第一步:封装jssdk服务
注意:jsapi_ticket 应该全局存储与更新,以下代码以写入到缓存里,本人是php-laravel
<?php
namespace App\Services;
use Illuminate\Support\Facades\Cache;
class Jssdk {
private $appId;
private $appSecret;
public function __construct($appId, $appSecret) {
$this->appId = $appId;
$this->appSecret = $appSecret;
}
public function getSignPackage($url='') {
$jsapiTicket = $this->getJsApiTicket();
// 注意 URL 一定要动态获取,不能 hardcode.
$protocol = (!empty($_SERVER['HTTPS']) && $_SERVER['HTTPS'] !== 'off' || $_SERVER['SERVER_PORT'] == 443) ? "https://" : "http://";
$url = $url?$url:"$protocol$_SERVER[HTTP_HOST]$_SERVER[REQUEST_URI]";
$timestamp = time();
$nonceStr = $this->createNonceStr();
// 这里参数的顺序要按照 key 值 ASCII 码升序排序
$string = "jsapi_ticket=$jsapiTicket&noncestr=$nonceStr×tamp=$timestamp&url=$url";
$signature = sha1($string);
$signPackage = array(
"appId" => $this->appId,
"nonceStr" => $nonceStr,
"timestamp" => $timestamp,
"url" => $url,
"signature" => $signature,
"rawString" => $string
);
return $signPackage;
}
private function createNonceStr($length = 16) {
$chars = "abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789";
$str = "";
for ($i = 0; $i < $length; $i++) {
$str .= substr($chars, mt_rand(0, strlen($chars) - 1), 1);
}
return $str;
}
private function getJsApiTicket() {
$ticket = Cache::get('jsapi_ticket');
if (empty($ticket)) {
$accessToken = $this->getAccessToken();
$url = "https://api.weixin.qq.com/cgi-bin/ticket/getticket?type=jsapi&access_token=$accessToken";
$res = json_decode(file_get_contents($url));
$ticket = $res->ticket;
if ($ticket) {
$jsapi_ticket = $ticket;
Cache::put('jsapi_ticket',$jsapi_ticket,3600);
}
}
return $ticket;
}
private function getAccessToken() {
$access_token = Cache::get('access_token');
if (empty($access_token)) {
$url = "https://api.weixin.qq.com/cgi-bin/token?grant_type=client_credential&appid=$this->appId&secret=$this->appSecret";
$res = json_decode(file_get_contents($url),true);
$access_token = $res['access_token'];
if ($access_token) {
Cache::put('access_token',$access_token,3600);
}
}
return $access_token;
}
private function httpGet($url) {
$curl = curl_init();
curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
curl_setopt($curl, CURLOPT_TIMEOUT, 500);
// 为保证第三方服务器与微信服务器之间数据传输的安全性,所有微信接口采用https方式调用,必须使用下面2行代码打开ssl安全校验。
// 如果在部署过程中代码在此处验证失败,请到 http://curl.haxx.se/ca/cacert.pem 下载新的证书判别文件。
curl_setopt($curl, CURLOPT_SSL_VERIFYPEER, true);
curl_setopt($curl, CURLOPT_SSL_VERIFYHOST, true);
curl_setopt($curl, CURLOPT_URL, $url);
$res = curl_exec($curl);
curl_close($curl);
return $res;
}
}
第二步:编写接口去调用上面Jssdk服务(get方式)
public function WeChatShareConfig(Request $request){
$appid = config('wechat.official_account.default.app_id');
$appsecret = config('wechat.official_account.default.secret');
$jssdk = new Jssdk($appid,$appsecret);
$wx_config = $jssdk->GetSignPackage();
return Response::success('成功!.',$wx_config);
}
然后登陆微公众平台,拿到 AppID 和 AppSecret
第三、别忘了设置IP白名单
如果不设置IP白名单,访问接口会报 "errcode":40164 错误,前端会提示:undefine index access_token
如下
{"errcode":40164,"errmsg":"invalid ip 183.134.166.139 ipv6 ::ffff:183.122.16
在公众平台如下位置添加IP白名单,完美解决!
第四:最后还有个最基本的操作:把域名加上去,大多数到这时候都加过了
然后找到功能设置 =>JS接口安全设置 里面添加上自己的域名
添加完,一切OK了!