sunpengfei
2025-12-01 37df521a037702e4c0710011c7378cc5f9238fba
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
using ApiTools.Core;
using Furion.DataEncryption;
using Furion.DynamicApiController;
using Microsoft.AspNetCore.Authorization;
using Microsoft.AspNetCore.Mvc;
using Microsoft.Extensions.Options;
 
namespace ApiTools.Web.Entry.Controllers
{
    [Route("api/common/wxmp")]
    public class WxmpController(
            WxmpUtils utils,
            IOptions<WxmpOptions> options
        ) : ControllerBase
    {
        private readonly WxmpUtils utils = utils;
        private readonly IOptions<WxmpOptions> options = options;
 
        [HttpGet("subscribMessageNotify")]
        [AllowAnonymous]
        [NonUnify]
        public IActionResult SubscribMessageNotify([FromQuery] WxmpSubscribMessageNotifyRequestQuery request)
        {
            var @params = new[]
            {
                options.Value.SubscribMessage.Token,
                request.Timestamp,
                request.Nonce
            }
            .OrderBy(p => p)
            .ToArray();
            var text = string.Concat(@params);
            if (SHA1Encryption.Compare(text, request.Signature, true))
            {
                return Content(request.Echostr);
            }
            else
            {
                return Unauthorized("验签失败");
            }
        }
    }
}