AuthorizationsController.php 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use App\Exceptions\SmsException;
  4. use App\Models\AdminRole;
  5. use App\Models\User;
  6. use App\Services\SmsService;
  7. use App\Services\TencentImAccountService;
  8. use App\Transformers\UserTransformer;
  9. use Carbon\Carbon;
  10. use Illuminate\Http\Request;
  11. use Illuminate\Support\Facades\Auth;
  12. use Illuminate\Support\Facades\DB;
  13. use Illuminate\Support\Facades\Hash;
  14. use Illuminate\Support\Facades\Validator;
  15. class AuthorizationsController extends Controller
  16. {
  17. protected $tencentImAccountService;
  18. public function __construct(TencentImAccountService $tencentImAccountService)
  19. {
  20. $this->tencentImAccountService = $tencentImAccountService;
  21. }
  22. /**
  23. * 手机号登录
  24. * @param Request $request
  25. * @return \Illuminate\Http\JsonResponse
  26. */
  27. public function login_by_mobile(Request $request)
  28. {
  29. $validator = Validator::make($request->all(), [
  30. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  31. 'verifyKey' => 'bail|required|string',
  32. 'smsCode' => 'bail|required',
  33. ], [
  34. 'mobile.required'=>"手机号码必须",
  35. 'mobile.regex'=>"手机号码格式错误",
  36. 'verifyKey.required'=>"验证码必须",
  37. 'smsCode.required'=>"短信验证码必须",
  38. ]);
  39. if ($validator->fails()) {
  40. return $this->response()->errorForbidden($validator->messages()->first());
  41. }
  42. try {
  43. //验证短信验证码
  44. SmsService::checkSmsCodeByVerifyKey($request->verifyKey, $request->smsCode);
  45. } catch (SmsException $e) {
  46. abort(403, $e->getMessage());
  47. } catch (\Exception $e) {
  48. abort(403, '短信校验失败');
  49. }
  50. $user = User::firstOrCreate([
  51. 'mobile' => $request->input('mobile'),
  52. ]);
  53. if (!$user->ycode) {
  54. $user->ycode = $this->create_code();
  55. }
  56. if (!$user->tencent_im_user_id) {
  57. $user->tencent_im_user_id = $this->tencentImAccountService->accountImport($user);
  58. }
  59. $user->save();
  60. $token = Auth::guard('api')->fromUser($user);
  61. self::updateLastLogin($user, $token);
  62. $resdata['token'] = "Bearer ".$token;
  63. $resdata['sex'] = $user->sex;
  64. $resdata['password'] = $user->password?1:0;
  65. return response()->json($resdata);
  66. }
  67. public function captcha(){
  68. return response(captcha_src());
  69. }
  70. /**
  71. * 根据用户ID生成唯一邀请码
  72. * @param $user_id
  73. * @return string
  74. */
  75. public function create_code() {
  76. $code = create_invite_code();
  77. if(User::where(['ycode'=>$code])->first()){
  78. $code = create_invite_code();
  79. }
  80. return $code;
  81. }
  82. /**
  83. * 用户账号密码登录
  84. * @param Request $request
  85. * @return \Illuminate\Http\JsonResponse|void
  86. */
  87. public function login_by_account_password(Request $request)
  88. {
  89. $validator = Validator::make($request->all(), [
  90. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  91. 'password' => 'required|string',
  92. ],[
  93. 'mobile.required'=>"手机号码必须",
  94. 'mobile.regex'=>"手机号码格式错误",
  95. 'password.required'=>"密码必须",
  96. ]);
  97. if ($validator->fails()) {
  98. return $this->response()->errorForbidden($validator->messages()->first());
  99. }
  100. if (!$user=User::where(['mobile' => $request->mobile])->first()) {
  101. return $this->response->errorNotFound('用户不存在!');
  102. }
  103. $credentials = $request->only('mobile', 'password');
  104. if (!$token = auth('api')->attempt($credentials)) {
