sign.go 1.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566
  1. package middleware
  2. import (
  3. "github.com/gin-gonic/gin"
  4. "github.com/go-nunu/nunu-layout/pkg/log"
  5. "github.com/go-nunu/nunu-layout/pkg/md5"
  6. "github.com/go-nunu/nunu-layout/pkg/resp"
  7. "github.com/spf13/viper"
  8. "net/http"
  9. "sort"
  10. "strings"
  11. )
  12. func SignMiddleware(log *log.Logger, conf *viper.Viper) gin.HandlerFunc {
  13. return func(ctx *gin.Context) {
  14. timestamp, ok := ctx.Request.Header["Timestamp"]
  15. if !ok || len(timestamp) == 0 {
  16. resp.HandleError(ctx, http.StatusBadRequest, 1, "sign error.", nil)
  17. ctx.Abort()
  18. return
  19. }
  20. nonce, ok := ctx.Request.Header["Nonce"]
  21. if !ok || len(nonce) == 0 {
  22. resp.HandleError(ctx, http.StatusBadRequest, 1, "sign error.", nil)
  23. ctx.Abort()
  24. return
  25. }
  26. sign, ok := ctx.Request.Header["Sign"]
  27. if !ok || len(sign) == 0 {
  28. resp.HandleError(ctx, http.StatusBadRequest, 1, "sign error.", nil)
  29. ctx.Abort()
  30. return
  31. }
  32. appVersion, ok := ctx.Request.Header["App-Version"]
  33. if !ok || len(appVersion) == 0 {
  34. resp.HandleError(ctx, http.StatusBadRequest, 1, "sign error.", nil)
  35. ctx.Abort()
  36. return
  37. }
  38. data := map[string]string{}
  39. data["AppKey"] = conf.GetString("security.api_sign.app_key")
  40. data["Timestamp"] = timestamp[0]
  41. data["Nonce"] = nonce[0]
  42. data["AppVersion"] = appVersion[0]
  43. var keys []string
  44. for k := range data {
  45. keys = append(keys, k)
  46. }
  47. sort.Slice(keys, func(i, j int) bool { return strings.ToLower(keys[i]) < strings.ToLower(keys[j]) })
  48. //拼接
  49. str := ""
  50. for _, k := range keys {
  51. str += k + data[k]
  52. }
  53. str += conf.GetString("security.api_sign.app_security")
  54. if sign[0] != strings.ToUpper(md5.Md5(str)) {
  55. resp.HandleError(ctx, http.StatusBadRequest, 1, "sign error.", nil)
  56. ctx.Abort()
  57. return
  58. }
  59. ctx.Next()
  60. }
  61. }