AuthorizationsController.php 17 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use App\Exceptions\SmsException;
  4. use App\Models\AdminRole;
  5. use App\Models\User;
  6. use App\Models\UserInfoModel;
  7. use App\Models\UserInviteLog;
  8. use App\Models\UserVipLimit;
  9. use App\Models\UserBlacklistModel;
  10. use App\Models\UserLikeModel;
  11. use App\Models\UserLookModel;
  12. use App\Services\JPushService;
  13. use App\Services\SmsService;
  14. use App\Services\TencentImAccountService;
  15. use App\Transformers\UserTransformer;
  16. use Carbon\Carbon;
  17. use http\Env\Response;
  18. use Illuminate\Http\Request;
  19. use Illuminate\Support\Facades\Auth;
  20. use Illuminate\Support\Facades\DB;
  21. use Illuminate\Support\Facades\Hash;
  22. use Illuminate\Support\Facades\Validator;
  23. use PHPUnit\Util\Exception;
  24. class AuthorizationsController extends Controller
  25. {
  26. protected $tencentImAccountService;
  27. public function __construct(TencentImAccountService $tencentImAccountService)
  28. {
  29. $this->tencentImAccountService = $tencentImAccountService;
  30. }
  31. /**
  32. * 极光认证一键登录
  33. */
  34. public function auth_login(Request $request){
  35. file_put_contents('login_log.log',date("Y-m-d H:i:s").var_export($request->all(),true).PHP_EOL,FILE_APPEND);
  36. try {
  37. if(empty($request->loginToken)){
  38. throw new Exception("参数错误");
  39. }
  40. $loginToken = $request->loginToken;
  41. $exID = $request->post('exID','800');
  42. $ret = JPushService::jgLoginTokenVerify($loginToken,$exID);
  43. $mobile = JPushService::jgOpensslPrivateDecrypt($ret['phone']);
  44. $res = $this->do_login($mobile);
  45. }catch (\Exception $exception){
  46. return $this->response->errorForbidden($exception->getMessage());
  47. }
  48. return response()->json($res);
  49. }
  50. /**
  51. * 手机号登录
  52. * @param Request $request
  53. * @return \Illuminate\Http\JsonResponse
  54. */
  55. public function login_by_mobile(Request $request)
  56. {
  57. file_put_contents('login_log.log',date("Y-m-d H:i:s").var_export($request->all(),true).PHP_EOL,FILE_APPEND);
  58. try {
  59. $validator = Validator::make($request->all(), [
  60. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  61. 'verifyKey' => 'bail|required|string',
  62. 'smsCode' => 'bail|required',
  63. ], [
  64. 'mobile.required'=>"手机号码必须",
  65. 'mobile.regex'=>"手机号码格式错误",
  66. 'verifyKey.required'=>"验证码必须",
  67. 'smsCode.required'=>"短信验证码必须",
  68. ]);
  69. if ($validator->fails()) {
  70. return $this->response()->errorForbidden($validator->messages()->first());
  71. }
  72. //验证短信验证码
  73. SmsService::checkSmsCodeByVerifyKey($request->verifyKey, $request->smsCode);
  74. $res = $this->do_login($request->mobile,null,$request->registrationId,$request->phoneModel);
  75. }catch (\Exception $exception){
  76. return $this->response->errorForbidden($exception->getMessage());
  77. } catch (SmsException $e) {
  78. return $this->response->errorForbidden($e->getMessage());
  79. }
  80. return response()->json($res);
  81. }
  82. /**
  83. * 用户账号密码登录
  84. * @param Request $request
  85. * @return \Illuminate\Http\JsonResponse|void
  86. */
  87. public function login_by_account_password(Request $request)
  88. {
  89. file_put_contents('login_log.log',date("Y-m-d H:i:s").var_export($request->all(),true).PHP_EOL,FILE_APPEND);
  90. try {
  91. $validator = Validator::make($request->all(), [
  92. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  93. 'password' => 'required|string',
  94. ],[
  95. 'mobile.required'=>"手机号码必须",
  96. 'mobile.regex'=>"手机号码格式错误",
  97. 'password.required'=>"密码必须",
  98. ]);
  99. if ($validator->fails()) {
  100. throw new Exception($validator->messages()->first());
  101. }
  102. $res = $this->do_login($request->mobile,$request->password,$request->registrationId,$request->phoneModel);
  103. }catch (\Exception $exception){
  104. return $this->response->errorForbidden($exception->getMessage());
  105. }