  105. return $this->response->errorUnauthorized ('用户名或密码错误');
  106. }
  107. if (!$user->ycode) {
  108. $user->ycode = $this->create_code();
  109. }
  110. if (!$user->tencent_im_user_id) {
  111. $user->tencent_im_user_id = $this->tencentImAccountService->accountImport($user);
  112. }
  113. $user->save();
  114. self::updateLastLogin($user, $token);
  115. $resdata['token'] ="Bearer ".$token;
  116. $resdata['sex'] = $user->sex;
  117. $resdata['password'] = $user->password?1:0;
  118. return response()->json($resdata);
  119. }
  120. /**
  121. * 注册账号
  122. */
  123. public function register(Request $request){
  124. $validator = Validator::make($request->all(), [
  125. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  126. 'password' => 'bail|required',
  127. ],[
  128. 'mobile.required'=>"手机号码必须",
  129. 'mobile.regex'=>"手机号码格式错误",
  130. 'password.required'=>"密码必须",
  131. ]);
  132. if ($validator->fails()){
  133. return $this->response()->errorForbidden($validator->messages()->first());
  134. }
  135. if(User::where(['mobile'=>$request->mobile])->first()){
  136. return $this->response->errorForbidden("该手机号码已使用");
  137. }
  138. $ins = array();
  139. $ins['mobile'] = $request->mobile;
  140. $ins['password'] = $request->password;
  141. if(User::create($ins)){
  142. return response()->json(['message'=>"注册成功"]);
  143. }else{
  144. return $this->response->errorForbidden("注册失败");
  145. }
  146. }
  147. public function reg_h5(Request $request){
  148. $validator = Validator::make($request->all(), [
  149. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  150. 'password' => 'bail|required',
  151. 'smsCode' => 'bail|required',
  152. ],[
  153. 'mobile.required'=>"手机号码必须",
  154. 'mobile.regex'=>"手机号码格式错误",
  155. 'password.required'=>"密码必须",
  156. 'smsCode.required'=>"短信验证码必须",
  157. ]);
  158. if ($validator->fails()){
  159. return response()->json([
  160. 'code'=>0,
  161. 'message'=>$validator->messages()->first()
  162. ]);
  163. }
  164. // try {
  165. // //验证短信验证码
  166. // SmsService::checkSmsCodeByVerifyKey($request->verifyKey, $request->smsCode);
  167. // } catch (SmsException $e) {
  168. // return response()->json([
  169. // 'code'=>0,
  170. // 'message'=>$e->getMessage()
  171. // ]);
  172. // } catch (\Exception $e) {
  173. // return response()->json([
  174. // 'code'=>0,
  175. // 'message'=>'短信校验失败'
  176. // ]);
  177. // }
  178. if(User::where(['mobile'=>$request->mobile])->first()){
  179. return response()->json([
  180. 'code'=>0,
  181. 'message'=>'该手机号码已使用'
  182. ]);
  183. }
  184. //邀请码设置
  185. $pid = 0;
  186. if(isset($request->ycode) && $request->ycode!=""){
  187. if(!$puser = User::where(['ycode'=>$request->ycode])->first()){
  188. return response()->json([
  189. 'code'=>0,
  190. 'message'=>'邀请码不存在'
  191. ]);
  192. }
  193. $pid = $puser->id;
  194. }
  195. $ins = array();
  196. $ins['mobile'] = $request->mobile;
  197. $ins['password'] = $request->password;
  198. $ins['pid'] = $pid;
  199. if(User::create($ins)){
  200. return response()->json([
  201. 'code'=>1,
  202. 'message'=>'注册成功'
  203. ]);
  204. }else{
  205. return response()->json([
  206. 'code'=>0,
  207. 'message'=>'注册失败'
  208. ]);
  209. }
  210. }
  211. /**
  212. * 忘记密码
  213. */
  214. public function forget_password(Request $request){
  215. $validator = Validator::make($request->all(), [
  216. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  217. 'verifyKey' => 'bail|required|string',
