還是一貫風格:用代碼說話!!!
<?php
class ShareModel extends BaseModel
{
var $appId = APPID;
var $appSecret = APPSECRET;
public function getJsApiTicket()
{
$ticket_file = '/dev/shm/jsapi_ticket.json';
$data = json_decode(file_get_contents($ticket_file));
if ($data->expire_time < time()) {
$accessToken = $this->getApiAccessToken();
$url = "https://api.weixin.qq.com/cgi-bin/ticket/getticket?type=jsapi&access_token=$accessToken";
$res = json_decode($this->http_request($url));
$ticket = $res->ticket;
if ($ticket) {
$data->expire_time = time() + 7000;
$data->jsapi_ticket = $ticket;
file_put_contents($ticket_file, json_encode($data));
}
} else {
$ticket = $data->jsapi_ticket;
}
return $ticket;
}
/*微信公眾號,不需要獲取用戶信息:所以不需要授權,即使用appid、appsecret和grant_type換取access_token*/
/*
微信對於access_token的請求存在日請求數的限制 所以要全局緩存access_token,在過期時間內直接使用存的值;
這里使用file_put_contents()代替fwrite()、fopen()、fclose();
file_put_content()如果文件不存在就先創建文件這里要注意把緩存文件放/dev/shm/*下面,這個磁盤文件會在重啟的時候清空數據,
由於這個access_token丟失也不會存在問題,所以存在這里有助於減輕磁盤內存壓力
*/
private function getApiAccessToken()
{
$token_file = '/dev/shm/access_token.json';
$data = json_decode(file_get_contents($token_file));
if ($data->expire_time < time()) {
$url = "https://api.weixin.qq.com/cgi-bin/token?grant_type=client_credential&appid=$this->appId&secret=$this->appSecret";
$res = json_decode($this->http_request($url));
$access_token = $res->access_token;
if ($access_token) {
$data->expire_time = time() + 7000;
$data->access_token = $access_token;
file_put_contents($token_file, json_encode($data));
}
} else {
$access_token = $data->access_token;
}
return $access_token;
}
//HTTP請求(支持HTTP/HTTPS,支持GET/POST)
private function http_request($url, $data = null)
{
$curl = curl_init();
curl_setopt($curl, CURLOPT_URL, $url);
curl_setopt($curl, CURLOPT_SSL_VERIFYPEER, FALSE);
curl_setopt($curl, CURLOPT_SSL_VERIFYHOST, FALSE);
if (!empty($data)) {
curl_setopt($curl, CURLOPT_POST, TRUE);
curl_setopt($curl, CURLOPT_POSTFIELDS, $data);
}
curl_setopt($curl, CURLOPT_RETURNTRANSFER, TRUE);
$output = curl_exec($curl);
curl_close($curl);
file_put_contents('/tmp/weixin.' . date("Ymd") . '.log', date("Y-m-d H:i:s") . "\t" . $output . "\n", FILE_APPEND); //記錄微信請求的相關日志,以用於排插錯誤
return $output;
}
|調用方式:
接收前端傳過來的當前請求頁的url
public function getApiTicketAction()
{
$model = new ShareModel();
$jsapiTicket = $model->getJsApiTicket();
$url = $this->_req->getQuery('url',"");
if(!$url){
response::err_lack_param(); //做一個參數檢測的判斷
}
$timestamp = time();
$nonceStr = $this->createNonceStr(); //構造一個隨機數,用來生成簽名的一部分
$string = "jsapi_ticket=$jsapiTicket&noncestr=$nonceStr×tamp=$timestamp&url=$url"; //簽名算法先按照ascII碼排序
$signature = sha1($string); //對排序好的字符串加密
$signPackage = array(
"appId" => $model->appId,
"nonceStr" => $nonceStr,
"timestamp" => $timestamp,
"signature" => $signature,
);
response::result($signPackage); //返回數據給前端
}
private function createNonceStr($length = 16) { //生成隨機16個字符的字符串
$chars = "abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789";
$str = "";
for ($i = 0; $i < $length; $i++) {
$str .= substr($chars, mt_rand(0, strlen($chars) - 1), 1);
}
return $str;
}
由於自己的無知,一開始使用fwrite()來寫文件,而線上服務器又嚴格限制代碼寫文件,導致全局緩存access_token 無效,
進而所有用戶的轉發請求都直接跑去請求微信端的接口 隨着訪問數的增加,最后請求數超過了微信的日限制最大值,最后導致接口被限制一天不能使用。
這個要注意:做緩存的文件存放的服務器磁盤是否有讀寫權限。