sys_user.go 11.0 KB
Newer Older
1
package system
2 3

import (
4
	"strconv"
5 6
	"time"

7 8 9 10 11 12 13
	"github.com/flipped-aurora/gin-vue-admin/server/global"
	"github.com/flipped-aurora/gin-vue-admin/server/model/common/request"
	"github.com/flipped-aurora/gin-vue-admin/server/model/common/response"
	"github.com/flipped-aurora/gin-vue-admin/server/model/system"
	systemReq "github.com/flipped-aurora/gin-vue-admin/server/model/system/request"
	systemRes "github.com/flipped-aurora/gin-vue-admin/server/model/system/response"
	"github.com/flipped-aurora/gin-vue-admin/server/utils"
S
songzhibin97 已提交
14

Mr.奇淼('s avatar
Mr.奇淼( 已提交
15
	"github.com/dgrijalva/jwt-go"
16
	"github.com/gin-gonic/gin"
Mr.奇淼('s avatar
Mr.奇淼( 已提交
17
	"github.com/go-redis/redis/v8"
18
	"go.uber.org/zap"
19 20
)

Mr.奇淼('s avatar
Mr.奇淼( 已提交
21
// @Tags Base
22 23
// @Summary 用户登录
// @Produce  application/json
24
// @Param data body systemReq.Login true "用户名, 密码, 验证码"
25
// @Success 200 {string} string "{"success":true,"data":{},"msg":"登陆成功"}"
Mr.奇淼('s avatar
Mr.奇淼( 已提交
26
// @Router /base/login [post]
27 28
func (b *BaseApi) Login(c *gin.Context) {
	var l systemReq.Login
29 30
	_ = c.ShouldBindJSON(&l)
	if err := utils.Verify(l, utils.LoginVerify); err != nil {
31
		response.FailWithMessage(err.Error(), c)
32 33
		return
	}
34
	if store.Verify(l.CaptchaId, l.Captcha, true) {
Mr.奇淼('s avatar
Mr.奇淼( 已提交
35
		u := &system.SysUser{Username: l.Username, Password: l.Password}
36
		if err, user := userService.Login(u); err != nil {
何秀钢 已提交
37
			global.GVA_LOG.Error("登陆失败! 用户名不存在或者密码错误!", zap.Any("err", err))
Mr.奇淼('s avatar
Mr.奇淼( 已提交
38
			response.FailWithMessage("用户名不存在或者密码错误", c)
39
		} else {
40
			b.tokenNext(c, *user)
41
		}
42
	} else {
43
		response.FailWithMessage("验证码错误", c)
Mr.奇淼('s avatar
Mr.奇淼( 已提交
44 45 46
	}
}

