OauthController.php 6.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216
  1. <?php
  2. /**
  3. * Created by PhpStorm.
  4. * User: leo
  5. * Date: 2018/2/24
  6. * Time: 下午12:48
  7. */
  8. namespace frontendApi\modules\v1\controllers;
  9. use common\helpers\Cache;
  10. use common\helpers\Form;
  11. use common\models\BaUser;
  12. use common\models\forms\UserForm;
  13. use common\models\UserInfo;
  14. use common\models\UserToken;
  15. use frontendApi\modules\v1\components\UserAuth;
  16. use frontendApi\modules\v1\models\LoginForm;
  17. use Yii;
  18. use frontendApi\modules\v1\models\User;
  19. use yii\web\HttpException;
  20. class OauthController extends BaseController
  21. {
  22. public $modelClass = User::class;
  23. public function actionMenu(){
  24. $menu = require Yii::getAlias('@frontendApi/config/menu.php');
  25. return $this->_childMenu($menu);
  26. }
  27. private function _childMenu($parentArray){
  28. $menuResult = [];
  29. foreach($parentArray as $key => $parentMenu){
  30. // 菜单是否显示
  31. if(isset($parentMenu['show']) && (!$parentMenu['show'] || !$this->_allowDec($parentMenu))){
  32. continue;
  33. }
  34. // 子菜单同样设置
  35. if(isset($parentMenu['child']) && !empty($parentMenu['child'])){
  36. $parentMenu['child'] = $this->_childMenu($parentMenu['child']);
  37. }
  38. $menuResult[] = $parentMenu;
  39. }
  40. return $menuResult;
  41. }
  42. private function _allowDec($item){
  43. if(!isset($item['allow'])){
  44. return true;
  45. }
  46. $isDecReg = Cache::getSystemConfig()['isDecReg']['VALUE'];
  47. if(!$isDecReg) return true;
  48. if(!\Yii::$app->user->id){
  49. return true;
  50. }
  51. $isDec = User::getEnCodeInfo(\Yii::$app->user->id)['IS_DEC'];
  52. if($isDec==1 && $item['allow']=='declarer'){
  53. return true;
  54. }
  55. return false;
  56. }
  57. /**
  58. * 个人信息
  59. * @return mixed
  60. * @throws HttpException
  61. */
  62. public function actionInfo(){
  63. $isGuest = Yii::$app->getUser()->isGuest;
  64. if (!$isGuest) {
  65. User::updateBaseInfoToRedis(\Yii::$app->user->id);
  66. $result = User::getEnCodeInfo(\Yii::$app->user->id);
  67. } else {
  68. BaUser::updateBaseInfoToRedis(\Yii::$app->user->id);
  69. $result = BaUser::getEnCodeInfo(\Yii::$app->user->id);
  70. }
  71. $result['identity'] = !$isGuest ? 'user' : 'brand';
  72. return static::notice($result);
  73. }
  74. /**
  75. * 登录是否需要验证码
  76. * @return mixed
  77. * @throws HttpException
  78. */
  79. public function actionIsLoginVerify() {
  80. $userName = Yii::$app->request->post('userName');
  81. $model = new LoginForm(
  82. [
  83. 'userName' =>$userName
  84. ]
  85. );
  86. $isLoginVerify = $model->isLoginVerify();
  87. return static::notice($isLoginVerify ? 1 : 0);
  88. }
  89. /**
  90. * 登录
  91. * @return mixed
  92. * @throws HttpException
  93. * @throws \yii\base\Exception
  94. */
  95. public function actionLogin() {
  96. $userName = Yii::$app->request->post('userName');
  97. $version = Yii::$app->request->post('version', '');
  98. $model = new LoginForm(
  99. [
  100. 'userName' => $userName,
  101. 'version' => $version,
  102. ]
  103. );
  104. if ( $model->isLoginVerify() ) {
  105. $model->scenario = 'loginVerify';
  106. }else {
  107. $model->scenario = 'login';
  108. }
  109. if ($model->load(Yii::$app->request->post(), '') && $model->login()) {
  110. $token = !Yii::$app->getUser()->isGuest ? Yii::$app->getUser()->getToken() : Yii::$app->brand->getToken();
  111. return static::notice($token);
  112. } else {
  113. $firstError = $model->getFirstError('LoginForm');
  114. if( $firstError === LoginForm::ERROR_IS_MODIFY_PASSWORD ) {
  115. return static::notice(LoginForm::ERROR_IS_MODIFY_PASSWORD, 403);
  116. }
  117. return static::notice(Form::formatErrorsForApi($model->getErrors()), 400);
  118. }
  119. }
  120. /**
  121. * 用refreshToken刷新accessToken和refreshToken
  122. * @return mixed
  123. * @throws HttpException
  124. */
  125. public function actionRefreshToken(){
  126. $refreshToken = Yii::$app->request->get('refresh-token');
  127. Yii::$app->user->refreshToken($refreshToken);
  128. $token = Yii::$app->getUser()->getToken();
  129. if($token){
  130. return static::notice($token);
  131. } else {
  132. return static::notice(Yii::t('app', 'refreshTokenFailed'), 401);
  133. }
  134. }
  135. /**
  136. * 用refreshToken刷新accessToken
  137. * @return mixed
  138. * @throws HttpException
  139. */
  140. public function actionRefreshAccessToken(){
  141. $refreshToken = Yii::$app->request->get('refresh-token');
  142. Yii::$app->user->refreshAccessToken($refreshToken);
  143. $token = Yii::$app->getUser()->getToken();
  144. if($token){
  145. return static::notice($token);
  146. } else {
  147. return static::notice(Yii::t('app', 'refreshTokenFailed'), 401);
  148. }
  149. }
  150. /**
  151. * 用refreshToken刷新refreshToken
  152. * @return mixed
  153. * @throws HttpException
  154. */
  155. public function actionRefreshRefreshToken(){
  156. $refreshToken = Yii::$app->request->get('refresh-token');
  157. Yii::$app->user->refreshRefreshToken($refreshToken);
  158. $token = Yii::$app->getUser()->getToken();
  159. if($token){
  160. return static::notice($token);
  161. } else {
  162. return static::notice(Yii::t('app', 'refreshTokenFailed'), 401);
  163. }
  164. }
  165. /**
  166. * 后台登录前台
  167. * @return mixed
  168. * @throws HttpException
  169. */
  170. public function actionLoginByBackend(){
  171. if(Yii::$app->user->validateBackendAuth()){
  172. $userId = Yii::$app->request->post('id');
  173. if($result = Yii::$app->user->loginByBackend($userId)){
  174. return static::notice($result);
  175. }
  176. }
  177. return static::notice(Yii::t('app', 'illegalRequest'), 400);
  178. }
  179. /**
  180. * @return mixed
  181. * @throws HttpException
  182. */
  183. public function actionNoLoginModifyPassword() {
  184. if(\Yii::$app->request->isPost){
  185. $form = new UserForm();
  186. $form->scenario = 'noLoginModifyPassword';
  187. $post = \Yii::$app->request->post();
  188. if($form->load($post, '') && $result = $form->noLoginModifyPassword()){
  189. return static::notice(Yii::t('app', 'passwordChangeSucceeded'));
  190. } else {
  191. return static::notice(Form::formatErrorsForApi($form->getErrors()), 400);
  192. }
  193. }
  194. return static::notice(Yii::t('app', 'illegalRequest'), 400);
  195. }
  196. }