  106. file_put_contents('login_log.log',date("Y-m-d H:i:s").'执行成功'.PHP_EOL,FILE_APPEND);
  107. return response()->json($res);
  108. }
  109. //登录操作
  110. public function do_login($mobile,$password=null,$registrationId=null,$phoneModel=null){
  111. if(!empty($password)){
  112. if (!$user=User::query()->where(['mobile' => $mobile,'is_distory'=>0])->whereNull('deleted_at')->first()) {
  113. throw new Exception("用户不存在");
  114. }
  115. file_put_contents('login_log.log',date("Y-m-d H:i:s").var_export($user->toArray(),true).PHP_EOL,FILE_APPEND);
  116. $credentials = ['mobile'=>$mobile,'password'=>$password];
  117. if (!auth('api')->attempt($credentials)) {
  118. throw new Exception("手机号或密码错误");
  119. }
  120. }else{
  121. if(!User::query()->where(['mobile'=>$mobile,'is_distory'=>0])->first()){
  122. User::query()->create([
  123. 'mobile' => $mobile,
  124. ]);
  125. }
  126. $user = User::query()->where(['mobile'=>$mobile,'is_distory'=>0])->whereNull('deleted_at')->first();
  127. }
  128. if (!$user->ycode) {
  129. $user->ycode = $this->create_code();
  130. }
  131. if(!UserInfoModel::query()->where('user_id',$user->id)->first()){
  132. UserInfoModel::query()->create([
  133. 'user_id'=>$user->id,
  134. 'avatar'=>"https://zhengda.oss-cn-chengdu.aliyuncs.com/chengluApp/default.jpg",
  135. 'nickname'=>"用户".$user->mobile,
  136. 'birthday'=>"1990-01-01"
  137. ]);
  138. }
  139. if(!UserVipLimit::query()->where('user_id',$user->id)->first()){
  140. UserVipLimit::query()->create([
  141. 'user_id'=>$user->id,
  142. ]);
  143. }
  144. if (!$user->tencent_im_user_id || str_contains($user->tencent_im_user_id, 'SSS_SFS')) {
  145. $user->tencent_im_user_id = $this->tencentImAccountService->accountImport($user);
  146. }
  147. if($user->status!=1){
  148. throw new Exception("用户已被禁用,请联系管理员");
  149. }
  150. $token = Auth::guard('api')->fromUser($user);
  151. $user->remember_token = $token;
  152. $user->last_login_time = date("Y-m-d H:i:s");
  153. $user->last_login_ip = request()->ip();
  154. $user->online = 1;
  155. if(!empty($registrationId)){
  156. $user->registrationId = $registrationId;
  157. $user->phoneModel = $phoneModel;
  158. }
  159. $re = $user->save();
  160. file_put_contents('login_log.log',date("Y-m-d H:i:s").$re.PHP_EOL,FILE_APPEND);
  161. $resdata['token'] = "Bearer ".$token;
  162. $resdata['sex'] = $user->sex;
  163. $resdata['password'] = $user->password?1:0;
  164. $resdata['tencent_im_user_id'] =$user->tencent_im_user_id;
  165. $resdata['mobile'] =$user->mobile;
  166. $resdata['lock_pass'] =$user->lock_pass?$user->lock_pass:false;
  167. $resdata['status'] =$user->status;
  168. $resdata['is_auth'] =$user->is_auth;
  169. $resdata['ycode'] =$user->ycode;
  170. $resdata['online'] =$user->online;
  171. $resdata['notice_status'] =$user->notice_status;
  172. $resdata['userinfo'] = $this->getinfo($user->id);
  173. return $resdata;
  174. }
  175. public function captcha(){
  176. return response(captcha_src());
  177. }
  178. /**
  179. * 根据用户ID生成唯一邀请码
  180. * @param $user_id
  181. * @return string
  182. */
  183. public function create_code() {
  184. $code = create_invite_code();
  185. if(User::where(['ycode'=>$code])->first()){
  186. $code = create_invite_code();
  187. }
  188. return $code;
  189. }
  190. /**
  191. * 注册账号
  192. */
  193. public function register(Request $request){
  194. $validator = Validator::make($request->all(), [
  195. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  196. 'password' => 'bail|required',
  197. ],[
  198. 'mobile.required'=>"手机号码必须",
  199. 'mobile.regex'=>"手机号码格式错误",
  200. 'password.required'=>"密码必须",
  201. ]);
  202. if ($validator->fails()){
  203. return $this->response()->errorForbidden($validator->messages()->first());
  204. }
  205. if(User::where(['mobile'=>$request->mobile,'is_distory'=>0])->first()){
  206. return $this->response->errorForbidden("该手机号码已注册");
  207. }
  208. $ins = array();
  209. $ins['mobile'] = $request->mobile;