47
// 登录以后签发jwt
48
func (b *BaseApi) tokenNext(c *gin.Context, user system.SysUser) {
49
	j := &utils.JWT{SigningKey: []byte(global.GVA_CONFIG.JWT.SigningKey)} // 唯一签名
50
	claims := systemReq.CustomClaims{
Mr.奇淼('s avatar
Mr.奇淼( 已提交
51 52 53
		UUID:        user.UUID,
		ID:          user.ID,
		NickName:    user.NickName,
Mr.奇淼('s avatar
Mr.奇淼( 已提交
54
		Username:    user.Username,
Mr.奇淼('s avatar
Mr.奇淼( 已提交
55
		AuthorityId: user.AuthorityId,
56
		BufferTime:  global.GVA_CONFIG.JWT.BufferTime, // 缓冲时间1天 缓冲时间内会获得新的token刷新令牌 此时一个用户会存在两个有效令牌 但是前端只留一个 另一个会丢失
Mr.奇淼('s avatar
Mr.奇淼( 已提交
57
		StandardClaims: jwt.StandardClaims{
58 59 60
			NotBefore: time.Now().Unix() - 1000,                              // 签名生效时间
			ExpiresAt: time.Now().Unix() + global.GVA_CONFIG.JWT.ExpiresTime, // 过期时间 7天  配置文件
			Issuer:    "qmPlus",                                              // 签名的发行者
Mr.奇淼('s avatar
Mr.奇淼( 已提交
61 62
		},
	}
63
	token, err := j.CreateToken(claims)
Mr.奇淼('s avatar
Mr.奇淼( 已提交
64
	if err != nil {
何秀钢 已提交
65
		global.GVA_LOG.Error("获取token失败!", zap.Any("err", err))
66
		response.FailWithMessage("获取token失败", c)
67 68 69
		return
	}
	if !global.GVA_CONFIG.System.UseMultipoint {
70
		response.OkWithDetailed(systemRes.LoginResponse{
71 72
			User:      user,
			Token:     token,
73
			ExpiresAt: claims.StandardClaims.ExpiresAt * 1000,
74
		}, "登录成功", c)
75 76
		return
	}
77 78
	if err, jwtStr := jwtService.GetRedisJWT(user.Username); err == redis.Nil {
		if err := jwtService.SetRedisJWT(token, user.Username); err != nil {
何秀钢 已提交
79
			global.GVA_LOG.Error("设置登录状态失败!", zap.Any("err", err))
80 81 82
			response.FailWithMessage("设置登录状态失败", c)
			return
		}
83
		response.OkWithDetailed(systemRes.LoginResponse{
84 85
			User:      user,
			Token:     token,
86
			ExpiresAt: claims.StandardClaims.ExpiresAt * 1000,
87
		}, "登录成功", c)
88
	} else if err != nil {
何秀钢 已提交
89
		global.GVA_LOG.Error("设置登录状态失败!", zap.Any("err", err))
90
		response.FailWithMessage("设置登录状态失败", c)
91
	} else {
Mr.奇淼('s avatar
Mr.奇淼( 已提交
92
		var blackJWT system.JwtBlacklist
93
		blackJWT.Jwt = jwtStr
94
		if err := jwtService.JsonInBlacklist(blackJWT); err != nil {
95 96 97
			response.FailWithMessage("jwt作废失败", c)
			return
		}
98
		if err := jwtService.SetRedisJWT(token, user.Username); err != nil {
99 100
			response.FailWithMessage("设置登录状态失败", c)
			return
101
		}
102
		response.OkWithDetailed(systemRes.LoginResponse{
103 104
			User:      user,
			Token:     token,
105
			ExpiresAt: claims.StandardClaims.ExpiresAt * 1000,
106
		}, "登录成功", c)
107 108 109
	}
}

110 111 112
// @Tags SysUser
// @Summary 用户注册账号
// @Produce  application/json
113
// @Param data body systemReq.Register true "用户名, 昵称, 密码, 角色ID"
114 115
// @Success 200 {string} string "{"success":true,"data":{},"msg":"注册成功"}"
// @Router /user/register [post]
116 117
func (b *BaseApi) Register(c *gin.Context) {
	var r systemReq.Register
118 119
	_ = c.ShouldBindJSON(&r)
	if err := utils.Verify(r, utils.RegisterVerify); err != nil {
120
		response.FailWithMessage(err.Error(), c)
121 122
		return
	}
123 124 125 126 127 128 129
	var authorities []system.SysAuthority
	for _, v := range r.AuthorityIds {
		authorities = append(authorities, system.SysAuthority{
			AuthorityId: v,
		})
	}
	user := &system.SysUser{Username: r.Username, NickName: r.NickName, Password: r.Password, HeaderImg: r.HeaderImg, AuthorityId: r.AuthorityId, Authorities: authorities}
130
	err, userReturn := userService.Register(*user)
131
	if err != nil {
何秀钢 已提交
132
		global.GVA_LOG.Error("注册失败!", zap.Any("err", err))
133
		response.FailWithDetailed(systemRes.SysUserResponse{User: userReturn}, "注册失败", c)
134
	} else {
135
		response.OkWithDetailed(systemRes.SysUserResponse{User: userReturn}, "注册成功", c)
136 137 138
	}
}

