LoginController.php 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316
  1. <?php
  2. declare (strict_types = 1);
  3. namespace App\Controller;
  4. use App\JsonRpc\UserServiceInterface;
  5. use App\Tools\CommonService;
  6. use App\Tools\PublicData;
  7. use App\Tools\Result;
  8. use function Hyperf\Support\env;
  9. use Hyperf\Di\Annotation\Inject;
  10. use Hyperf\HttpServer\Annotation\AutoController;
  11. use Hyperf\Validation\Contract\ValidatorFactoryInterface;
  12. use \Phper666\JWTAuth\JWT;
  13. use App\Model\UserToken;
  14. /**
  15. * @AutoController()
  16. */
  17. class LoginController extends AbstractController
  18. {
  19. #[Inject]
  20. protected ValidatorFactoryInterface $validationFactory;
  21. /**
  22. * @var UserServiceInterface
  23. */
  24. #[Inject]
  25. private $userServiceClient;
  26. public function login(Jwt $jwt)
  27. {
  28. var_dump("我要登陆了");
  29. // $this->logger->info("验证之前");
  30. $reqData = $this->request->all();
  31. $validator = $this->validationFactory->make(
  32. $reqData,
  33. [
  34. 'username' => 'required',
  35. 'password' => 'required',
  36. 'type' => 'required',
  37. ],
  38. [
  39. 'username.required' => '用户名不能为空',
  40. 'password.required' => '密码不能为空',
  41. 'type.required' => '登录方式必填',
  42. ]
  43. );
  44. if ($validator->fails()) {
  45. $errorMessage = $validator->errors()->first();
  46. return Result::error($errorMessage);
  47. }
  48. $comm = new CommonService();
  49. $ip = $comm->userIp();
  50. $redis = $this->container->get(\Hyperf\Redis\Redis::class);
  51. $code = $redis->get('code' . $ip);
  52. if (empty($code)) {
  53. return Result::error("验证码已过期");
  54. }
  55. var_dump("验证码:", $code);
  56. var_dump((strtolower($code) . strtolower($reqData['captcha'])));
  57. if (strtolower($code) != strtolower($reqData['captcha'])) {
  58. return Result::error("验证码错误");
  59. }
  60. //$reqData
  61. $where = [];
  62. if ($reqData['type'] == 1) { //密码登录
  63. $where = [
  64. 'user_name' => $reqData['username'],
  65. ];
  66. }
  67. // var_dump("where:", $where);
  68. // $this->logger->info("验证之前");
  69. $userInfos = $this->userServiceClient->verifyUserInfo($where);
  70. if ($userInfos['code'] == 0) {
  71. return Result::error("用户不存在");
  72. }
  73. // var_dump("数据:",$userInfos);
  74. if($userInfos['data']['status']==0){
  75. return Result::error("用户已经冻结");
  76. }
  77. // var_dump("用户信息:", $userInfos);
  78. // $this->logger->info("验证用户返回值:", $userInfos);
  79. if (md5(md5($reqData['password']) . $userInfos['data']['salt']) != $userInfos['data']['password']) {
  80. return Result::error("登陆密码错误");
  81. }
  82. $userData = [
  83. 'uid' => $userInfos['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  84. 'user_name' => $userInfos['data']['user_name'],
  85. 'mobile' => $userInfos['data']['mobile'],
  86. 'email' => $userInfos['data']['email'],
  87. // 'rong_token' => $userInfos['data']['rong_token'],
  88. 'level_id' => $userInfos['data']['level_id'],
  89. 'type_id' => $userInfos['data']['type_id'],
  90. ];
  91. // var_dump($userData);
  92. // 使用默认场景登录
  93. $token = $jwt->getToken('default', $userData);
  94. // 检查是否二次登录
  95. // 检查是否有旧的token
  96. // var_dump("--------------",$userData['uid']);
  97. // return Result::success($userData['uid']);
  98. $old_token = UserToken::where('user_id', $userData['uid'])->first();
  99. // var_dump("==============================old_token",$old_token->token->toString());
  100. if (!empty($old_token)) {
  101. if ($old_token->token != $token->toString()) {
  102. $out = $jwt->logout($old_token->token);
  103. $time = $jwt->getTokenDynamicCacheTime($old_token->token);
  104. if ($time == 0) {
