LoginController.php 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440
  1. <?php
  2. declare (strict_types = 1);
  3. namespace App\Controller;
  4. use App\JsonRpc\UserServiceInterface;
  5. use App\Tools\CommonService;
  6. use App\Tools\PublicData;
  7. use App\Tools\Result;
  8. use Hyperf\Context\Context;
  9. use PHPStan\Type\Accessory\OversizedArrayType;
  10. use function Hyperf\Support\env;
  11. use Hyperf\Di\Annotation\Inject;
  12. use Hyperf\HttpServer\Annotation\AutoController;
  13. use Hyperf\Validation\Contract\ValidatorFactoryInterface;
  14. use \Phper666\JWTAuth\JWT;
  15. use App\Model\UserToken;
  16. /**
  17. * @AutoController()
  18. */
  19. class LoginController extends AbstractController
  20. {
  21. #[Inject]
  22. protected ValidatorFactoryInterface $validationFactory;
  23. /**
  24. * @var UserServiceInterface
  25. */
  26. #[Inject]
  27. private $userServiceClient;
  28. public function login(Jwt $jwt)
  29. {
  30. $reqData = $this->request->all();
  31. $validator = $this->validationFactory->make(
  32. $reqData,
  33. [
  34. 'username' => 'required',
  35. 'password' => 'required',
  36. 'type' => 'required',
  37. // 'code' => 'required',
  38. ],
  39. [
  40. 'username.required' => '用户名不能为空',
  41. 'password.required' => '密码不能为空',
  42. 'type.required' => '登录方式必填',
  43. // 'code.required' => 'code方式必填',
  44. ]
  45. );
  46. if ($validator->fails()) {
  47. $errorMessage = $validator->errors()->first();
  48. return Result::error($errorMessage);
  49. }
  50. // $comm = new CommonService();
  51. // $redis = $this->container->get(\Hyperf\Redis\Redis::class);
  52. // $code = $redis->get($reqData['code']);
  53. // if (empty($code)) {
  54. // return Result::error("验证码已过期");
  55. // }
  56. // if (strtolower($code) != strtolower($reqData['captcha'])) {
  57. // return Result::error("验证码错误");
  58. // }
  59. $where = [];
  60. if ($reqData['type'] == 1) { //密码登录
  61. $where = [
  62. 'user_name' => $reqData['username'],
  63. ];
  64. }
  65. $userInfos = $this->userServiceClient->verifyUserInfo($where);
  66. if ($userInfos['code'] == 0) {
  67. return Result::error("用户不存在");
  68. }
  69. if($userInfos['data']['status']==0){
  70. return Result::error("用户已经冻结");
  71. }
  72. if (md5(md5($reqData['password']) . $userInfos['data']['salt']) != $userInfos['data']['password']) {
  73. return Result::error("登陆密码错误");
  74. }
  75. if($userInfos['data']['type_id']!=10000){
  76. $authData = [
  77. 'id'=>$userInfos['data']['sszq'],
  78. 'SiteId'=>Context::get("SiteId")
  79. ];
  80. var_dump("参数:",$authData);
  81. $resultAuth = $this->checkUserAuth($authData);
  82. if(!$resultAuth){
  83. return Result::error("您没有权限登陆此网站");
  84. }
  85. }
  86. $userData = [
  87. 'uid' => $userInfos['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  88. 'user_name' => $userInfos['data']['user_name'],
  89. 'mobile' => $userInfos['data']['mobile'],
  90. 'email' => $userInfos['data']['email'],
  91. 'level_id' => $userInfos['data']['level_id'],
  92. 'type_id' => $userInfos['data']['type_id'],
  93. ];
  94. // 使用默认场景登录
  95. $token = $jwt->getToken('default', $userData);
  96. // 检查是否有旧的token
  97. $old_token = UserToken::where('user_id', $userData['uid'])->first();
  98. if (!empty($old_token)) {
  99. $jwt->logout($old_token->token);
  100. try {
  101. $jwt->verifyToken($old_token->token);
  102. }catch (\Exception $exception){
  103. $code = $exception->getCode();
  104. if ($code== 400) {
