LoginController.php 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340
  1. <?php
  2. declare (strict_types = 1);
  3. namespace App\Controller;
  4. use App\JsonRpc\UserServiceInterface;
  5. use App\Tools\CommonService;
  6. use App\Tools\PublicData;
  7. use App\Tools\Result;
  8. use Hyperf\Context\Context;
  9. use function Hyperf\Support\env;
  10. use Hyperf\Di\Annotation\Inject;
  11. use Hyperf\HttpServer\Annotation\AutoController;
  12. use Hyperf\Validation\Contract\ValidatorFactoryInterface;
  13. use \Phper666\JWTAuth\JWT;
  14. use App\Model\UserToken;
  15. /**
  16. * @AutoController()
  17. */
  18. class LoginController extends AbstractController
  19. {
  20. #[Inject]
  21. protected ValidatorFactoryInterface $validationFactory;
  22. /**
  23. * @var UserServiceInterface
  24. */
  25. #[Inject]
  26. private $userServiceClient;
  27. public function login(Jwt $jwt)
  28. {
  29. $reqData = $this->request->all();
  30. $validator = $this->validationFactory->make(
  31. $reqData,
  32. [
  33. 'username' => 'required',
  34. 'password' => 'required',
  35. 'type' => 'required',
  36. 'code' => 'required',
  37. ],
  38. [
  39. 'username.required' => '用户名不能为空',
  40. 'password.required' => '密码不能为空',
  41. 'type.required' => '登录方式必填',
  42. 'code.required' => 'code方式必填',
  43. ]
  44. );
  45. if ($validator->fails()) {
  46. $errorMessage = $validator->errors()->first();
  47. return Result::error($errorMessage);
  48. }
  49. // $comm = new CommonService();
  50. $redis = $this->container->get(\Hyperf\Redis\Redis::class);
  51. $code = $redis->get($reqData['code']);
  52. if (empty($code)) {
  53. return Result::error("验证码已过期");
  54. }
  55. if (strtolower($code) != strtolower($reqData['captcha'])) {
  56. return Result::error("验证码错误");
  57. }
  58. $where = [];
  59. if ($reqData['type'] == 1) { //密码登录
  60. $where = [
  61. 'user_name' => $reqData['username'],
  62. ];
  63. }
  64. $userInfos = $this->userServiceClient->verifyUserInfo($where);
  65. if ($userInfos['code'] == 0) {
  66. return Result::error("用户不存在");
  67. }
  68. if($userInfos['data']['status']==0){
  69. return Result::error("用户已经冻结");
  70. }
  71. if (md5(md5($reqData['password']) . $userInfos['data']['salt']) != $userInfos['data']['password']) {
  72. return Result::error("登陆密码错误");
  73. }
  74. if($userInfos['data']['type_id']!=10000){
  75. $authData = [
  76. 'id'=>$userInfos['data']['sszq'],
  77. 'SiteId'=>Context::get("SiteId")
  78. ];
  79. var_dump("参数:",$authData);
  80. $resultAuth = $this->checkUserAuth($authData);
  81. if(!$resultAuth){
  82. return Result::error("您没有权限登陆此网站");
  83. }
  84. }
  85. $userData = [
  86. 'uid' => $userInfos['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  87. 'user_name' => $userInfos['data']['user_name'],
  88. 'mobile' => $userInfos['data']['mobile'],
  89. 'email' => $userInfos['data']['email'],
  90. 'level_id' => $userInfos['data']['level_id'],
  91. 'type_id' => $userInfos['data']['type_id'],
  92. ];
  93. // 使用默认场景登录
  94. $token = $jwt->getToken('default', $userData);
  95. // 检查是否有旧的token
  96. $old_token = UserToken::where('user_id', $userData['uid'])->first();
  97. if (!empty($old_token)) {
  98. $jwt->logout($old_token->token);
  99. try {
  100. $jwt->verifyToken($old_token->token);
  101. }catch (\Exception $exception){
  102. $code = $exception->getCode();
  103. if ($code== 400) {
  104. $new_token = UserToken::where('user_id', $userData['uid'])->update(['token' => $token->toString()]);
  105. if (empty($new_token)) {
  106. return Result::error("Token过期失败!");
  107. }
  108. } else{
  109. return Result::error("Token过期失败!");
  110. }
  111. }
  112. }else{
  113. $usernew_token = $token->toString();
  114. $user_token = UserToken::create([