  105. $new_token = UserToken::where('user_id', $$userData['uid'])->update(['token' => $out]);
  106. // var_dump("******************log_out",$log_out);
  107. }
  108. if(!isset($new_token) || empty($new_token)) {
  109. return Result::error("Token过期失败!");
  110. }
  111. }
  112. }else{
  113. $user_token = UserToken::create([
  114. 'user_id' => $userData['uid'],
  115. 'token' => $token->toString()
  116. ]);
  117. var_dump("==============================user_token",$token->toString());
  118. if (empty($user_token)) {
  119. return Result::error("登录失败!");
  120. }
  121. }
  122. $data = [
  123. 'token' => $token->toString(),
  124. 'exp' => $jwt->getTTL($token->toString()),
  125. ];
  126. return Result::success($data);
  127. }
  128. /**
  129. * @return void
  130. */
  131. public function checkVerifyCode(Jwt $jwt)
  132. {
  133. //其它信息暂时不管 先以openid
  134. $reqData = $this->request->all();
  135. $validator = $this->validationFactory->make(
  136. $reqData,
  137. [
  138. 'token' => 'required',
  139. ],
  140. [
  141. 'token.required' => 'token不能为空',
  142. ]
  143. );
  144. if ($validator->fails()) {
  145. $errorMessage = $validator->errors()->first();
  146. return Result::error($errorMessage);
  147. }
  148. $userInfo = $jwt->getClaimsByToken($reqData['token']);
  149. if ($userInfo) {
  150. return Result::success(['token' => $reqData['token']]);
  151. } else {
  152. return Result::error("token无效");
  153. }
  154. }
  155. /**
  156. * 注册或登陆
  157. * @return void
  158. */
  159. public function registerOrLogin(Jwt $jwt)
  160. {
  161. //获取access_token
  162. $reqData = $this->request->all();
  163. $validator = $this->validationFactory->make(
  164. $reqData,
  165. [
  166. 'code' => 'required',
  167. ],
  168. [
  169. 'code.required' => 'code不能为空',
  170. ]
  171. );
  172. if ($validator->fails()) {
  173. $errorMessage = $validator->errors()->first();
  174. return Result::error($errorMessage);
  175. }
  176. $url = env("WECHAT") . "cgi-bin/token?appid=" . env("APPID") . "&secret=" . env("APP_SECRET") . "&grant_type=client_credential";
  177. $result = PublicData::http_get($url);
  178. $accessTokenData = json_decode($result, true);
  179. //获取openid
  180. $url = env("WECHAT") . "sns/jscode2session?appid=" . env("APPID") . "&secret=" . env("APP_SECRET") . "&js_code=" . $reqData['loginCode'] . "&grant_type=authorization_code";
  181. $result = PublicData::http_get($url);
  182. $openInfoData = json_decode($result, true);
  183. if (isset($openInfoData['errcode']) && in_array($openInfoData['errcode'], [40163, 40029])) {
  184. return Result::error($openInfoData['errmsg']);
  185. }
  186. $data = [
  187. 'code' => $reqData['code'],
  188. 'openid' => $openInfoData['openid'],
  189. ];
  190. // 将数组转换为JSON字符串
  191. $jsonData = json_encode($data);
  192. // 初始化cURL会话
  193. $ch = curl_init(env("WECHAT") . "wxa/business/getuserphonenumber?access_token=" . $accessTokenData['access_token']);
  194. // 设置cURL选项 Todo 这里有一万个wc 封装成post方法就报错,后期再研究
  195. curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  196. curl_setopt($ch, CURLOPT_POST, true);
  197. curl_setopt($ch, CURLOPT_POSTFIELDS, $jsonData);
  198. curl_setopt($ch, CURLOPT_HTTPHEADER, [
  199. 'Content-Type: application/json',
  200. 'Content-Length: ' . strlen($jsonData),
  201. ]);
  202. // 执行cURL会话
  203. $response = curl_exec($ch);
  204. // 检查是否有错误发生
  205. if (curl_errno($ch)) {
  206. return Result::error("获取手机号失败");
  207. }
  208. // 关闭cURL会话
  209. curl_close($ch);
  210. $response = json_decode($response, true);
  211. if ($response['errcode'] == '40029') {
  212. return Result::error($openInfoData['errmsg']);
  213. }
  214. // 打印响应内容
