1
zj
2 days ago 662ae3929a78bc6ab44d12519c6d3d3910c8b5c0
src/main/java/com/nq/service/impl/UserWithdrawServiceImpl.java
@@ -14,14 +14,18 @@
import com.github.pagehelper.PageInfo;
import com.nq.common.PayV2GatewayKeys;
import com.nq.common.ServerResponse;
import com.nq.utils.*;
import com.nq.utils.http.HttpClientRequest;
import com.nq.utils.http.HttpClientUtil;
import com.nq.utils.pay.PayV2RsaSignUtil;
import java.io.IOException;
import java.io.PrintWriter;
import java.math.BigDecimal;
import java.math.RoundingMode;
import java.time.LocalDate;
import java.time.LocalDateTime;
@@ -51,6 +55,9 @@
public class UserWithdrawServiceImpl implements IUserWithdrawService {
    private static final Logger log = LoggerFactory.getLogger(UserWithdrawServiceImpl.class);
    private static final String PAY_V2_PAYOUT_CREATE_URL = "https://pay.kkpay100.com/v2/payOutCreate";
    private static final int PAY_V2_MID = 10724;
    @Autowired
@@ -398,9 +405,8 @@
                }
            }else if(state == 1){//走代付
                return getObjectServerResponseTwo(withId, request, response, userWithdraw, user, userAssets);
            }else if(state == 2){//走代付
                return ServerResponse.createByErrorMsg("代付通道关闭");
//                return getObjectServerResponseOne(withId, request, response, userWithdraw, user, userAssets);
            }else if(state == 4){//走代付
                return getObjectServerResponseThree(withId, request, response, userWithdraw, user, userAssets);
            }else{
                return ServerResponse.createByErrorMsg("请选择对应的操作!");
            }
@@ -413,83 +419,230 @@
    //代付二
    private ServerResponse getObjectServerResponseTwo(Integer withId, HttpServletRequest request, HttpServletResponse response, UserWithdraw userWithdraw, User user, UserAssets userAssets) throws Exception {
        String payoutUrl = "https://api.watchglb.com/pay/transfer";
        String mchId = "100789033";
        String key = "CZ5Q6NNI6D9YTCXZAIWIC8SAQCC35UZR";
        String backUrl = "https://api.nalandacapital.mom/user/payoutCallback.do";
        String payoutUrl = "https://gateway.kings-pays.com/gateway/payout/init";//正式地址
        String merchantKey = "qqaC1DH/LeR9iPvm";//商户key 需替换
        String aesKey = "ge6vK40fHNZPFJ4p";//商户aesKey 需替换
        String aesIv = "6gJoHTEE1i2O3ovE";//商户aesIv 需替换
        String bankCode = StringUtils.defaultIfBlank(userWithdraw.getBankAddress(), "").trim();
        String receiveAccount = StringUtils.defaultIfBlank(userWithdraw.getBankNo(), "").trim();
        String receiveName = StringUtils.defaultIfBlank(userWithdraw.getWithName(), user.getRealName());
        receiveName = StringUtils.defaultIfBlank(receiveName, user.getNickName());
        // 1. 生成商户订单号
        if (StringUtils.isBlank(bankCode) || StringUtils.isBlank(receiveAccount) || StringUtils.isBlank(receiveName)) {
            handleFailure(userAssets, userWithdraw, "Withdrawal failed:bank information incomplete");
            return ServerResponse.createByErrorMsg("Incomplete bank card information", request);
        }
        if (userWithdraw.getWithAmt().stripTrailingZeros().scale() > 0) {
            handleFailure(userAssets, userWithdraw, "Withdrawal failed:amount must be integer yuan");
            return ServerResponse.createByErrorMsg("The amount must be an integer ", request);
        }
        String merchantOrderNo = generatePayoutOrderId(withId);
        String applyDate = LocalDateTime.now().format(DateTimeFormatter.ofPattern("yyyy-MM-dd HH:mm:ss"));
        String transferAmount = userWithdraw.getWithAmt().toBigInteger().toString();
        // 2. 构建加密前的业务参数
        JSONObject dataObj = new JSONObject();
        dataObj.put("amount", userWithdraw.getWithAmt().intValue()); // 注意金额单位(示例中为整数)
        dataObj.put("transferType", "BANK_TRANSFER");
        dataObj.put("beneficiaryName", user.getNickName());
        dataObj.put("beneficiaryEmail", "null@gmail.com");
        dataObj.put("beneficiaryPhoneNo", user.getPhone());
        dataObj.put("beneficiaryAccount", userWithdraw.getBankNo());
        dataObj.put("beneficiaryIFSC", userWithdraw.getBankAddress());
        dataObj.put("merchantOrderNo", merchantOrderNo);
