AuthController.php 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370
  1. <?php
  2. namespace App\Http\Controllers\Api\V1;
  3. use App\Helper\AttachmentHelper;
  4. use App\Helper\JpushHelper;
  5. use App\Helper\SmsHelper;
  6. use Illuminate\Foundation\Auth\AuthenticatesUsers;
  7. use App\Models\UserInfoModel;
  8. use Illuminate\Http\Request;
  9. use App\Services\Base\ErrorCode;
  10. use Validator, Auth, Cache;
  11. class AuthController extends Controller
  12. {
  13. use SmsHelper,AuthenticatesUsers,AttachmentHelper,JpushHelper;
  14. private $expireTime = 1;
  15. private $keySmsCode = 'auth:sms:';
  16. private $keySmsCodeExist = 'auth:sms:exist';
  17. private $expireTimeExist = 24*60;
  18. public function test(){
  19. // return $this->error(ErrorCode::SAVE_USER_FAILED);
  20. return $this->api(['test' => 'test']);
  21. }
  22. /**
  23. * @api {post} /api/auth/login 登陆(login)
  24. * @apiDescription 登陆(login)
  25. * @apiGroup Auth
  26. * @apiPermission none
  27. * @apiVersion 0.1.0
  28. * @apiParam {string} phone 手机号码
  29. * @apiParam {string} [jpush]
  30. * @apiParam {string} wechat 微信openid
  31. * @apiParam {String} verify_code 手机验证码
  32. * @apiSuccessExample {json} Success-Response:
  33. * HTTP/1.1 200 OK
  34. * {
  35. * "state": true,
  36. * "code": 0,
  37. * "message": "",
  38. * "data": {
  39. * "token": "eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiIsImp0aSI6IjdjYWUyYzFmYTUwMTIyZDI0ZTRiYTZhZGZhNmQxYmZlOWNiMzIxMTBmYWJlZjNjYzIyNmViZjRmNGExNWM3NjllNmU2ZTNiYWE5OGNhOWUzIn0.eyJhdWQiOiIxIiwianRpIjoiN2NhZTJjMWZhNTAxMjJkMjRlNGJhNmFkZmE2ZDFiZmU5Y2IzMjExMGZhYmVmM2NjMjI2ZWJmNGY0YTE1Yzc2OWU2ZTZlM2JhYTk4Y2E5ZTMiLCJpYXQiOjE0NzU0MTE1NTgsIm5iZiI6MTQ3NTQxMTU1OCwiZXhwIjo0NjMxMDg1MTU4LCJzdWIiOiIxIiwic2NvcGVzIjpbXX0.E9YGEzuRUOk02aV1EiWLJ_pD0hKoCyW0k_sGy63hM3u5X8K_HI1kVhaU6JNLqLZeszIAroTEDB8XMgZKAqTLlwtL8PLCJcuDoxfk1BRHbfjhDheTsahBysKGalvNEpzRCrGlao0mS0Cg9qDpEsndtypPFS8sfaflToOzbJjiSK2DvQiHSH8xZI3zHJTezgZMz-pB_hPTxp8ajdv0ve1gWtWjs3vERr0Y91X4hngO8X7LuXtAYtfxGZRIye12YE7TuLBMYzj8CCfiRt7Smhyf4palNW5mzKlZpa2l87n6NQ14Iy4oMzQ2PON1j_swrosuE2yZohGOn6fDdSCBRdJ6dLD_emjBdQCQOoB63R7BbhFZgvFX25TjzFJ7r9AdVMiGmebuRKEVSZV_JCGu1C71OIbQk-UK35s00gSr2fmJGBbN2cZTXBRTJpfuMZ_ihFYEZrvVq_Ih2X0xkd36JUuxaUld1BXRgPZvH-9jBuhe0YW2OOlgwpdm6ZB8BMcuS4ftLoi6FipgzFqfIuy-0ZqPMDnJaG7Gycrdpxza00mgOFxYxJtqwZNsUWFRZEVU881l6VC_cy294YXSPQxUwEoyKg-G5Pm8AEB9bqv5z4EU4B8-XTd3zKNqtNba_snHbc711i4EytCiZfYSjNB1hwenq45YYOAhPTwOpFI0kxyRazc",
  40. * "user": {
  41. * "id": 1,
  42. * "name": "15888888888",
  43. * "email": "abcdefg@gmail.com",
  44. * "type": 2,
  45. * "phone": "15888888888",
  46. * "avatar": null,
  47. * "last_ip": null,
  48. * "created_at": "2016-09-30 00:45:13",
  49. * "updated_at": "2016-09-29 16:43:36"
  50. * }
  51. * }
  52. * }
  53. * @apiErrorExample {json} Error-Response:
  54. * HTTP/1.1 400 Bad Request
  55. * {
  56. * "state": false,
  57. * "code": 1000,
  58. * "message": "传入参数不正确",
  59. * "data": null or []
  60. * }
  61. * 可能出现的错误代码:
  62. * 1000 CLIENT_WRONG_PARAMS 传入参数不正确
  63. * 1103 VERIFY_CODE_TOO_MUCH 验证码大于5次
  64. * 1610 SERVICE_CODE_FAILED 验证码错误
  65. *
  66. */
  67. public function login(Request $request) {
