auth.go 8.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306
  1. package controller
  2. import (
  3. "encoding/base64"
  4. "fmt"
  5. "github.com/gin-gonic/gin"
  6. "github.com/go-playground/validator/v10"
  7. "hongze/hz_crm_eta/controller/resp"
  8. "hongze/hz_crm_eta/global"
  9. "hongze/hz_crm_eta/models/crm"
  10. "hongze/hz_crm_eta/models/eta"
  11. "hongze/hz_crm_eta/models/rddp"
  12. "hongze/hz_crm_eta/models/request"
  13. "hongze/hz_crm_eta/models/response"
  14. "hongze/hz_crm_eta/services"
  15. "hongze/hz_crm_eta/utils"
  16. "time"
  17. )
  18. type AuthController struct{}
  19. // CreateAuthCode
  20. // @Description 生成编码
  21. // @Success 200 {string} string "获取成功"
  22. // @Router /auth/auth_code [post]
  23. func (a *AuthController) CreateAuthCode(c *gin.Context) {
  24. var req request.CreateAuthCodeReq
  25. err := c.Bind(&req)
  26. if err != nil {
  27. errs, ok := err.(validator.ValidationErrors)
  28. if !ok {
  29. resp.FailData("参数解析失败", "Err:"+err.Error(), c)
  30. return
  31. }
  32. resp.FailData("参数解析失败", errs.Translate(global.Trans), c)
  33. return
  34. }
  35. prefix := map[int]string{
  36. utils.SOURCE_CRM_FLAG: utils.CACHE_ETA_AUTH_CODE_PREFIX,
  37. utils.SOURCE_ETA_FLAG: utils.CACHE_CRM_AUTH_CODE_PREFIX,
  38. }
  39. str := base64.URLEncoding.EncodeToString([]byte(req.AdminName))
  40. key := fmt.Sprint(prefix[req.Source], str)
  41. // 是否已生成但未消费
  42. exist, _ := global.Rc.RedisString(key)
  43. if exist != "" {
  44. resp.OkData("获取成功", str, c)
  45. return
  46. }
  47. if global.Rc.SetNX(key, req.AdminName, utils.GetTodayLastSecond()) {
  48. resp.OkData("获取成功", str, c)
  49. return
  50. }
  51. return
  52. }
  53. // GetEtaToken
  54. // @Description 换取ETA系统Token
  55. // @Success 200 {string} string "操作成功"
  56. // @Router /auth/eta_token [post]
  57. func (a *AuthController) GetEtaToken(c *gin.Context) {
  58. var req request.TokenLoginReq
  59. err := c.Bind(&req)
  60. if err != nil {
  61. errs, ok := err.(validator.ValidationErrors)
  62. if !ok {
  63. resp.FailData("参数解析失败", "Err:"+err.Error(), c)
  64. return
  65. }
  66. resp.FailData("参数解析失败", errs.Translate(global.Trans), c)
  67. return
  68. }
  69. key := fmt.Sprint(utils.CACHE_ETA_AUTH_CODE_PREFIX, req.AuthCode)
  70. adminName, e := global.Rc.RedisString(key)
  71. if e != nil {
  72. resp.FailMsg("获取失败", "获取失败, Redis Err: "+e.Error(), c)
  73. return
  74. }
  75. if adminName == "" {
  76. resp.Fail("获取失败, 无效编码", c)
  77. return
  78. }
  79. // 清除AuthCode
  80. defer func() {
  81. _ = global.Rc.Delete(key)
  82. }()
  83. // 获取用户信息
  84. sysUser, e := eta.GetSysUserByAdminName(adminName)
  85. if e != nil {
  86. if e == utils.ErrNoRow {
  87. resp.Fail("用户不存在", c)
  88. return
  89. }
  90. resp.FailMsg("获取失败", "获取用户信息失败, err: "+e.Error(), c)
  91. return
  92. }
  93. var token string
  94. account := utils.MD5(adminName)
  95. token = utils.GenToken(account)
  96. sysSession := new(eta.SysSession)
  97. sysSession.UserName = adminName
  98. sysSession.SysUserId = sysUser.AdminId
  99. sysSession.ExpiredTime = time.Now().Add(time.Hour) // token有效期现在均为1h
  100. sysSession.IsRemember = 0
  101. sysSession.CreatedTime = time.Now()
  102. sysSession.LastUpdatedTime = time.Now()
  103. sysSession.AccessToken = token