  210. $ins['password'] = $request->password;
  211. if(User::create($ins)){
  212. return response()->json(['message'=>"注册成功"]);
  213. }else{
  214. return $this->response->errorForbidden("注册失败");
  215. }
  216. }
  217. public function reg_h5(Request $request){
  218. $validator = Validator::make($request->all(), [
  219. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  220. 'password' => 'bail|required',
  221. 'smsCode' => 'bail|required',
  222. ],[
  223. 'mobile.required'=>"手机号码必须",
  224. 'mobile.regex'=>"手机号码格式错误",
  225. 'password.required'=>"密码必须",
  226. 'smsCode.required'=>"短信验证码必须",
  227. ]);
  228. if ($validator->fails()){
  229. return response()->json([
  230. 'code'=>0,
  231. 'message'=>$validator->messages()->first()
  232. ]);
  233. }
  234. DB::beginTransaction();
  235. try {
  236. //验证短信验证码
  237. SmsService::checkSmsCodeByVerifyKey($request->verifyKey, $request->smsCode);
  238. if(User::where(['mobile'=>$request->mobile,'is_distory'=>0])->first()){
  239. throw new Exception("该手机号码已使用");
  240. }
  241. //邀请码设置
  242. $pid = 0;
  243. if(isset($request->ycode) && $request->ycode!=""){
  244. if(!$puser = User::where(['ycode'=>$request->ycode])->first()){
  245. throw new Exception("邀请码不存在");
  246. }
  247. $pid = $puser->id;
  248. }
  249. $ins = array();
  250. $ins['mobile'] = $request->mobile;
  251. $ins['password'] = $request->password;
  252. $ins['pid'] = $pid;
  253. $ins['created_at'] = date('Y-m-d H:i:s');
  254. $ins['updated_at'] = date('Y-m-d H:i:s');
  255. $insid = User::query()->insertGetId($ins);
  256. //赠送会员天数
  257. UserInviteLog::query()->create([
  258. 'user_id'=>$pid,
  259. 'invite_id'=>$insid,
  260. 'day'=>1,
  261. 'status'=>0,
  262. ]);
  263. DB::commit();
  264. } catch (SmsException $e) {
  265. DB::rollBack();
  266. return response()->json([
  267. 'code'=>0,
  268. 'message'=>$e->getMessage()
  269. ]);
  270. } catch (\Exception $e) {
  271. DB::rollBack();
  272. return response()->json([
  273. 'code'=>0,
  274. 'message'=>'短信校验失败'
  275. ]);
  276. }
  277. return response()->json([
  278. 'code'=>1,
  279. 'message'=>'注册成功'
  280. ]);
  281. }
  282. /**
  283. * 忘记密码
  284. */
  285. public function forget_password(Request $request){
  286. try {
  287. $validator = Validator::make($request->all(), [
  288. 'mobile' => ['required', 'regex:/^1[3456789]\d{9}$/'],
  289. 'verifyKey' => 'bail|required|string',
  290. 'smsCode' => 'bail|required',
  291. 'password' => 'bail|required',
  292. ],[
  293. 'mobile.required'=>"手机号码必须",
  294. 'mobile.regex'=>"手机号码格式错误",
  295. 'verifyKey.required'=>"验证码必须",
  296. 'smsCode.required'=>"短信验证码必须",
  297. 'password.required'=>"密码必须",
  298. ]);
  299. if ($validator->fails()) {
  300. throw new Exception($validator->messages()->first());
  301. }
  302. //验证短信验证码
  303. //SmsService::checkSmsCodeByVerifyKey($request->verifyKey, $request->smsCode);
  304. $user = User::where(['mobile'=>$request->mobile])->first();
  305. $user->password =$request->password;// Hash::make($request->password);
  306. if(!$user->save()){
  307. throw new Exception("设置失败");
  308. }
  309. $res = $this->do_login($request->mobile,$request->password);
  310. }catch (\Exception $exception){
  311. return $this->response->errorForbidden($exception->getMessage());
  312. } catch (SmsException $e) {
  313. return $this->response->errorForbidden($e->getMessage());
  314. }
  315. return response()->json($res);
  316. }
  317. /**
  318. * 用户协议
  319. */
  320. public function xieyi(Request $request){
  321. if(isset($request->cont) && $request->cont==1){
  322. $data = DB::table("document")->where(['id'=>$request->id])->first();
  323. return response()->json(['data'=>$data]);
  324. }else{
  325. $url = "https://".$_SERVER['HTTP_HOST']."/xieyi/content.html?id=1";
  326. $url2 = "https://".$_SERVER['HTTP_HOST']."/xieyi/content.html?id=2";
  327. return response()->json(['url1'=>$url,'url2'=>$url2]);
  328. }
  329. }
  330. /**
  331. * Get the authenticated User.