        dataObj.put("notifyUrl", "https://api.greenbackcaps.top/user/payoutCallbackTwo.do");
        Map<String, String> params = new HashMap<>();
        params.put("sign_type", "MD5");
        params.put("mch_id", mchId);
        params.put("mch_transferId", merchantOrderNo);
        params.put("transfer_amount", transferAmount);
        params.put("apply_date", applyDate);
        params.put("bank_code", bankCode);
        params.put("receive_name", receiveName);
        params.put("receive_account", receiveAccount);
        params.put("back_url", backUrl);
        if (StringUtils.isNotBlank(user.getPhone())) {
            params.put("receiver_telephone", user.getPhone().trim());
        }
        // 3. AES 加密
        String encryptedData = AesEncryptUtil.encrypt(dataObj.toJSONString(), aesKey, aesIv);
        JSONObject requestObj = new JSONObject();
        requestObj.put("data", encryptedData);
        Map<String, String> signParams = new TreeMap<>();
        for (Map.Entry<String, String> entry : params.entrySet()) {
            if (!"sign".equals(entry.getKey()) && !"sign_type".equals(entry.getKey())
                    && StringUtils.isNotBlank(entry.getValue())) {
                signParams.put(entry.getKey(), entry.getValue());
            }
        }
        String sign = PaymentSignUtil.generateSign(signParams, key);
        params.put("sign", sign);
        // 4. 设置请求头
        Headers headers = new Headers.Builder()
                .add("merchant_key", merchantKey)
                .build();
        log.info("watchglb代付请求参数:{}", params);
        String respStr = HttpClientUtil.doPost(payoutUrl, params, "utf-8");
        log.info("watchglb代付响应原始数据:{}", respStr);
        // 5. 发送 HTTP 请求
        log.info("代付请求参数:{}", requestObj.toJSONString());
        String respStr = doPost(payoutUrl, requestObj.toJSONString(), headers);
        log.info("代付响应原始数据:{}", respStr);
        // 6. 解析响应(使用 Jackson 或 fastjson,这里以 fastjson 为例)
        JSONObject respJson = JSONObject.parseObject(respStr);
        int code = respJson.getIntValue("code");
        boolean success = respJson.getBooleanValue("success");
        String msg = respJson.getString("msg");
        // 6.1 接口调用失败(code != 0 或 success = false)
        if (code != 0 || !success) {
            handleFailure(userAssets, userWithdraw, "代付请求失败:" + msg);
            return ServerResponse.createByErrorMsg("代付请求失败:" + msg, request);
        String respCode = respJson.getString("respCode");
        String errorMsg = respJson.getString("errorMsg");
        if (!"SUCCESS".equalsIgnoreCase(respCode)) {
            String failMsg = StringUtils.defaultIfBlank(errorMsg, "unknown");
            handleFailure(userAssets, userWithdraw, "Withdrawal failed:" + failMsg);
            return ServerResponse.createByErrorMsg("" + failMsg, request);
        }
        // 6.2 获取 data 部分
        JSONObject data = respJson.getJSONObject("data");
        String status = data.getString("status");       // ACCEPT / FAILURE / PROCESSING
        String failMsg = data.getString("message");     // 失败时的具体原因
        String platformOrderNo = StringUtils.defaultIfBlank(respJson.getString("tradeNo"), merchantOrderNo);
        String respSign = respJson.getString("sign");
        saveTransferRecordV2(merchantOrderNo, platformOrderNo, userWithdraw.getWithAmt(), user.getId(), withId, respSign);
        // 7. 根据 status 判断业务是否成功
        if ("ACCEPT".equals(status)) {
            // 代付订单被接受(不一定最终成功,需等待回调)
            String platformOrderNo = data.getString("orderNo");
        userWithdraw.setWithStatus(4);
        userWithdraw.setTransTime(new Date());
        userWithdrawMapper.updateByPrimaryKeySelective(userWithdraw);
            // 保存代付记录
            saveTransferRecord(merchantOrderNo, platformOrderNo, userWithdraw.getWithAmt(), user.getId(), withId);
        log.info("watchglb代付下单成功,商户订单号:{},平台订单号:{}", merchantOrderNo, platformOrderNo);
        return ServerResponse.createBySuccessMsg("代付申请已提交,请等待处理");
            // 更新提现记录为“已提交”
            userWithdraw.setWithStatus(4); // 4:已提交
            userWithdraw.setTransTime(new Date());
            userWithdrawMapper.updateByPrimaryKeySelective(userWithdraw);