  104. if e := eta.AddSysSession(sysSession); e != nil {
  105. resp.FailMsg("获取失败", "新增session失败, err: "+e.Error(), c)
  106. return
  107. }
  108. login := new(response.LoginResp)
  109. login.Authorization = token
  110. login.Authorization = "authorization=" + token + "$account=" + account
  111. login.RealName = sysUser.RealName
  112. login.AdminId = sysUser.AdminId
  113. login.AdminName = sysUser.AdminName
  114. login.RoleName = sysUser.RoleName
  115. login.SysRoleTypeCode = sysUser.RoleTypeCode //系统角色编码
  116. login.RoleTypeCode = sysUser.RoleTypeCode
  117. login.Authority = sysUser.Authority
  118. // 判断实际的角色类型
  119. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_FICC_GROUP {
  120. login.RoleTypeCode = utils.ROLE_TYPE_CODE_FICC_SELLER
  121. }
  122. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_FICC_TEAM {
  123. login.RoleTypeCode = utils.ROLE_TYPE_CODE_FICC_SELLER
  124. }
  125. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_FICC_DEPARTMENT {
  126. login.RoleTypeCode = utils.ROLE_TYPE_CODE_FICC_SELLER
  127. }
  128. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_RAI_GROUP {
  129. login.RoleTypeCode = utils.ROLE_TYPE_CODE_RAI_SELLER
  130. }
  131. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_RAI_DEPARTMENT {
  132. login.RoleTypeCode = utils.ROLE_TYPE_CODE_RAI_SELLER
  133. }
  134. if sysUser.RoleName == utils.ROLE_NAME_FICC_DIRECTOR {
  135. login.RoleTypeCode = utils.ROLE_TYPE_CODE_FICC_SELLER
  136. }
  137. // 角色产品ID
  138. productId := services.GetProductId(sysUser.RoleTypeCode)
  139. productIdName := map[int]string{
  140. 0: "admin",
  141. utils.COMPANY_PRODUCT_FICC_ID: utils.COMPANY_PRODUCT_FICC_NAME,
  142. utils.COMPANY_PRODUCT_RAI_ID: utils.COMPANY_PRODUCT_RAI_NAME,
  143. }
  144. login.ProductName = productIdName[productId]
  145. // 新增登录记录
  146. {
  147. record := new(eta.SysUserLoginRecord)
  148. record.Uid = sysUser.AdminId
  149. record.UserName = adminName
  150. record.Ip = c.RemoteIP()
  151. record.Stage = "login"
  152. record.CreateTime = time.Now()
  153. go eta.AddSysUserLoginRecord(record)
  154. }
  155. resp.OkData("获取成功", login, c)
  156. }
  157. // GetCrmToken
  158. // @Description 换取CRM系统Token
  159. // @Success 200 {string} string "操作成功"
  160. // @Router /auth/crm_token [post]
  161. func (a *AuthController) GetCrmToken(c *gin.Context) {
  162. var req request.TokenLoginReq
  163. err := c.Bind(&req)
  164. if err != nil {
  165. errs, ok := err.(validator.ValidationErrors)
  166. if !ok {
  167. resp.FailData("参数解析失败", "Err:"+err.Error(), c)
  168. return
  169. }
  170. resp.FailData("参数解析失败", errs.Translate(global.Trans), c)
  171. return
  172. }
  173. key := fmt.Sprint(utils.CACHE_CRM_AUTH_CODE_PREFIX, req.AuthCode)
  174. adminName, e := global.Rc.RedisString(key)
  175. if e != nil {
  176. resp.FailMsg("获取失败", "获取失败, Redis Err: "+e.Error(), c)
  177. return
  178. }
  179. if adminName == "" {
  180. resp.Fail("获取失败, 无效编码", c)
  181. return
  182. }
  183. // 清除AuthCode
  184. defer func() {
  185. _ = global.Rc.Delete(key)
  186. }()
  187. // 获取用户信息
  188. sysUser, e := crm.GetSysUserByAdminName(adminName)
  189. if e != nil {
  190. if e == utils.ErrNoRow {
  191. resp.Fail("用户不存在", c)
  192. return
  193. }
  194. resp.FailMsg("获取失败", "获取用户信息失败, err: "+e.Error(), c)
  195. return
  196. }