139
// @Tags SysUser
140
// @Summary 用户修改密码
Mr.奇淼('s avatar
Mr.奇淼( 已提交
141
// @Security ApiKeyAuth
142
// @Produce  application/json
143
// @Param data body systemReq.ChangePasswordStruct true "用户名, 原密码, 新密码"
144
// @Success 200 {string} string "{"success":true,"data":{},"msg":"修改成功"}"
145
// @Router /user/changePassword [post]
146 147
func (b *BaseApi) ChangePassword(c *gin.Context) {
	var user systemReq.ChangePasswordStruct
148 149 150
	_ = c.ShouldBindJSON(&user)
	if err := utils.Verify(user, utils.ChangePasswordVerify); err != nil {
		response.FailWithMessage(err.Error(), c)
151 152
		return
	}
Mr.奇淼('s avatar
Mr.奇淼( 已提交
153
	u := &system.SysUser{Username: user.Username, Password: user.Password}
154
	if err, _ := userService.ChangePassword(u, user.NewPassword); err != nil {
何秀钢 已提交
155
		global.GVA_LOG.Error("修改失败!", zap.Any("err", err))
156
		response.FailWithMessage("修改失败,原密码与当前账户不符", c)
157
	} else {
158
		response.OkWithMessage("修改成功", c)
159 160 161
	}
}

162
// @Tags SysUser
Mr.奇淼('s avatar
Mr.奇淼( 已提交
163 164 165 166
// @Summary 分页获取用户列表
// @Security ApiKeyAuth
// @accept application/json
// @Produce application/json
167
// @Param data body request.PageInfo true "页码, 每页大小"
168
// @Success 200 {string} string "{"success":true,"data":{},"msg":"获取成功"}"
169
// @Router /user/getUserList [post]
170
func (b *BaseApi) GetUserList(c *gin.Context) {
171
	var pageInfo request.PageInfo
172
	_ = c.ShouldBindJSON(&pageInfo)
173 174
	if err := utils.Verify(pageInfo, utils.PageInfoVerify); err != nil {
		response.FailWithMessage(err.Error(), c)
175 176
		return
	}
177
	if err, list, total := userService.GetUserInfoList(pageInfo); err != nil {
何秀钢 已提交
178
		global.GVA_LOG.Error("获取失败!", zap.Any("err", err))
m0_50812349's avatar
m0_50812349 已提交
179
		response.FailWithMessage("获取失败", c)
Mr.奇淼('s avatar
Mr.奇淼( 已提交
180
	} else {
181
		response.OkWithDetailed(response.PageResult{
Mr.奇淼('s avatar
Mr.奇淼( 已提交
182 183 184 185
			List:     list,
			Total:    total,
			Page:     pageInfo.Page,
			PageSize: pageInfo.PageSize,
m0_50812349's avatar
m0_50812349 已提交
186
		}, "获取成功", c)
Mr.奇淼('s avatar
Mr.奇淼( 已提交
187 188
	}
}
Mr.奇淼('s avatar
Mr.奇淼( 已提交
189

190
// @Tags SysUser
191
// @Summary 更改用户权限
Mr.奇淼('s avatar
Mr.奇淼( 已提交
192 193 194
// @Security ApiKeyAuth
// @accept application/json
// @Produce application/json
195
// @Param data body systemReq.SetUserAuth true "用户UUID, 角色ID"
196
// @Success 200 {string} string "{"success":true,"data":{},"msg":"修改成功"}"
Mr.奇淼('s avatar
Mr.奇淼( 已提交
197
// @Router /user/setUserAuthority [post]
198 199
func (b *BaseApi) SetUserAuthority(c *gin.Context) {
	var sua systemReq.SetUserAuth
200
	_ = c.ShouldBindJSON(&sua)
201
	if UserVerifyErr := utils.Verify(sua, utils.SetUserAuthorityVerify); UserVerifyErr != nil {
202 203 204
		response.FailWithMessage(UserVerifyErr.Error(), c)
		return
	}
205 206 207 208 209 210 211
	userID := utils.GetUserID(c)
	uuid := utils.GetUserUuid(c)
	if err := userService.SetUserAuthority(userID, uuid, sua.AuthorityId); err != nil {
		global.GVA_LOG.Error("修改失败!", zap.Any("err", err))
		response.FailWithMessage(err.Error(), c)
	} else {
		claims := utils.GetUserInfo(c)
212
		j := &utils.JWT{SigningKey: []byte(global.GVA_CONFIG.JWT.SigningKey)} // 唯一签名
213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237
		claims.AuthorityId = sua.AuthorityId
		if token, err := j.CreateToken(*claims); err != nil {
			global.GVA_LOG.Error("修改失败!", zap.Any("err", err))
			response.FailWithMessage(err.Error(), c)
		} else {
			c.Header("new-token", token)
			c.Header("new-expires-at", strconv.FormatInt(claims.ExpiresAt, 10))
			response.OkWithMessage("修改成功", c)
		}