  218. 'smsCode' => 'bail|required',
  219. 'password' => 'bail|required',
  220. ],[
  221. 'mobile.required'=>"手机号码必须",
  222. 'mobile.regex'=>"手机号码格式错误",
  223. 'verifyKey.required'=>"验证码必须",
  224. 'smsCode.required'=>"短信验证码必须",
  225. 'password.required'=>"密码必须",
  226. ]);
  227. if ($validator->fails()) {
  228. return $this->response()->errorForbidden($validator->messages()->first());
  229. }
  230. try {
  231. //验证短信验证码
  232. SmsService::checkSmsCodeByVerifyKey($request->verifyKey, $request->smsCode);
  233. } catch (SmsException $e) {
  234. abort(403, $e->getMessage());
  235. } catch (\Exception $e) {
  236. abort(403, '短信校验失败');
  237. }
  238. $user = User::where(['mobile'=>$request->mobile])->first();
  239. $user->password =$request->password;// Hash::make($request->password);
  240. if($user->save()){
  241. return $this->response->noContent();
  242. }
  243. }
  244. /**
  245. * 用户协议
  246. */
  247. public function xieyi(Request $request){
  248. if(isset($request->cont) && $request->cont==1){
  249. $data = DB::table("document")->where(['id'=>$request->type])->first();
  250. return response()->json(['data'=>$data]);
  251. }else{
  252. if($request->type==1){
  253. $url = "https://".$_SERVER['HTTP_HOST'].'/xieyi/yhxy.html';
  254. }else{
  255. $url = "https://".$_SERVER['HTTP_HOST'].'/xieyi/yszc.html';
  256. }
  257. return response()->json(['url'=>$url]);
  258. }
  259. }
  260. public function xieyi_content(Request $request){
  261. if(isset($request->cont) && $request->cont==1){
  262. $data = DB::table("document")->where(['id'=>$request->type])->first();
  263. return response()->json(['data'=>$data]);
  264. }else{
  265. if($request->type==1){
  266. $url = "https://".$_SERVER['HTTP_HOST'].'/xieyi/yhxy.html';
  267. }else{
  268. $url = "https://".$_SERVER['HTTP_HOST'].'/xieyi/yszc.html';
  269. }
  270. return response()->json(['url'=>$url]);
  271. }
  272. }
  273. /**
  274. * Get the authenticated User.
  275. *
  276. * @return \Illuminate\Http\JsonResponse
  277. */
  278. public function me()
  279. {
  280. $user = auth('api')->user();
  281. return $this->response->item($user, new UserTransformer());
  282. }
  283. /**
  284. * Log the user out (Invalidate the token).
  285. *
  286. * @return \Illuminate\Http\JsonResponse
  287. */
  288. public function logout()
  289. {
  290. auth('api')->logout();
  291. return response()->json(['message' => '退出成功!']);
  292. }
  293. /**
  294. * Refresh a token.
  295. * 刷新token,如果开启黑名单,以前的token便会失效。
  296. * 值得注意的是用上面的getToken再获取一次Token并不算做刷新,两次获得的Token是并行的,即两个都可用。
  297. * @return \Illuminate\Http\JsonResponse
  298. */
  299. public function refresh()
  300. {
  301. return $this->respondWithToken(Auth::guard('api')->refresh());
  302. }
  303. static public function updateLastLogin(User $user, string $jwtToken)
  304. {
  305. $user->remember_token = $jwtToken;
  306. $user->last_login_time = Carbon::now();
  307. $user->last_login_ip = request()->ip();
  308. $user->save();
  309. }
  310. /**
  311. * Get the token array structure.
  312. *
  313. * @param string $token
  314. *
  315. * @return \Illuminate\Http\JsonResponse
  316. */
  317. protected function respondWithToken($token)
  318. {
  319. return response()->json([
  320. 'access_token' => $token,
  321. 'token_type' => 'Bearer',
  322. 'expires_in' => Auth::guard('api')->factory()->getTTL() * 60
  323. ]);
  324. }
  325. }