  68. $validator = Validator::make($request->all(),
  69. [
  70. // 'wechat' => 'required',
  71. 'phone' => 'required|regex:/^1[34578]\d{9}$/',
  72. 'verify_code' => 'required',
  73. ],
  74. [
  75. // 'wechat.required' => '请先绑定微信',
  76. 'phone.required' => '请输入手机号码',
  77. 'phone.regex' => '手机号码格式不正确',
  78. 'verify_code.required' => '短信验证码必填',
  79. ]
  80. );
  81. if ($validator->fails())
  82. return $this->validatorError($validator->messages()->all(),ErrorCode::CLIENT_WRONG_PARAMS);
  83. $phone = $request->phone;
  84. $wechat = $request->wechat;
  85. $jpush = $request->jpush;
  86. $key = $this->keySmsCode . $phone;
  87. $code = Cache::store('file')->get($key);
  88. $password = 123456;
  89. if ($request->verify_code != $code) return $this->error(ErrorCode::SERVICE_CODE_FAILED);
  90. $user = UserInfoModel::where('phone',$phone)->first();
  91. if (empty($user)) {
  92. $user = UserInfoModel::create([
  93. 'phone'=>$phone,
  94. 'wechat'=>$wechat,
  95. 'jpush'=>$jpush,
  96. 'password'=>bcrypt(123456)
  97. ]);
  98. $user->status=1;
  99. $user->save();
  100. }else{
  101. //用户已经存在,重新绑定
  102. $user->wechat=$wechat;
  103. $user->password=bcrypt(123456);
  104. $user->save();
  105. }
  106. $status =empty($user) ? 0 : $user->status;
  107. if ($status == 0) return $this->error(ErrorCode::LOCK_USER);
  108. if (Auth::attempt(['phone'=>$phone,'password'=>$password])) {
  109. $user = Auth::user();
  110. /* if (!empty($wechat)) {
  111. $user->wechat =$wechat;
  112. $user->save();
  113. }*/
  114. \Log::info($user);
  115. $token = $user->createToken($user->phone)->accessToken;
  116. return $this->api(compact( 'user', 'code','token'));
  117. }else{
  118. return $this->error(ErrorCode::INCORRECT_USER_OR_PASS);
  119. }
  120. }
  121. // 第三方登录 微信
  122. /**
  123. * @api {get} /api/auth/wechat_login 微信登陆(login)
  124. * @apiDescription 微信登陆(login)
  125. * @apiGroup Auth
  126. * @apiPermission none
  127. * @apiVersion 0.1.0
  128. * @apiParam {string} wechat 微信id
  129. * @apiSuccessExample {json} Success-Response:
  130. * HTTP/1.1 200 OK
  131. * {
  132. * "state": true,
  133. * "code": 0,
  134. * "message": "",
  135. * "data": {
  136. * "token": "eyJ0eXAiOiJKV1QiLCJhbGciOiJSUzI1NiIsImp0aSI6IjdjYWUyYzFmYTUwMTIyZDI0ZTRiYTZhZGZhNmQxYmZlOWNiMzIxMTBmYWJlZjNjYzIyNmViZjRmNGExNWM3NjllNmU2ZTNiYWE5OGNhOWUzIn0.eyJhdWQiOiIxIiwianRpIjoiN2NhZTJjMWZhNTAxMjJkMjRlNGJhNmFkZmE2ZDFiZmU5Y2IzMjExMGZhYmVmM2NjMjI2ZWJmNGY0YTE1Yzc2OWU2ZTZlM2JhYTk4Y2E5ZTMiLCJpYXQiOjE0NzU0MTE1NTgsIm5iZiI6MTQ3NTQxMTU1OCwiZXhwIjo0NjMxMDg1MTU4LCJzdWIiOiIxIiwic2NvcGVzIjpbXX0.E9YGEzuRUOk02aV1EiWLJ_pD0hKoCyW0k_sGy63hM3u5X8K_HI1kVhaU6JNLqLZeszIAroTEDB8XMgZKAqTLlwtL8PLCJcuDoxfk1BRHbfjhDheTsahBysKGalvNEpzRCrGlao0mS0Cg9qDpEsndtypPFS8sfaflToOzbJjiSK2DvQiHSH8xZI3zHJTezgZMz-pB_hPTxp8ajdv0ve1gWtWjs3vERr0Y91X4hngO8X7LuXtAYtfxGZRIye12YE7TuLBMYzj8CCfiRt7Smhyf4palNW5mzKlZpa2l87n6NQ14Iy4oMzQ2PON1j_swrosuE2yZohGOn6fDdSCBRdJ6dLD_emjBdQCQOoB63R7BbhFZgvFX25TjzFJ7r9AdVMiGmebuRKEVSZV_JCGu1C71OIbQk-UK35s00gSr2fmJGBbN2cZTXBRTJpfuMZ_ihFYEZrvVq_Ih2X0xkd36JUuxaUld1BXRgPZvH-9jBuhe0YW2OOlgwpdm6ZB8BMcuS4ftLoi6FipgzFqfIuy-0ZqPMDnJaG7Gycrdpxza00mgOFxYxJtqwZNsUWFRZEVU881l6VC_cy294YXSPQxUwEoyKg-G5Pm8AEB9bqv5z4EU4B8-XTd3zKNqtNba_snHbc711i4EytCiZfYSjNB1hwenq45YYOAhPTwOpFI0kxyRazc",