            log.info("代付下单成功,商户订单号:{}", merchantOrderNo);
            return ServerResponse.createBySuccessMsg("代付申请已提交,请等待处理");
        } else {
            // 业务失败(如 FAILURE)
            String errorMsg = (failMsg != null && !failMsg.isEmpty()) ? failMsg : msg;
            handleFailure(userAssets, userWithdraw, "Withdrawal failed:" + errorMsg);
            return ServerResponse.createByErrorMsg("Withdrawal failed:" + errorMsg, request);
    }
    /**
     * 代付三:v2/payOutCreate(JSON + SHA256withRSA),IMPS
     */
    private ServerResponse getObjectServerResponseThree(Integer withId, HttpServletRequest request, HttpServletResponse response,
                                                        UserWithdraw userWithdraw, User user, UserAssets userAssets) throws Exception {
        String merchantOrderNo = generatePayoutOrderId(withId);
        BigDecimal amount = userWithdraw.getWithAmt().setScale(2, RoundingMode.HALF_UP);
        String notifyUrl = "https://api.nalandacapital.mom/user/payoutCallbackThree.do";
        UserBank bank = userBankMapper.selectOne(new LambdaQueryWrapper<UserBank>()
                .eq(UserBank::getUserId, user.getId())
                .eq(UserBank::getBankNo, userWithdraw.getBankNo())
                .last("limit 1"));
        String email = (bank != null && StringUtils.isNotBlank(bank.getBankEmail()))
                ? bank.getBankEmail().trim() : (user.getId() + "@user.local");
        if (email.length() > 64) {
            email = email.substring(0, 64);
        }
        String userName = StringUtils.defaultIfBlank(userWithdraw.getWithName(), user.getRealName());
        userName = StringUtils.defaultIfBlank(userName, "User");
        if (userName.length() > 16) {
            userName = userName.substring(0, 16);
        }
        String bankName = StringUtils.defaultIfBlank(userWithdraw.getBankName(), "BANK");
        if (bankName.length() > 32) {
            bankName = bankName.substring(0, 32);
        }
        String bankCode = StringUtils.defaultIfBlank(userWithdraw.getBankAddress(), "");
        if (bankCode.length() > 32) {
            bankCode = bankCode.substring(0, 32);
        }
        String bankCardNumber = StringUtils.defaultIfBlank(userWithdraw.getBankNo(), "");
        if (bankCardNumber.length() > 32) {
            bankCardNumber = bankCardNumber.substring(0, 32);
        }
        String address = "India";
        int paymentType = 1;
        Map<String, String> signParams = new TreeMap<>();
        signParams.put("amount", amount.toPlainString());
        signParams.put("address", address);
        signParams.put("bankCardNumber", bankCardNumber);
        signParams.put("bankCode", bankCode);
        signParams.put("bankName", bankName);
        signParams.put("currency", "INR");
        signParams.put("email", email);
        signParams.put("mid", String.valueOf(PAY_V2_MID));
        signParams.put("mobile", user.getPhone());
        signParams.put("notifyUrl", notifyUrl);
        signParams.put("orderId", merchantOrderNo);
        signParams.put("paymentType", String.valueOf(paymentType));
        signParams.put("userName", userName);
        String signBaseString = PayV2RsaSignUtil.buildStringA(signParams);
        String sign = PayV2RsaSignUtil.sign(signBaseString, PayV2GatewayKeys.MERCHANT_PRIVATE_KEY_PEM);
        log.info("代付v2签名串 stringA={}", signBaseString);
        Map<String, Object> body = new LinkedHashMap<>();
        body.put("mid", PAY_V2_MID);
        body.put("orderId", merchantOrderNo);
        body.put("amount", amount.toPlainString());
        body.put("currency", "INR");
        body.put("paymentType", paymentType);
        body.put("bankName", bankName);
        body.put("bankCode", bankCode);
        body.put("bankCardNumber", bankCardNumber);
        body.put("userName", userName);
        body.put("email", email);
        body.put("mobile", user.getPhone());
        body.put("address", address);
        body.put("notifyUrl", notifyUrl);
        body.put("sign", sign);
        String json = new Gson().toJson(body);
        log.info("代付v2请求:{}", json);
        String respStr = HttpClientRequest.doPostJsonBody(PAY_V2_PAYOUT_CREATE_URL, json);