  215. var_dump($openInfoData, $response);
  216. //根据openid 获取token
  217. $checkUserInfo = $this->userServiceClient->verifyUserInfo([
  218. 'user_name' => $response['phone_info']['purePhoneNumber'],
  219. ]);
  220. if ($checkUserInfo['code'] == 0) {
  221. $salt = rand(1, 999999);
  222. $createUserData = [
  223. 'user_name' => $response['phone_info']['purePhoneNumber'],
  224. 'salt' => $salt,
  225. 'password' => $openInfoData['openid'],
  226. 'type_id' => 20000,
  227. ];
  228. $checkUserInfo = $this->userServiceClient->createUser($createUserData);
  229. }
  230. //根据openid和手机号判断是否注册,未注册直接注册
  231. $wechatReqData = [
  232. 'openid' => $openInfoData['openid'],
  233. 'purePhoneNumber' => $response['phone_info']['purePhoneNumber'],
  234. ];
  235. $wechatInfo = $this->userServiceClient->getWechatInfo($wechatReqData);
  236. if ($wechatInfo['code'] == 0) {
  237. $wechatData = [
  238. 'openid' => $openInfoData['openid'],
  239. 'phoneNumber' => $response['phone_info']['phoneNumber'],
  240. 'purePhoneNumber' => $response['phone_info']['purePhoneNumber'],
  241. 'countryCode' => $response['phone_info']['countryCode'],
  242. 'watermark' => json_encode($response['phone_info']['watermark']),
  243. 'user_id' => $checkUserInfo['data']['id'],
  244. ];
  245. $this->userServiceClient->addWechatInfo($wechatData);
  246. }
  247. var_dump($checkUserInfo);
  248. $userData = [
  249. 'uid' => $checkUserInfo['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  250. 'user_name' => $response['phone_info']['phoneNumber'],
  251. 'mobile' => $checkUserInfo['data']['mobile'] ?? '',
  252. 'email' => $checkUserInfo['data']['email'],
  253. // 'rong_token' => $userInfos['data']['rong_token'],
  254. 'level_id' => $checkUserInfo['data']['level_id'],
  255. 'type_id' => $checkUserInfo['data']['type_id'],
  256. ];
  257. // 使用默认场景登录
  258. $token = $jwt->getToken('default', $userData);
  259. $data = [
  260. 'token' => $token->toString(),
  261. 'exp' => $jwt->getTTL($token->toString()),
  262. ];
  263. return Result::success($data);
  264. }
  265. public function getToken(JWT $jwt)
  266. {
  267. $reqData = $this->request->all();
  268. $userInfos = $this->userServiceClient->getUserInfo((int) $reqData['id']);
  269. $userData = [
  270. 'uid' => $userInfos['data']['id'], // 如果使用单点登录,必须存在配置文件中的sso_key的值,一般设置为用户的id
  271. 'user_name' => $userInfos['data']['user_name'],
  272. 'mobile' => $userInfos['data']['mobile'],
  273. 'email' => $userInfos['data']['email'],
  274. 'level_id' => $userInfos['data']['level_id'],
  275. 'type_id' => $userInfos['data']['type_id'],
  276. ];
  277. var_dump($userInfos);
  278. // 使用默认场景登录
  279. $token = $jwt->getToken('default', $userData);
  280. return Result::success($token->toString());
  281. }
  282. public function httpPost()
  283. {
  284. }
  285. # http头部必须携带token才能访问的路由
  286. public function getData(Jwt $jwt)
  287. {
  288. // var_dump($this->UserId);
  289. $h = $this->request->getHeaders();
  290. // var_dump($this->request->getHeaders());
  291. // $a= 'eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJpc3MiOiJwaHBlcjY2Ni9qd3QiLCJ1aWQiOjMyLCJ1c2VyX25hbWUiOiIxIiwicm9sZV9pZCI6MSwibW9iaWxlIjoiMTU4MDEyNDU3NTUiLCJlbWFpbCI6IjVAcXEuY29tIiwicm9uZ190b2tlbiI6IiIsImxldmVsX2lkIjo4LCJqd3Rfc2NlbmUiOiJkZWZhdWx0IiwianRpIjoiZGVmYXVsdF82Njc1MjJkZDQ3YWYxMi41MTE5MjI5MiIsImlhdCI6MTcxODk1MjY2OSwibmJmIjoxNzE4OTUyNjY5LCJleHAiOjE3MjE1NDQ2Njl9.e0JW8fgNrwBdFgmQ8GNtES2ME1SbcbIih5MsQWzT6sk';
  292. $arr = $jwt->getClaimsByToken($h['token'][0]);
  293. var_dump($h['token'][0], "+++++++++++", $arr, "===####");
  294. return $this->response->json(['code' => 0, 'msg' => 'success', 'data' => ['a' => 1]]);
  295. }
  296. }