	}
}

// @Tags SysUser
// @Summary 设置用户权限
// @Security ApiKeyAuth
// @accept application/json
// @Produce application/json
// @Param data body systemReq.SetUserAuthorities true "用户UUID, 角色ID"
// @Success 200 {string} string "{"success":true,"data":{},"msg":"修改成功"}"
// @Router /user/setUserAuthorities [post]
func (b *BaseApi) SetUserAuthorities(c *gin.Context) {
	var sua systemReq.SetUserAuthorities
	_ = c.ShouldBindJSON(&sua)
	if err := userService.SetUserAuthorities(sua.ID, sua.AuthorityIds); err != nil {
何秀钢 已提交
238
		global.GVA_LOG.Error("修改失败!", zap.Any("err", err))
239
		response.FailWithMessage("修改失败", c)
Mr.奇淼('s avatar
Mr.奇淼( 已提交
240
	} else {
241
		response.OkWithMessage("修改成功", c)
Mr.奇淼('s avatar
Mr.奇淼( 已提交
242 243
	}
}
244 245 246 247 248 249

// @Tags SysUser
// @Summary 删除用户
// @Security ApiKeyAuth
// @accept application/json
// @Produce application/json
250
// @Param data body request.GetById true "用户ID"
251
// @Success 200 {string} string "{"success":true,"data":{},"msg":"删除成功"}"
252
// @Router /user/deleteUser [delete]
253
func (b *BaseApi) DeleteUser(c *gin.Context) {
254 255
	var reqId request.GetById
	_ = c.ShouldBindJSON(&reqId)
256 257
	if err := utils.Verify(reqId, utils.IdVerify); err != nil {
		response.FailWithMessage(err.Error(), c)
258 259
		return
	}
260
	jwtId := utils.GetUserID(c)
261
	if jwtId == uint(reqId.ID) {
m0_50812349's avatar
m0_50812349 已提交
262 263 264
		response.FailWithMessage("删除失败, 自杀失败", c)
		return
	}
265
	if err := userService.DeleteUser(reqId.ID); err != nil {
266 267
		global.GVA_LOG.Error("删除失败!", zap.Any("err", err))
		response.FailWithMessage("删除失败", c)
268 269 270 271
	} else {
		response.OkWithMessage("删除成功", c)
	}
}
272 273

// @Tags SysUser
274
// @Summary 设置用户信息
275 276 277
// @Security ApiKeyAuth
// @accept application/json
// @Produce application/json
Mr.奇淼('s avatar
Mr.奇淼( 已提交
278
// @Param data body system.SysUser true "ID, 用户名, 昵称, 头像链接"
279
// @Success 200 {string} string "{"success":true,"data":{},"msg":"设置成功"}"
280
// @Router /user/setUserInfo [put]
281
func (b *BaseApi) SetUserInfo(c *gin.Context) {
Mr.奇淼('s avatar
Mr.奇淼( 已提交
282
	var user system.SysUser
283
	_ = c.ShouldBindJSON(&user)
284
	if err := utils.Verify(user, utils.IdVerify); err != nil {
285
		response.FailWithMessage(err.Error(), c)
286 287
		return
	}
288
	if err, ReqUser := userService.SetUserInfo(user); err != nil {
何秀钢 已提交
289
		global.GVA_LOG.Error("设置失败!", zap.Any("err", err))
290
		response.FailWithMessage("设置失败", c)
291
	} else {
292
		response.OkWithDetailed(gin.H{"userInfo": ReqUser}, "设置成功", c)
293 294
	}
}
295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311

// @Tags SysUser
// @Summary 获取用户信息
// @Security ApiKeyAuth
// @accept application/json
// @Produce application/json
// @Success 200 {string} string "{"success":true,"data":{},"msg":"获取成功"}"
// @Router /user/getUserInfo [get]
func (b *BaseApi) GetUserInfo(c *gin.Context) {
	uuid := utils.GetUserUuid(c)
	if err, ReqUser := userService.GetUserInfo(uuid); err != nil {
		global.GVA_LOG.Error("获取失败!", zap.Any("err", err))
		response.FailWithMessage("获取失败", c)
	} else {
		response.OkWithDetailed(gin.H{"userInfo": ReqUser}, "获取成功", c)
	}
}