  137. * "user": {
  138. * "id": 1,
  139. * "name": "15888888888",
  140. * "email": "abcdefg@gmail.com",
  141. * "type": 2,
  142. * "phone": "15888888888",
  143. * "avatar": null,
  144. * "last_ip": null,
  145. * "created_at": "2016-09-30 00:45:13",
  146. * "updated_at": "2016-09-29 16:43:36"
  147. * }
  148. * }
  149. * }
  150. * @apiErrorExample {json} Error-Response:
  151. * HTTP/1.1 400 Bad Request
  152. */
  153. public function wechatLogin(Request $request) {
  154. $validator = Validator::make($request->all(),
  155. [
  156. 'wechat' => 'required',
  157. ],
  158. [
  159. 'wechat.required' => '微信id不存在',
  160. ]
  161. );
  162. if ($validator->fails())
  163. return $this->validatorError($validator->messages()->all(),ErrorCode::CLIENT_WRONG_PARAMS);
  164. $user = UserInfoModel::where('wechat',$request->wechat)->first();
  165. if (empty($user)) {
  166. // return $this->error(ErrorCode::LOGIN_FAILED);
  167. }else{
  168. $token = $user->createToken($user->phone)->accessToken;
  169. return $this->api(compact( 'user', 'code','token'));
  170. }
  171. }
  172. /**
  173. * @api {get} /api/auth/logout 退出(logout)
  174. * @apiDescription 退出(logout)
  175. * @apiGroup Auth
  176. * @apiPermission Passport
  177. * @apiVersion 0.1.0
  178. * @apiSuccessExample {json} Success-Response:
  179. * HTTP/1.1 200 OK
  180. * {
  181. * "state": true,
  182. * "code": 0,
  183. * "message": "",
  184. * "data": {
  185. * "result": true/false
  186. * }
  187. * }
  188. * @apiErrorExample {json} Error-Response:
  189. * HTTP/1.1 400 Bad Request
  190. * {
  191. * "state": false,
  192. * "code": 1104,
  193. * "message": "退出失败",
  194. * "data": null
  195. * }
  196. * 可能出现的错误代码:
  197. * 1104 LOGOUT_FAILED 退出失败
  198. */
  199. public function logout() {
  200. $user = Auth::guard('api')->user();
  201. if ($user->token()->delete()) {
  202. return $this->api(['result' => true]);
  203. }
  204. return $this->error(ErrorCode::LOGOUT_FAILED);
  205. }
  206. /**
  207. * @api {post} /api/auth/code 获取验证码(get code)
  208. * @apiDescription 获取验证码(get code),验证码有效期暂定为15分钟
  209. * @apiGroup Auth
  210. * @apiPermission none
  211. * @apiVersion 0.1.0
  212. * @apiParam {string} phone 手机
  213. * @apiSuccessExample {json} Success-Response:
  214. * HTTP/1.1 200 OK
  215. * {
  216. * "state": true,
  217. * "code": 0,
  218. * "message": "",
  219. * "data": {
  220. * "verify_code": "1234"//该值调试时使用,sms调通后取消
  221. * }
  222. * }
  223. * @apiErrorExample {json} Error-Response:
  224. * HTTP/1.1 400 Bad Request
  225. * {
  226. * "state": false,
  227. * "code": 1000,
  228. * "message": "传入参数不正确",
  229. * "data": null or []
  230. * }
  231. * 可能出现的错误代码:
  232. * 1000 CLIENT_WRONG_PARAMS 传入参数不正确
  233. */
  234. public function getCode(Request $request)
  235. {
  236. $validator = Validator::make($request->all(),
  237. [
  238. 'phone' => 'required|regex:/^1[34578]\d{9}$/',
  239. ],
  240. [
  241. 'phone.required' => '手机号码必填',
  242. 'phone.regex' => '手机号码格式不正确',
  243. ]
  244. );
  245. if ($validator->fails())
  246. return $this->validatorError($validator->messages()->all(),ErrorCode::CLIENT_WRONG_PARAMS);
