.setVersion("2017-05-25");
  55. request.setAction("SendSms");
  56. request.putQueryParameter("PhoneNumbers", phone);
  57. request.putQueryParameter("SignName", smsSign);
  58. request.putQueryParameter("TemplateCode", smsCode);
  59. if (smsSign.equals("身份验证")) {
  60. request.putQueryParameter("TemplateParam", "{\"code\":\"" + code + "\",\"product\":\"用户\"}");
  61. } else {
  62. request.putQueryParameter("TemplateParam", "{\"code\":\"" + code + "\"}");
  63. }
  64. try {
  65. CommonResponse response = client.getCommonResponse(request);
  66. if (response.getHttpStatus() != 200) {
  67. throw new BusinessException("发送失败,请稍后再试", response.getHttpStatus() + "," + response.getData());
  68. }
  69. log.info("send sms response {}", response.getData());
  70. JSONObject jsonObject = new JSONObject(response.getData());
  71. if (!"ok".equalsIgnoreCase(jsonObject.getString("Code"))) {
  72. throw new BusinessException("发送失败,请稍后再试", jsonObject.getString("Message"));
  73. }
  74. smsRecordRepo.expire(phone);
  75. String sessionId = RandomStringUtils.randomAlphabetic(10);
  76. smsRecordRepo.save(SmsRecord.builder()
  77. .sessionId(sessionId)
  78. .phone(phone)
  79. .code(code)
  80. .expiresAt(LocalDateTime.now().plusMinutes(5))
  81. .expired(false)
  82. .build());
  83. return sessionId;
  84. } catch (ClientException | JSONException e) {
  85. e.printStackTrace();
  86. throw new BusinessException("发送失败,请稍后再试", e.getMessage());
  87. }
  88. }
  89. @Override
  90. public String verify(String phone, String code) {
  91. SmsRecord smsRecord = smsRecordRepo.findLastByPhoneAndExpiresAtAfterAndExpiredFalse(phone, LocalDateTime.now())
  92. .orElseThrow(new BusinessException("验证码错误"));
  93. if (!smsRecord.getCode().equalsIgnoreCase(code)) {
  94. throw new BusinessException("验证码错误");
  95. }
  96. smsRecord.setExpired(true);
  97. smsRecordRepo.save(smsRecord);
  98. return Jwts.builder()
  99. .setClaims(new HashMap<>())
  100. .setSubject(phone)
  101. .setIssuedAt(new Date())
  102. .setExpiration(new Date(new Date().getTime() + 10 * 60 * 1000)) //10min
  103. .signWith(SignatureAlgorithm.HS512, Constants.SMS_TOKEN_SECRET)
  104. .compact();
  105. }
  106. }