  115. 'user_id' => $userData['uid'],
  116. 'token' => $usernew_token
  117. ]);
  118. if (empty($user_token)) {
  119. return Result::error("登录失败!");
  120. }
  121. }
  122. $data = [
  123. 'token' => $token->toString(),
  124. 'exp' => $jwt->getTTL($token->toString()),
  125. ];
  126. return Result::success($data);
  127. }
  128. /**
  129. * @return void
  130. */
  131. public function checkVerifyCode(Jwt $jwt)
  132. {
  133. //其它信息暂时不管 先以openid
  134. $reqData = $this->request->all();
  135. $validator = $this->validationFactory->make(
  136. $reqData,
  137. [
  138. 'token' => 'required',
  139. ],
  140. [
  141. 'token.required' => 'token不能为空',
  142. ]
  143. );
  144. if ($validator->fails()) {
  145. $errorMessage = $validator->errors()->first();
  146. return Result::error($errorMessage);
  147. }
  148. $userInfo = $jwt->getClaimsByToken($reqData['token']);
  149. if ($userInfo) {
  150. return Result::success(['token' => $reqData['token']]);
  151. } else {
  152. return Result::error("token无效");
  153. }
  154. }
  155. /**
  156. * 注册或登陆
  157. * @return void
  158. */
  159. public function registerOrLogin(Jwt $jwt)
  160. {
  161. //获取access_token
  162. $reqData = $this->request->all();
  163. $validator = $this->validationFactory->make(
  164. $reqData,
  165. [
  166. 'code' => 'required',
  167. ],
  168. [
  169. 'code.required' => 'code不能为空',
  170. ]
  171. );
  172. if ($validator->fails()) {
  173. $errorMessage = $validator->errors()->first();
  174. return Result::error($errorMessage);
  175. }
  176. $url = env("WECHAT") . "cgi-bin/token?appid=" . env("APPID") . "&secret=" . env("APP_SECRET") . "&grant_type=client_credential";
  177. $result = PublicData::http_get($url);
  178. $accessTokenData = json_decode($result, true);
  179. //获取openid
  180. $url = env("WECHAT") . "sns/jscode2session?appid=" . env("APPID") . "&secret=" . env("APP_SECRET") . "&js_code=" . $reqData['loginCode'] . "&grant_type=authorization_code";
  181. $result = PublicData::http_get($url);
  182. $openInfoData = json_decode($result, true);
  183. if (isset($openInfoData['errcode']) && in_array($openInfoData['errcode'], [40163, 40029])) {
  184. return Result::error($openInfoData['errmsg']);
  185. }
  186. $data = [
  187. 'code' => $reqData['code'],
  188. 'openid' => $openInfoData['openid'],
  189. ];
  190. // 将数组转换为JSON字符串
  191. $jsonData = json_encode($data);
  192. // 初始化cURL会话
  193. $ch = curl_init(env("WECHAT") . "wxa/business/getuserphonenumber?access_token=" . $accessTokenData['access_token']);
  194. // 设置cURL选项 Todo 这里有一万个wc 封装成post方法就报错,后期再研究
  195. curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  196. curl_setopt($ch, CURLOPT_POST, true);
  197. curl_setopt($ch, CURLOPT_POSTFIELDS, $jsonData);
  198. curl_setopt($ch, CURLOPT_HTTPHEADER, [
  199. 'Content-Type: application/json',
  200. 'Content-Length: ' . strlen($jsonData),
  201. ]);
  202. // 执行cURL会话
  203. $response = curl_exec($ch);
  204. // 检查是否有错误发生
  205. if (curl_errno($ch)) {
  206. return Result::error("获取手机号失败");
  207. }
  208. // 关闭cURL会话
  209. curl_close($ch);
  210. $response = json_decode($response, true);
  211. if ($response['errcode'] == '40029') {
  212. return Result::error($openInfoData['errmsg']);
  213. }
  214. // 打印响应内容
  215. var_dump($openInfoData, $response);
  216. //根据openid 获取token
  217. $checkUserInfo = $this->userServiceClient->verifyUserInfo([
  218. 'user_name' => $response['phone_info']['purePhoneNumber'],
  219. ]);
  220. if ($checkUserInfo['code'] == 0) {
  221. $salt = rand(1, 999999);
  222. $createUserData = [
  223. 'user_name' => $response['phone_info']['purePhoneNumber'],
  224. 'salt' => $salt,
  225. 'password' => $openInfoData['openid'],