  105. $new_token = UserToken::where('user_id', $userData['uid'])->update(['token' => $token->toString()]);
  106. if (empty($new_token)) {
  107. return Result::error("Token过期失败!");
  108. }
  109. } else{
  110. return Result::error("Token过期失败!");
  111. }
  112. }
  113. }else{
  114. $usernew_token = $token->toString();
  115. $user_token = UserToken::create([
  116. 'user_id' => $userData['uid'],
  117. 'token' => $usernew_token
  118. ]);
  119. if (empty($user_token)) {
  120. return Result::error("登录失败!");
  121. }
  122. }
  123. $data = [
  124. 'token' => $token->toString(),
  125. 'exp' => $jwt->getTTL($token->toString()),
  126. ];
  127. return Result::success($data);
  128. }
  129. /**
  130. * @return void
  131. */
  132. public function checkVerifyCode(Jwt $jwt)
  133. {
  134. //其它信息暂时不管 先以openid
  135. $reqData = $this->request->all();
  136. $validator = $this->validationFactory->make(
  137. $reqData,
  138. [
  139. 'token' => 'required',
  140. ],
  141. [
  142. 'token.required' => 'token不能为空',
  143. ]
  144. );
  145. if ($validator->fails()) {
  146. $errorMessage = $validator->errors()->first();
  147. return Result::error($errorMessage);
  148. }
  149. $userInfo = $jwt->getClaimsByToken($reqData['token']);
  150. if ($userInfo) {
  151. return Result::success(['token' => $reqData['token']]);
  152. } else {
  153. return Result::error("token无效");
  154. }
  155. }
  156. /**
  157. * 注册或登陆
  158. * @return void
  159. */
  160. public function registerOrLogin(Jwt $jwt)
  161. {
  162. //获取access_token
  163. $reqData = $this->request->all();
  164. $validator = $this->validationFactory->make(
  165. $reqData,
  166. [
  167. 'code' => 'required',
  168. ],
  169. [
  170. 'code.required' => 'code不能为空',
  171. ]
  172. );
  173. if ($validator->fails()) {
  174. $errorMessage = $validator->errors()->first();
  175. return Result::error($errorMessage);
  176. }
  177. $url = env("WECHAT") . "cgi-bin/token?appid=" . env("APPID") . "&secret=" . env("APP_SECRET") . "&grant_type=client_credential";
  178. $result = PublicData::http_get($url);
  179. $accessTokenData = json_decode($result, true);
  180. //获取openid
  181. $url = env("WECHAT") . "sns/jscode2session?appid=" . env("APPID") . "&secret=" . env("APP_SECRET") . "&js_code=" . $reqData['loginCode'] . "&grant_type=authorization_code";
  182. $result = PublicData::http_get($url);
  183. $openInfoData = json_decode($result, true);
  184. if (isset($openInfoData['errcode']) && in_array($openInfoData['errcode'], [40163, 40029])) {
  185. return Result::error($openInfoData['errmsg']);
  186. }
  187. $data = [
  188. 'code' => $reqData['code'],
  189. 'openid' => $openInfoData['openid'],
  190. ];
  191. // 将数组转换为JSON字符串
  192. $jsonData = json_encode($data);
  193. // 初始化cURL会话
  194. $ch = curl_init(env("WECHAT") . "wxa/business/getuserphonenumber?access_token=" . $accessTokenData['access_token']);
  195. // 设置cURL选项 Todo 这里有一万个wc 封装成post方法就报错,后期再研究
  196. curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  197. curl_setopt($ch, CURLOPT_POST, true);
  198. curl_setopt($ch, CURLOPT_POSTFIELDS, $jsonData);
  199. curl_setopt($ch, CURLOPT_HTTPHEADER, [
  200. 'Content-Type: application/json',
  201. 'Content-Length: ' . strlen($jsonData),
  202. ]);
  203. // 执行cURL会话
  204. $response = curl_exec($ch);
  205. // 检查是否有错误发生
  206. if (curl_errno($ch)) {
  207. return Result::error("获取手机号失败");
  208. }
  209. // 关闭cURL会话
  210. curl_close($ch);