        log.info("代付v2响应:{}", respStr);
        ObjectMapper objectMapper = new ObjectMapper();
        PayV2PayoutCreateResponse resp = objectMapper.readValue(respStr, PayV2PayoutCreateResponse.class);
        if (resp.getStatus() != 1 || resp.getData() == null) {
            handleFailure(userAssets, userWithdraw, "Failure? Please contact customer service.");
            return ServerResponse.createByErrorMsg("代付请求失败:" + (StringUtils.isNotBlank(resp.getMsg()) ? resp.getMsg() : "unknown"), request);
        }
        PayV2PayoutCreateResponse.Data data = resp.getData();
        Map<String, String> respSign = new TreeMap<>();
        if (StringUtils.isNotBlank(data.getAmount())) {
            respSign.put("amount", data.getAmount());
        }
        if (StringUtils.isNotBlank(data.getErrMsg())) {
            respSign.put("err_msg", data.getErrMsg());
        }
        if (data.getMId() != null) {
            respSign.put("m_id", String.valueOf(data.getMId()));
        }
        if (StringUtils.isNotBlank(data.getMOrder())) {
            respSign.put("m_order", data.getMOrder());
        }
        if (StringUtils.isNotBlank(data.getOrderId())) {
            respSign.put("order_id", data.getOrderId());
        }
        if (data.getOrderStatus() != null) {
            respSign.put("order_status", String.valueOf(data.getOrderStatus()));
        }
        if (!PayV2RsaSignUtil.verify(respSign, data.getSign(), PayV2GatewayKeys.PLATFORM_PUBLIC_KEY)) {
            log.warn("代付v2返回签名未通过校验, stringA={}, sign={}",
                    PayV2RsaSignUtil.buildStringA(respSign), data.getSign());
        }
        Integer os = data.getOrderStatus();
        if (os != null && (os == 2 || os == 3)) {
            String em = StringUtils.defaultIfBlank(data.getErrMsg(), resp.getMsg());
            handleFailure(userAssets, userWithdraw, "Failure? Please contact customer service.");
            return ServerResponse.createByErrorMsg("代付失败:" + em, request);
        }
        saveTransferRecordV2(merchantOrderNo, data.getOrderId(), amount, user.getId(), withId, data.getSign());
        userWithdraw.setWithStatus(4);
        userWithdraw.setTransTime(new Date());
        userWithdrawMapper.updateByPrimaryKeySelective(userWithdraw);
        log.info("代付v2下单成功,商户订单号:{}", merchantOrderNo);
        return ServerResponse.createBySuccessMsg("代付申请已提交,请等待处理");
    }
    private static boolean isValidIndiaMobile(String digits10) {
        if (digits10 == null || digits10.length() != 10) {
            return false;
        }
        char c = digits10.charAt(0);
        return c >= '6' && c <= '9';
    }
    private void saveTransferRecordV2(String merchantOrderNo, String platformOrderNo, BigDecimal amount,
                                      Integer userId, Integer withId, String sign) {
        TransferResponse record = new TransferResponse();
        record.setMerTransferId(merchantOrderNo);
        record.setTradeNo(platformOrderNo);
        record.setTransferAmount(amount);
        record.setTradeResult(0);
        record.setCallbackState(0);
        record.setRespCode("SUCCESS");
        record.setSignType("MD5");
        record.setSign(sign);
        record.setApplyDate(new SimpleDateFormat("yyyy-MM-dd HH:mm:ss").format(new Date()));
        record.setUserId(userId);
        record.setWithId(withId);
        record.setCreatedAt(new Date());
        record.setUpdatedAt(new Date());
        transferResponseService.save(record);
    }
    public static String doPost(String url, String data, Headers headers) throws IOException {
@@ -593,7 +746,7 @@
            params.put("payout_mode", "INDIA_IMPS"); // 代付模式,根据实际情况选择
            params.put("customer_account_type", userWithdraw.getBankAddress()); // 账号类型
            params.put("customer_account_no", userWithdraw.getBankNo()); // 收款人账号(银行卡号或UPI ID)
            params.put("notify_url", "https://api.greenbackcaps.top/user/payoutCallback.do"); // 异步通知地址
            params.put("notify_url", "https://api.nalandacapital.mom/user/payoutCallback.do"); // 异步通知地址
            
            // 生成签名
            String sign = PaymentSignUtil.generateSign(params, key);