  332. *
  333. * @return \Illuminate\Http\JsonResponse
  334. */
  335. public function me()
  336. {
  337. $user = auth('api')->user();
  338. return $this->response->item($user, new UserTransformer());
  339. }
  340. /**
  341. * Log the user out (Invalidate the token).
  342. *
  343. * @return \Illuminate\Http\JsonResponse
  344. */
  345. public function logout()
  346. {
  347. $user = auth('api')->user();
  348. $user->online = 0;
  349. $user->save();
  350. auth('api')->logout();
  351. return response()->json(['message' => '退出成功!']);
  352. }
  353. /**
  354. * Refresh a token.
  355. * 刷新token,如果开启黑名单,以前的token便会失效。
  356. * 值得注意的是用上面的getToken再获取一次Token并不算做刷新,两次获得的Token是并行的,即两个都可用。
  357. * @return \Illuminate\Http\JsonResponse
  358. */
  359. public function refresh()
  360. {
  361. return $this->respondWithToken(Auth::guard('api')->refresh());
  362. }
  363. static public function updateLastLogin(User $user, string $jwtToken)
  364. {
  365. $user->remember_token = $jwtToken;
  366. $user->last_login_time = Carbon::now();
  367. $user->last_login_ip = request()->ip();
  368. $user->save();
  369. }
  370. /**
  371. * Get the token array structure.
  372. *
  373. * @param string $token
  374. *
  375. * @return \Illuminate\Http\JsonResponse
  376. */
  377. protected function respondWithToken($token)
  378. {
  379. return response()->json([
  380. 'access_token' => $token,
  381. 'token_type' => 'Bearer',
  382. 'expires_in' => Auth::guard('api')->factory()->getTTL() * 60
  383. ]);
  384. }
  385. /**
  386. * 获取个人资料
  387. */
  388. public function getinfo($user_id){
  389. $user = User::where(['id'=>$user_id])->first();
  390. $userinfo = UserInfoModel::query()->where('user_id', $user->id)->first();
  391. //不看拉黑用户
  392. $black_list = UserBlacklistModel::query()
  393. ->where('user_id',$user->id)
  394. ->orWhere('black_id',$user->id)
  395. ->select(['black_id'])
  396. ->get()
  397. ->toArray();
  398. $ids = array_column($black_list,'black_id');
  399. $ids[]= $user->id;
  400. $userinfo['hobby'] = !empty($userinfo['hobby'])?explode(',',$userinfo['hobby']):[];
  401. $userinfo['photo'] = !empty($userinfo['photo'])?json_decode($userinfo['photo'],true):[];
  402. $video_info = !empty($userinfo['video'])?json_decode($userinfo['video'],true):[];
  403. $userinfo['video'] = array_column($video_info,'url');
  404. $userinfo['like_num'] = $user->like_num;
  405. $userinfo['like_me_num'] = $user->like_me_num;
  406. $userinfo['look_num'] = UserLookModel::query()
  407. ->with(['user'=>function($query){
  408. $query->select('id','sex','is_vip','tencent_im_user_id');
  409. },'user_info'])
  410. ->where(['look_id'=>$user->id])
  411. ->whereNotIn('user_id',$ids)
  412. ->whereHas("user",function($query){
  413. $query->where('is_distory',0)->select();
  414. })->count();
  415. $userinfo['look_num_red'] = UserLookModel::query()
  416. ->with(['user'=>function($query){
  417. $query->select('id','sex','is_vip','tencent_im_user_id');
  418. },'user_info'])
  419. ->where(['look_id'=>$user->id,'status'=>0])
  420. ->whereNotIn('user_id',$ids)
  421. ->whereHas("user",function($query){
  422. $query->where('is_distory',0)->select();
  423. })
  424. ->count();
  425. $userinfo['sex'] = $user->sex;
  426. $userinfo['mobile'] = $user->mobile;
  427. $userinfo['is_auth'] = $user->is_auth;
  428. $userinfo['is_vip'] = $user->is_vip;
  429. $userinfo['ycode'] = $user->ycode;
  430. $userinfo['notice_status'] = $user->notice_status;
  431. $userinfo['update_num'] = UserVipLimit::query()->where('user_id',$user->id)->value('user_info');
  432. $userinfo['see_user_num'] = UserVipLimit::query()->where('user_id',$user->id)->value("user_detail");
  433. return $userinfo;
  434. }
  435. }