  247. $phone = $request->phone;
  248. $keyexist = $this->keySmsCodeExist . $phone;
  249. $times = Cache::store('file')->get($keyexist);
  250. if($times>20) {
  251. return $this->error(ErrorCode::VERIFY_CODE_TOO_MUCH);
  252. }else{
  253. $times++;
  254. Cache::store('file')->put($keyexist, $times, $this->expireTimeExist);
  255. }
  256. $verify_code = (string) mt_rand(1000, 9999);
  257. \Log::info('verify_code:'.$verify_code);
  258. $key = $this->keySmsCode . $phone;
  259. Cache::store('file')->put($key, $verify_code, $this->expireTime);
  260. $msg = '【喵喵】您的验证码是:' . $verify_code;
  261. /*
  262. $result = $this->sendSms($msg, $phone);
  263. if (!$result)
  264. $this->logger->Error("Send sms failed.");
  265. */
  266. return $this->api(['verify_code' => $verify_code]);
  267. }
  268. public function refreshToken() {
  269. $token = '';//TODO
  270. return $this->api([
  271. 'token' => $token,
  272. ]);
  273. }
  274. public function isLogin()
  275. {
  276. $user = Auth::user();
  277. $res = true;
  278. if(!$user) $res = false;
  279. return $this->api([
  280. 'result' => $res,
  281. ]);
  282. }
  283. /**
  284. * @api {post} /api/auth/avatar 上传头像(avatar)
  285. * @apiDescription 上传头像(reset)
  286. * @apiGroup Auth
  287. * @apiPermission Passport
  288. * @apiVersion 0.1.0
  289. * @apiParam {File} avatar 头像图片
  290. * @apiSuccessExample {json} Success-Response:
  291. * HTTP/1.1 200 OK
  292. * {
  293. * "state": true,
  294. * "code": 0,
  295. * "message": "",
  296. * "data": {
  297. * "md5": "fdf8dd78eb383b8acf6d94d4752c1424",
  298. * }
  299. * }
  300. * @apiErrorExample {json} Error-Response:
  301. * HTTP/1.1 400 Bad Request
  302. * {
  303. * "state": false,
  304. * "code": 1000,
  305. * "message": "传入参数不正确",
  306. * "data": null or []
  307. * }
  308. * 可能出现的错误代码:
  309. * 200 SAVE_USER_FAILED 保存用户数据失败
  310. * 201 ATTACHMENT_MKDIR_FAILED 创建附件目录失败
  311. * 202 ATTACHMENT_UPLOAD_INVALID 上传附件文件无效
  312. * 203 ATTACHMENT_SAVE_FAILED 保存附件失败
  313. * 204 ATTACHMENT_MOVE_FAILED 移动附件失败
  314. * 205 ATTACHMENT_DELETE_FAILED 删除附件文件失败
  315. * 206 ATTACHMENT_RECORD_DELETE_FAILED 删除附件记录失败
  316. * 1000 CLIENT_WRONG_PARAMS 传入参数不正确
  317. * 1101 INCORRECT_VERIFY_CODE 输入验证码错误
  318. * 1105 USER_DOES_NOT_EXIST 用户不存在
  319. * 1200 ATTACHMENT_UPLOAD_FAILED 附件上传失败
  320. * 1201 ATTACHMENT_SIZE_EXCEEDED 附件大小超过限制
  321. * 1202 ATTACHMENT_MIME_NOT_ALLOWED 附件类型不允许
  322. * 1203 ATTACHMENT_NOT_EXIST 附件不存在
  323. */
  324. public function avatar(Request $request) {
  325. // $user = Auth::user();
  326. $user = $this->getUser();
  327. $old_avatar = $user->avatar;
  328. $result = $this->uploadAttachment($request, 'avatar', 'avatar', 4 * 1024 * 1024, [
  329. 'image/jpeg',
  330. 'image/png',
  331. 'image/gif',
  332. ]);
  333. if (is_array($result)) {
  334. $result = array_shift($result);
  335. }
  336. if (is_string($result)) {
  337. $user->avatar = config('app.url')."/attachment/".$result;
  338. if (!$user->save()) {
  339. return $this->error(ErrorCode::SAVE_USER_FAILED);
  340. }
  341. $this->deleteAttachment($old_avatar);
  342. return $this->api(['file' => $result]);
  343. }
  344. return $this->error($result);
  345. }
  346. }