  197. // 是否重新生成token
  198. var isRegenerate bool
  199. var token string
  200. account := utils.MD5(adminName)
  201. // 获取用户未过期的session, 避免过于频繁生成token
  202. expired := time.Now().AddDate(0, 0, 1).Format(utils.FormatDateTime)
  203. session, _ := rddp.GetUserUnexpiredSysSession(adminName, expired)
  204. if session != nil && session.AccessToken != "" {
  205. token = session.AccessToken
  206. // 校验缓存中token是否过期,如果过期了,那么需要重新生成
  207. loginKey := fmt.Sprint(utils.CACHE_ACCESS_TOKEN_LOGIN, session.Id)
  208. loginInfo, _ := global.Rc.RedisString(loginKey)
  209. if loginInfo == `` {
  210. isRegenerate = true
  211. }
  212. } else {
  213. // 没有获取到用户未过期的session,那么需要重新生成
  214. isRegenerate = true
  215. }
  216. // 重新生成token
  217. if isRegenerate {
  218. token = utils.GenToken(account)
  219. sysSession := new(rddp.SysSession)
  220. sysSession.UserName = adminName
  221. sysSession.SysUserId = sysUser.AdminId
  222. sysSession.ExpiredTime = time.Now().Add(time.Hour) // token有效期现在均为1h
  223. sysSession.IsRemember = 1
  224. sysSession.CreatedTime = time.Now()
  225. sysSession.LastUpdatedTime = time.Now()
  226. sysSession.AccessToken = token
  227. if e := rddp.AddSysSession(sysSession); e != nil {
  228. resp.FailMsg("获取失败", "新增session失败, err: "+e.Error(), c)
  229. return
  230. }
  231. }
  232. login := new(response.LoginResp)
  233. login.Authorization = token
  234. login.Authorization = "authorization=" + token + "$account=" + account
  235. login.RealName = sysUser.RealName
  236. login.AdminId = sysUser.AdminId
  237. login.AdminName = sysUser.AdminName
  238. login.RoleName = sysUser.RoleName
  239. login.SysRoleTypeCode = sysUser.RoleTypeCode //系统角色编码
  240. login.RoleTypeCode = sysUser.RoleTypeCode
  241. login.Authority = sysUser.Authority
  242. // 判断实际的角色类型
  243. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_FICC_GROUP {
  244. login.RoleTypeCode = utils.ROLE_TYPE_CODE_FICC_SELLER
  245. }
  246. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_FICC_TEAM {
  247. login.RoleTypeCode = utils.ROLE_TYPE_CODE_FICC_SELLER
  248. }
  249. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_FICC_DEPARTMENT {
  250. login.RoleTypeCode = utils.ROLE_TYPE_CODE_FICC_SELLER
  251. }
  252. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_RAI_GROUP {
  253. login.RoleTypeCode = utils.ROLE_TYPE_CODE_RAI_SELLER
  254. }
  255. if sysUser.RoleTypeCode == utils.ROLE_TYPE_CODE_RAI_DEPARTMENT {
  256. login.RoleTypeCode = utils.ROLE_TYPE_CODE_RAI_SELLER
  257. }
  258. if sysUser.RoleName == utils.ROLE_NAME_FICC_DIRECTOR {
  259. login.RoleTypeCode = utils.ROLE_TYPE_CODE_FICC_SELLER
  260. }
  261. // 角色产品ID
  262. productId := services.GetProductId(sysUser.RoleTypeCode)
  263. productIdName := map[int]string{
  264. 0: "admin",
  265. utils.COMPANY_PRODUCT_FICC_ID: utils.COMPANY_PRODUCT_FICC_NAME,
  266. utils.COMPANY_PRODUCT_RAI_ID: utils.COMPANY_PRODUCT_RAI_NAME,
  267. }
  268. login.ProductName = productIdName[productId]
  269. // 新增登录记录
  270. {
  271. record := new(rddp.SysUserLoginRecord)
  272. record.Uid = sysUser.AdminId
  273. record.UserName = adminName
  274. record.Ip = c.RemoteIP()
  275. record.Stage = "login"
  276. record.CreateTime = time.Now()
  277. go rddp.AddSysUserLoginRecord(record)
  278. }
  279. resp.OkData("获取成功", login, c)
  280. }