如何在没有mcrypt的情况下使用PHP解密ClickBank通知数据?

时间:2018-01-26 21:55:42

标签: php mcrypt php-openssl clickbank

Mcrypt多年来一直被弃用,最终离开了php。不幸的是,我需要解码来自ClickBank的加密数据,他们的文档只提供mcrypt解决方案。

这是从他们的文档中删除的。如果没有mcrypt_decode(),我怎么能这样做?

$secretKey = "YOUR SECRET KEY"; // secret key from your ClickBank account

// get JSON from raw body...
$message = json_decode(file_get_contents('php://input'));

// Pull out the encrypted notification and the initialization vector for
// AES/CBC/PKCS5Padding decryption
$encrypted = $message->{'notification'};
$iv        = $message->{'iv'};
error_log("IV: $iv");

// decrypt the body...
$decrypted = trim(mcrypt_decrypt(MCRYPT_RIJNDAEL_128,
                             substr(sha1($secretKey), 0, 32),
                             base64_decode($encrypted),
                             MCRYPT_MODE_CBC,
                             base64_decode($iv)), "\0..\32");
error_log("Decrypted: $decrypted");

////UTF8 Encoding, remove escape back slashes, and convert the decrypted string to a JSON object...
$sanitizedData = utf8_encode(stripslashes($decrypted));
$order         = json_decode($decrypted);

1 个答案:

答案 0 :(得分:0)

$notification_array = json_decode(utf8_encode(stripslashes(trim(openssl_decrypt($encrypted,
                                 'AES-256-CBC',
                                 substr(sha1($secretKey), 0, 32),
                                 OPENSSL_ZERO_PADDING, base64_decode($iv)), "\0..\32"))), true);