OauthController.php 6.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214
  1. <?php
  2. /**
  3. * Created by PhpStorm.
  4. * User: leo
  5. * Date: 2018/2/24
  6. * Time: 下午12:48
  7. */
  8. namespace frontendApi\modules\v1\controllers;
  9. use common\helpers\Cache;
  10. use common\helpers\Form;
  11. use common\models\BaUser;
  12. use common\models\forms\UserForm;
  13. use common\models\UserInfo;
  14. use common\models\UserToken;
  15. use frontendApi\modules\v1\components\UserAuth;
  16. use frontendApi\modules\v1\models\LoginForm;
  17. use Yii;
  18. use frontendApi\modules\v1\models\User;
  19. use yii\web\HttpException;
  20. class OauthController extends BaseController
  21. {
  22. public $modelClass = User::class;
  23. public function actionMenu(){
  24. $menu = require Yii::getAlias('@frontendApi/config/menu.php');
  25. return $this->_childMenu($menu);
  26. }
  27. private function _childMenu($parentArray){
  28. $menuResult = [];
  29. foreach($parentArray as $key => $parentMenu){
  30. // 菜单是否显示
  31. if(isset($parentMenu['show']) && (!$parentMenu['show'] || !$this->_allowDec($parentMenu))){
  32. continue;
  33. }
  34. // 子菜单同样设置
  35. if(isset($parentMenu['child']) && !empty($parentMenu['child'])){
  36. $parentMenu['child'] = $this->_childMenu($parentMenu['child']);
  37. }
  38. $menuResult[] = $parentMenu;
  39. }
  40. return $menuResult;
  41. }
  42. private function _allowDec($item){
  43. if(!isset($item['allow'])){
  44. return true;
  45. }
  46. $isDecReg = Cache::getSystemConfig()['isDecReg']['VALUE'];
  47. if(!$isDecReg) return true;
  48. if(!\Yii::$app->user->id){
  49. return true;
  50. }
  51. $isDec = User::getEnCodeInfo(\Yii::$app->user->id)['IS_DEC'];
  52. if($isDec==1 && $item['allow']=='declarer'){
  53. return true;
  54. }
  55. return false;
  56. }
  57. /**
  58. * 个人信息
  59. * @return mixed
  60. * @throws HttpException
  61. */
  62. public function actionInfo(){
  63. $isGuest = Yii::$app->getUser()->isGuest;
  64. if (!$isGuest) {
  65. User::updateBaseInfoToRedis(\Yii::$app->user->id);
  66. $result = User::getEnCodeInfo(\Yii::$app->user->id);
  67. } else {
  68. BaUser::updateBaseInfoToRedis(\Yii::$app->user->id);
  69. $result = BaUser::getEnCodeInfo(\Yii::$app->user->id);
  70. }
  71. $result['identity'] = !$isGuest ? 'user' : 'brand';
  72. return static::notice($result);
  73. }
  74. /**
  75. * 登录是否需要验证码
  76. * @return mixed
  77. * @throws HttpException
  78. */
  79. public function actionIsLoginVerify() {
  80. $userName = Yii::$app->request->post('userName');
  81. $model = new LoginForm(
  82. [
  83. 'userName' =>$userName
  84. ]
  85. );
  86. $isLoginVerify = $model->isLoginVerify();
  87. return static::notice($isLoginVerify ? 1 : 0);
  88. }
  89. /**
  90. * 登录
  91. * @return mixed
  92. * @throws HttpException
  93. * @throws \yii\base\Exception
  94. */
  95. public function actionLogin() {
  96. $userName = Yii::$app->request->post('userName');
  97. $model = new LoginForm(
  98. [
  99. 'userName' =>$userName
  100. ]
  101. );
  102. if ( $model->isLoginVerify() ) {
  103. $model->scenario = 'loginVerify';
  104. }else {
  105. $model->scenario = 'login';
  106. }
  107. if ($model->load(Yii::$app->request->post(), '') && $model->login()) {
  108. $token = !Yii::$app->getUser()->isGuest ? Yii::$app->getUser()->getToken() : Yii::$app->brand->getToken();
  109. return static::notice($token);
  110. } else {
  111. $firstError = $model->getFirstError('LoginForm');
  112. if( $firstError === LoginForm::ERROR_IS_MODIFY_PASSWORD ) {
  113. return static::notice(LoginForm::ERROR_IS_MODIFY_PASSWORD, 403);
  114. }
  115. return static::notice(Form::formatErrorsForApi($model->getErrors()), 401);
  116. }
  117. }
  118. /**
  119. * 用refreshToken刷新accessToken和refreshToken
  120. * @return mixed
  121. * @throws HttpException
  122. */
  123. public function actionRefreshToken(){
  124. $refreshToken = Yii::$app->request->get('refresh-token');
  125. Yii::$app->user->refreshToken($refreshToken);
  126. $token = Yii::$app->getUser()->getToken();
  127. if($token){
  128. return static::notice($token);
  129. } else {
  130. return static::notice('更新Token失败', 401);
  131. }
  132. }
  133. /**
  134. * 用refreshToken刷新accessToken
  135. * @return mixed
  136. * @throws HttpException
  137. */
  138. public function actionRefreshAccessToken(){
  139. $refreshToken = Yii::$app->request->get('refresh-token');
  140. Yii::$app->user->refreshAccessToken($refreshToken);
  141. $token = Yii::$app->getUser()->getToken();
  142. if($token){
  143. return static::notice($token);
  144. } else {
  145. return static::notice('更新Token失败', 401);
  146. }
  147. }
  148. /**
  149. * 用refreshToken刷新refreshToken
  150. * @return mixed
  151. * @throws HttpException
  152. */
  153. public function actionRefreshRefreshToken(){
  154. $refreshToken = Yii::$app->request->get('refresh-token');
  155. Yii::$app->user->refreshRefreshToken($refreshToken);
  156. $token = Yii::$app->getUser()->getToken();
  157. if($token){
  158. return static::notice($token);
  159. } else {
  160. return static::notice('更新Token失败', 401);
  161. }
  162. }
  163. /**
  164. * 后台登录前台
  165. * @return mixed
  166. * @throws HttpException
  167. */
  168. public function actionLoginByBackend(){
  169. if(Yii::$app->user->validateBackendAuth()){
  170. $userId = Yii::$app->request->post('id');
  171. if($result = Yii::$app->user->loginByBackend($userId)){
  172. return static::notice($result);
  173. }
  174. }
  175. return static::notice('Illegal request', 400); // 非法请求
  176. }
  177. /**
  178. * @return mixed
  179. * @throws HttpException
  180. */
  181. public function actionNoLoginModifyPassword() {
  182. if(\Yii::$app->request->isPost){
  183. $form = new UserForm();
  184. $form->scenario = 'noLoginModifyPassword';
  185. $post = \Yii::$app->request->post();
  186. if($form->load($post, '') && $result = $form->noLoginModifyPassword()){
  187. return static::notice('Password change succeeded'); // 密码修改成功
  188. } else {
  189. return static::notice(Form::formatErrorsForApi($form->getErrors()), 400);
  190. }
  191. }
  192. return static::notice('Illegal request', 400); // 非法请求
  193. }
  194. }