  211. $response = json_decode($response, true);
  212. if ($response['errcode'] == '40029') {
  213. return Result::error($openInfoData['errmsg']);
  214. }
  215. // 打印响应内容
  216. var_dump($openInfoData, $response);
  217. //根据openid 获取token
  218. $checkUserInfo = $this->userServiceClient->verifyUserInfo([
  219. 'user_name' => $response['phone_info']['purePhoneNumber'],
  220. ]);
  221. if ($checkUserInfo['code'] == 0) {
  222. $salt = rand(1, 999999);
  223. $createUserData = [
  224. 'user_name' => $response['phone_info']['purePhoneNumber'],
  225. 'salt' => $salt,
  226. 'password' => $openInfoData['openid'],
  227. 'type_id' => 20000,
  228. ];
  229. $checkUserInfo = $this->userServiceClient->createUser($createUserData);
  230. }
  231. //根据openid和手机号判断是否注册,未注册直接注册
  232. $wechatReqData = [
  233. 'openid' => $openInfoData['openid'],
  234. 'purePhoneNumber' => $response['phone_info']['purePhoneNumber'],
  235. ];
  236. $wechatInfo = $this->userServiceClient->getWechatInfo($wechatReqData);
  237. if ($wechatInfo['code'] == 0) {
  238. $wechatData = [
  239. 'openid' => $openInfoData['openid'],
  240. 'phoneNumber' => $response['phone_info']['phoneNumber'],
  241. 'purePhoneNumber' => $response['phone_info']['purePhoneNumber'],
  242. 'countryCode' => $response['phone_info']['countryCode'],
  243. 'watermark' => json_encode($response['phone_info']['watermark']),
  244. 'user_id' => $checkUserInfo['data']['id'],
  245. ];
  246. $this->userServiceClient->addWechatInfo($wechatData);
  247. }
  248. var_dump($checkUserInfo);
  249. $userData = [
  250. 'uid' => $checkUserInfo['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  251. 'user_name' => $response['phone_info']['phoneNumber'],
  252. 'mobile' => $checkUserInfo['data']['mobile'] ?? '',
  253. 'email' => $checkUserInfo['data']['email'],
  254. // 'rong_token' => $userInfos['data']['rong_token'],
  255. 'level_id' => $checkUserInfo['data']['level_id'],
  256. 'type_id' => $checkUserInfo['data']['type_id'],
  257. ];
  258. // 使用默认场景登录
  259. $token = $jwt->getToken('default', $userData);
  260. $data = [
  261. 'token' => $token->toString(),
  262. 'exp' => $jwt->getTTL($token->toString()),
  263. ];
  264. return Result::success($data);
  265. }
  266. public function getToken(JWT $jwt)
  267. {
  268. $reqData = $this->request->all();
  269. $userInfos = $this->userServiceClient->getUserInfo((int) $reqData['id']);
  270. $userData = [
  271. 'uid' => $userInfos['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  272. 'user_name' => $userInfos['data']['user_name'],
  273. 'mobile' => $userInfos['data']['mobile'],
  274. 'email' => $userInfos['data']['email'],
  275. 'level_id' => $userInfos['data']['level_id'],
  276. 'type_id' => $userInfos['data']['type_id'],
  277. ];
  278. var_dump($userInfos);
  279. // 使用默认场景登录
  280. $token = $jwt->getToken('default', $userData);
  281. return Result::success($token->toString());
  282. }
  283. public function httpPost()
  284. {
  285. }
  286. # http头部必须携带token才能访问的路由
  287. public function getData(Jwt $jwt)
  288. {
  289. // var_dump($this->UserId);
  290. $h = $this->request->getHeaders();
  291. // var_dump($this->request->getHeaders());
  292. // $a= 'eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJpc3MiOiJwaHBlcjY2Ni9qd3QiLCJ1aWQiOjMyLCJ1c2VyX25hbWUiOiIxIiwicm9sZV9pZCI6MSwibW9iaWxlIjoiMTU4MDEyNDU3NTUiLCJlbWFpbCI6IjVAcXEuY29tIiwicm9uZ190b2tlbiI6IiIsImxldmVsX2lkIjo4LCJqd3Rfc2NlbmUiOiJkZWZhdWx0IiwianRpIjoiZGVmYXVsdF82Njc1MjJkZDQ3YWYxMi41MTE5MjI5MiIsImlhdCI6MTcxODk1MjY2OSwibmJmIjoxNzE4OTUyNjY5LCJleHAiOjE3MjE1NDQ2Njl9.e0JW8fgNrwBdFgmQ8GNtES2ME1SbcbIih5MsQWzT6sk';