  226. 'type_id' => 20000,
  227. ];
  228. $checkUserInfo = $this->userServiceClient->createUser($createUserData);
  229. }
  230. //根据openid和手机号判断是否注册,未注册直接注册
  231. $wechatReqData = [
  232. 'openid' => $openInfoData['openid'],
  233. 'purePhoneNumber' => $response['phone_info']['purePhoneNumber'],
  234. ];
  235. $wechatInfo = $this->userServiceClient->getWechatInfo($wechatReqData);
  236. if ($wechatInfo['code'] == 0) {
  237. $wechatData = [
  238. 'openid' => $openInfoData['openid'],
  239. 'phoneNumber' => $response['phone_info']['phoneNumber'],
  240. 'purePhoneNumber' => $response['phone_info']['purePhoneNumber'],
  241. 'countryCode' => $response['phone_info']['countryCode'],
  242. 'watermark' => json_encode($response['phone_info']['watermark']),
  243. 'user_id' => $checkUserInfo['data']['id'],
  244. ];
  245. $this->userServiceClient->addWechatInfo($wechatData);
  246. }
  247. var_dump($checkUserInfo);
  248. $userData = [
  249. 'uid' => $checkUserInfo['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  250. 'user_name' => $response['phone_info']['phoneNumber'],
  251. 'mobile' => $checkUserInfo['data']['mobile'] ?? '',
  252. 'email' => $checkUserInfo['data']['email'],
  253. // 'rong_token' => $userInfos['data']['rong_token'],
  254. 'level_id' => $checkUserInfo['data']['level_id'],
  255. 'type_id' => $checkUserInfo['data']['type_id'],
  256. ];
  257. // 使用默认场景登录
  258. $token = $jwt->getToken('default', $userData);
  259. $data = [
  260. 'token' => $token->toString(),
  261. 'exp' => $jwt->getTTL($token->toString()),
  262. ];
  263. return Result::success($data);
  264. }
  265. public function getToken(JWT $jwt)
  266. {
  267. $reqData = $this->request->all();
  268. $userInfos = $this->userServiceClient->getUserInfo((int) $reqData['id']);
  269. $userData = [
  270. 'uid' => $userInfos['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  271. 'user_name' => $userInfos['data']['user_name'],
  272. 'mobile' => $userInfos['data']['mobile'],
  273. 'email' => $userInfos['data']['email'],
  274. 'level_id' => $userInfos['data']['level_id'],
  275. 'type_id' => $userInfos['data']['type_id'],
  276. ];
  277. var_dump($userInfos);
  278. // 使用默认场景登录
  279. $token = $jwt->getToken('default', $userData);
  280. return Result::success($token->toString());
  281. }
  282. public function httpPost()
  283. {
  284. }
  285. # http头部必须携带token才能访问的路由
  286. public function getData(Jwt $jwt)
  287. {
  288. // var_dump($this->UserId);
  289. $h = $this->request->getHeaders();
  290. // var_dump($this->request->getHeaders());
  291. // $a= 'eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJpc3MiOiJwaHBlcjY2Ni9qd3QiLCJ1aWQiOjMyLCJ1c2VyX25hbWUiOiIxIiwicm9sZV9pZCI6MSwibW9iaWxlIjoiMTU4MDEyNDU3NTUiLCJlbWFpbCI6IjVAcXEuY29tIiwicm9uZ190b2tlbiI6IiIsImxldmVsX2lkIjo4LCJqd3Rfc2NlbmUiOiJkZWZhdWx0IiwianRpIjoiZGVmYXVsdF82Njc1MjJkZDQ3YWYxMi41MTE5MjI5MiIsImlhdCI6MTcxODk1MjY2OSwibmJmIjoxNzE4OTUyNjY5LCJleHAiOjE3MjE1NDQ2Njl9.e0JW8fgNrwBdFgmQ8GNtES2ME1SbcbIih5MsQWzT6sk';
  292. $arr = $jwt->getClaimsByToken($h['token'][0]);
  293. var_dump($h['token'][0], "+++++++++++", $arr, "===####");
  294. return $this->response->json(['code' => 0, 'msg' => 'success', 'data' => ['a' => 1]]);
  295. }
  296. /**
  297. * 检测用户权限
  298. * @return void
  299. */
  300. public function checkUserAuth($data)
  301. {
  302. $websiteGroup = [
  303. 'id'=>$data['id']
  304. ];
  305. $result = $this->userServiceClient->getWebsiteGroupInfo($websiteGroup);
  306. if($result['code']==200){
  307. if($data['SiteId'] && $result['data']['web_ids']){
  308. if(in_array($data['SiteId'],json_decode($result['data']['web_ids'],true))){
  309. return true;
  310. }
  311. }else{
  312. return false;
  313. }
  314. }
  315. }
  316. }