OauthController.php 6.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212
  1. <?php
  2. /**
  3. * Created by PhpStorm.
  4. * User: leo
  5. * Date: 2018/2/24
  6. * Time: 下午12:48
  7. */
  8. namespace frontendApi\modules\v1\controllers;
  9. use common\helpers\Cache;
  10. use common\helpers\Form;
  11. use common\models\BaUser;
  12. use common\models\forms\UserForm;
  13. use common\models\UserInfo;
  14. use common\models\UserToken;
  15. use frontendApi\modules\v1\components\UserAuth;
  16. use frontendApi\modules\v1\models\LoginForm;
  17. use Yii;
  18. use frontendApi\modules\v1\models\User;
  19. use yii\web\HttpException;
  20. class OauthController extends BaseController
  21. {
  22. public $modelClass = User::class;
  23. public function actionMenu(){
  24. $menu = require Yii::getAlias('@frontendApi/config/menu.php');
  25. return $this->_childMenu($menu);
  26. }
  27. private function _childMenu($parentArray){
  28. $menuResult = [];
  29. foreach($parentArray as $key => $parentMenu){
  30. // 菜单是否显示
  31. if(isset($parentMenu['show']) && (!$parentMenu['show'] || !$this->_allowDec($parentMenu))){
  32. continue;
  33. }
  34. // 子菜单同样设置
  35. if(isset($parentMenu['child']) && !empty($parentMenu['child'])){
  36. $parentMenu['child'] = $this->_childMenu($parentMenu['child']);
  37. }
  38. $menuResult[] = $parentMenu;
  39. }
  40. return $menuResult;
  41. }
  42. private function _allowDec($item){
  43. if(!isset($item['allow'])){
  44. return true;
  45. }
  46. $isDecReg = Cache::getSystemConfig()['isDecReg']['VALUE'];
  47. if(!$isDecReg) return true;
  48. if(!\Yii::$app->user->id){
  49. return true;
  50. }
  51. $isDec = User::getEnCodeInfo(\Yii::$app->user->id)['IS_DEC'];
  52. if($isDec==1 && $item['allow']=='declarer'){
  53. return true;
  54. }
  55. return false;
  56. }
  57. /**
  58. * 个人信息
  59. * @return mixed
  60. * @throws HttpException
  61. */
  62. public function actionInfo(){
  63. $isGuest = Yii::$app->getUser()->isGuest;
  64. if (!$isGuest) {
  65. User::updateBaseInfoToRedis(\Yii::$app->user->id);
  66. $result = User::getEnCodeInfo(\Yii::$app->user->id);
  67. } else {
  68. BaUser::updateBaseInfoToRedis(\Yii::$app->user->id);
  69. $result = BaUser::getEnCodeInfo(\Yii::$app->user->id);
  70. }
  71. return static::notice($result);
  72. }
  73. /**
  74. * 登录是否需要验证码
  75. * @return mixed
  76. * @throws HttpException
  77. */
  78. public function actionIsLoginVerify() {
  79. $userName = Yii::$app->request->post('userName');
  80. $model = new LoginForm(
  81. [
  82. 'userName' =>$userName
  83. ]
  84. );
  85. $isLoginVerify = $model->isLoginVerify();
  86. return static::notice($isLoginVerify ? 1 : 0);
  87. }
  88. /**
  89. * 登录
  90. * @return mixed
  91. * @throws HttpException
  92. * @throws \yii\base\Exception
  93. */
  94. public function actionLogin() {
  95. $userName = Yii::$app->request->post('userName');
  96. $model = new LoginForm(
  97. [
  98. 'userName' =>$userName
  99. ]
  100. );
  101. if ( $model->isLoginVerify() ) {
  102. $model->scenario = 'loginVerify';
  103. }else {
  104. $model->scenario = 'login';
  105. }
  106. if ($model->load(Yii::$app->request->post(), '') && $model->login()) {
  107. $token = !Yii::$app->getUser()->isGuest ? Yii::$app->getUser()->getToken() : Yii::$app->brand->getToken();
  108. return static::notice($token);
  109. } else {
  110. $firstError = $model->getFirstError('LoginForm');
  111. if( $firstError === LoginForm::ERROR_IS_MODIFY_PASSWORD ) {
  112. return static::notice(LoginForm::ERROR_IS_MODIFY_PASSWORD, 403);
  113. }
  114. return static::notice(Form::formatErrorsForApi($model->getErrors()), 401);
  115. }
  116. }
  117. /**
  118. * 用refreshToken刷新accessToken和refreshToken
  119. * @return mixed
  120. * @throws HttpException
  121. */
  122. public function actionRefreshToken(){
  123. $refreshToken = Yii::$app->request->get('refresh-token');
  124. Yii::$app->user->refreshToken($refreshToken);
  125. $token = Yii::$app->getUser()->getToken();
  126. if($token){
  127. return static::notice($token);
  128. } else {
  129. return static::notice('更新Token失败', 401);
  130. }
  131. }
  132. /**
  133. * 用refreshToken刷新accessToken
  134. * @return mixed
  135. * @throws HttpException
  136. */
  137. public function actionRefreshAccessToken(){
  138. $refreshToken = Yii::$app->request->get('refresh-token');
  139. Yii::$app->user->refreshAccessToken($refreshToken);
  140. $token = Yii::$app->getUser()->getToken();
  141. if($token){
  142. return static::notice($token);
  143. } else {
  144. return static::notice('更新Token失败', 401);
  145. }
  146. }
  147. /**
  148. * 用refreshToken刷新refreshToken
  149. * @return mixed
  150. * @throws HttpException
  151. */
  152. public function actionRefreshRefreshToken(){
  153. $refreshToken = Yii::$app->request->get('refresh-token');
  154. Yii::$app->user->refreshRefreshToken($refreshToken);
  155. $token = Yii::$app->getUser()->getToken();
  156. if($token){
  157. return static::notice($token);
  158. } else {
  159. return static::notice('更新Token失败', 401);
  160. }
  161. }
  162. /**
  163. * 后台登录前台
  164. * @return mixed
  165. * @throws HttpException
  166. */
  167. public function actionLoginByBackend(){
  168. if(Yii::$app->user->validateBackendAuth()){
  169. $userId = Yii::$app->request->post('id');
  170. if($result = Yii::$app->user->loginByBackend($userId)){
  171. return static::notice($result);
  172. }
  173. }
  174. return static::notice('Illegal request', 400); // 非法请求
  175. }
  176. /**
  177. * @return mixed
  178. * @throws HttpException
  179. */
  180. public function actionNoLoginModifyPassword() {
  181. if(\Yii::$app->request->isPost){
  182. $form = new UserForm();
  183. $form->scenario = 'noLoginModifyPassword';
  184. $post = \Yii::$app->request->post();
  185. if($form->load($post, '') && $result = $form->noLoginModifyPassword()){
  186. return static::notice('密码修改成功');
  187. } else {
  188. return static::notice(Form::formatErrorsForApi($form->getErrors()), 400);
  189. }
  190. }
  191. return static::notice('Illegal request', 400); // 非法请求
  192. }
  193. }