  293. $arr = $jwt->getClaimsByToken($h['token'][0]);
  294. var_dump($h['token'][0], "+++++++++++", $arr, "===####");
  295. return $this->response->json(['code' => 0, 'msg' => 'success', 'data' => ['a' => 1]]);
  296. }
  297. /**
  298. * 检测用户权限
  299. * @return void
  300. */
  301. public function checkUserAuth($data)
  302. {
  303. $websiteGroup = [
  304. 'id'=>$data['id']
  305. ];
  306. $result = $this->userServiceClient->getWebsiteGroupInfo($websiteGroup);
  307. if($result['code']==200){
  308. if($data['SiteId'] && $result['data']['web_ids']){
  309. if(in_array($data['SiteId'],json_decode($result['data']['web_ids'],true))){
  310. return true;
  311. }
  312. }else{
  313. return false;
  314. }
  315. }
  316. }
  317. /**
  318. * 查询登陆状态
  319. * @return array
  320. * @throws \Psr\Container\ContainerExceptionInterface
  321. * @throws \Psr\Container\NotFoundExceptionInterface
  322. * @throws \RedisException
  323. */
  324. public function loginStatus()
  325. {
  326. $reqData = $this->request->all();
  327. $validator = $this->validationFactory->make(
  328. $reqData,
  329. [
  330. 'token' => 'required',
  331. ],
  332. [
  333. 'token.required' => 'token不能为空',
  334. ]
  335. );
  336. if ($validator->fails()) {
  337. $errorMessage = $validator->errors()->first();
  338. return Result::error($errorMessage);
  339. }
  340. $redis = $this->container->get(\Hyperf\Redis\Redis::class);
  341. $token = md5(urldecode($reqData['token']));
  342. $ticketEnabled = $redis->exists('ticket:' . $token);
  343. if ($ticketEnabled) {
  344. return Result::success(['isLogin' => true]);
  345. } else {
  346. return Result::error('token已过期');
  347. }
  348. }
  349. /**
  350. *登陆
  351. * @return void
  352. */
  353. public function loginapi()
  354. {
  355. $reqData = $this->request->all();
  356. $validator = $this->validationFactory->make(
  357. $reqData,
  358. [
  359. 'token' => 'required',
  360. ],
  361. [
  362. 'token.required' => 'token不能为空',
  363. ]
  364. );
  365. if ($validator->fails()) {
  366. $errorMessage = $validator->errors()->first();
  367. return Result::error($errorMessage);
  368. }
  369. $redis = $this->container->get(\Hyperf\Redis\Redis::class);
  370. $ticket = md5($reqData['token']);
  371. $res = $redis->set('ticket:' . $ticket, $reqData['token'], 3600*24);
  372. if ($res){
  373. return Result::success(['ticket' => $ticket ,'isSave' => 1]);
  374. } else {
  375. return Result::error('存储失败');
  376. }
  377. }
  378. public function logoutapi()
  379. {
  380. $reqData = $this->request->all();
  381. $validator = $this->validationFactory->make(
  382. $reqData,
  383. [
  384. 'token' => 'required',
  385. ],
  386. [
  387. 'token.required' => 'token不能为空',
  388. ]
  389. );
  390. if ($validator->fails()) {
  391. $errorMessage = $validator->errors()->first();
  392. return Result::error($errorMessage);
  393. }
  394. $redis = $this->container->get(\Hyperf\Redis\Redis::class);
  395. $ticket = md5($reqData['token']);
  396. $isDel = 0;
  397. if ($redis->exists('ticket:' . $ticket)) {
  398. $res = $redis->del('ticket:' . $ticket);
  399. if (!!$res && $res == 1) $isDel = 1;
  400. }else{
  401. $isDel = 1;
  402. }
  403. return Result::success(['isDel' => $isDel]);
  404. }
  405. public function goLogin()
  406. {
  407. }
  408. }