AdminUser.php 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309
  1. <?php namespace App\Http\Controllers\Admin;
  2. use App\Http\Requests\Admin\AdminUser as Request;
  3. use App\Models\AdminUser as Model;
  4. use App\Models\AdminRule;
  5. use Illuminate\Support\Facades\DB;
  6. /**
  7. * 系统用户
  8. *
  9. * @author 刘相欣
  10. *
  11. */
  12. class AdminUser extends Auth{
  13. protected function _initialize(){
  14. parent::_initialize();
  15. $this->assign('breadcrumb1','用户管理');
  16. $this->assign('breadcrumb2','后台管理员');
  17. }
  18. /**
  19. * 列表页
  20. *
  21. * */
  22. public function index(Model $Model){
  23. $mp = [];
  24. $session = session('userRule');
  25. if ($session){
  26. $mp[] = ['admin_rule.company_id','=',$session['company_id']];
  27. if ($session['business_id']){
  28. $mp[] = ['admin_rule.business_id','=',$session['business_id']];
  29. }
  30. }
  31. if(!in_array(admin('uid'), explode(',', config('administrator')))){
  32. $mp['admin_rule.type'] = 1;
  33. }
  34. // 查询系统用户
  35. $list = $Model::query();
  36. if($mp) $list->join('admin_rule','admin_rule.admin_uid','=','admin.uid');
  37. $list = $list->where($mp)
  38. ->orderByDesc('admin.uid')
  39. ->paginate(config('page_num',10));
  40. // 循环处理
  41. foreach ($list as $key => $value) {
  42. // 获取分组名
  43. $group = DB::table('auth_group')
  44. ->join('auth_group_access','auth_group_access.group_id','=','auth_group.id')
  45. ->where([['auth_group_access.user_uid','=',$value['uid']]])
  46. ->pluck('auth_group.title')->toArray();
  47. if (in_array($value['uid'],explode(',',config('administrator')))) $group[] = '超管';
  48. // 切成字符串
  49. $value['title'] = implode('、', $group);
  50. // 重组
  51. $list[$key] = $value;
  52. }
  53. // 分配数据
  54. $this->assign('empty', '<tr><td colspan="20">~~暂无数据</td></tr>');
  55. $this->assign('list',$list);
  56. // 加载模板
  57. return $this->fetch();
  58. }
  59. /**
  60. * 添加
  61. *
  62. * */
  63. public function add(Request $request,Model $Model,AdminRule $AdminRule){
  64. if( request()->isMethod('post') ){
  65. // 验证参数
  66. $request->scene('add')->validate();
  67. // 接收数据
  68. $data['username'] = request('username','');
  69. $data['phone'] = request('phone','');
  70. $data['password'] = request('password','');
  71. $data['password'] = md5($data['password']);
  72. $dataType = request('data_type',1);
  73. // 角色数据
  74. $ruleData = ['menu_type'=>1,'data_type'=>$dataType,'type'=>1,'company_id'=>1,'business_id'=>0];
  75. // 当前登录用户角色数据
  76. $session = session('userRule') ? session('userRule') : ['menu_type'=>0,'company_id'=>0,'business_id'=>0];
  77. // 修改数据
  78. if( $session['menu_type'] ) $ruleData['menu_type'] = $session['menu_type'];
  79. if( $session['company_id'] ) $ruleData['company_id'] = $session['company_id'];
  80. if( $session['business_id'] ) $ruleData['business_id'] = $session['business_id'];
  81. // 所属权限组
  82. $groups = (array) request('groups',[]);
  83. // 开启事务
  84. DB::beginTransaction();
  85. // 写入数据表
  86. $uid = $Model->add($data);
  87. // 如果操作失败
  88. if( !$uid ) {
  89. // 回滚事务
  90. DB::rollBack();
  91. // 告知错误
  92. return json_send(['code'=>'error','msg'=>'新增失败']);
  93. }
  94. // 权限组
  95. $access = [];
  96. // 循环数据
  97. foreach ( $groups as $group_id) {
  98. // 追加数据
  99. $access[] = ['group_id'=>$group_id,'user_uid'=>$uid];
  100. }
  101. // 写入用户权限组
  102. $result = DB::table('auth_group_access')->insert($access);
  103. // 如果操作失败
  104. if( !$result ) {
  105. // 回滚事务
  106. DB::rollBack();
  107. // 告知错误
  108. return json_send(['code'=>'error','msg'=>'权限分配失败']);
  109. }
  110. //写入用户角色表
  111. $ruleData['admin_uid'] = $uid;
  112. $ruleUid = $AdminRule->add($ruleData);
  113. // 如果操作失败
  114. if( !$ruleUid ){
  115. // 回滚事务
  116. DB::rollBack();
  117. return json_send(['code'=>'error','msg'=>'新增管理员角色失败']);
  118. }
  119. // 提交事务
  120. DB::commit();
  121. // 记录行为
  122. $this->addAdminHistory(admin('uid'),$Model->getTable(),$uid,1,[],$data);
  123. // 告知结果
  124. return json_send(['code'=>'success','msg'=>'新增成功','action'=>'add']);
  125. }
  126. $whereGroup = [];
  127. // 如果不是超管 查询当前用户所属组
  128. $administrator = explode(',', config('administrator'));
  129. if(!in_array(admin('uid'),$administrator)){
  130. //用户所属组
  131. $gsGroup = DB::table('auth_group_access')->where(['user_uid'=>admin('uid')])->pluck('group_id')->toArray();
  132. //用户所属组 上级
  133. $upGroup = DB::table('auth_group')->whereIn('id',$gsGroup)->pluck('group_pid')->toArray();
  134. //用户所属组的下级
  135. $groupLower = DB::table('auth_group')->whereIn('group_pid',$gsGroup)->pluck('id')->toArray();
  136. //var_dump($groupLower);
  137. $whereGroup = array_merge($upGroup,$gsGroup,$groupLower);
  138. }
  139. // 查询用户组
  140. $query = DB::table('auth_group');
  141. if($whereGroup) $query->whereIn('id',$whereGroup);
  142. $group = $query->whereNotIn('id',explode(',',config('CUSTOM_GROUP')))->select(['id','title'])->get()->toArray();
  143. // 错误告知
  144. if( !$group ) $this->error('请先添加用户组');
  145. // 分配数据
  146. $this->assign('group',$group);
  147. $this->assign('crumbs','新增');
  148. // 加载模板
  149. return $this->fetch();
  150. }
  151. /**
  152. * 修改
  153. *
  154. * */
  155. public function edit(Request $request,Model $Model,AdminRule $AdminRule){
  156. // 接收参数
  157. $uid = request('uid',0);
  158. // 查询用户
  159. $oldData = $Model->where(['uid'=>$uid])->first();
  160. if(request()->isMethod('post')){
  161. // 验证参数
  162. $request->scene('edit')->validate();
  163. // 接收数据
  164. $data['username'] = request('username','');
  165. $data['phone'] = request('phone','');
  166. $dataType = request('data_type',1);
  167. // 角色数据
  168. $ruleData = $AdminRule::query()->where([['admin_uid','=',$uid]])->first(['id','admin_uid','menu_type','data_type','type','company_id','business_id']);
  169. // 如果不存在的话
  170. $ruleData = $ruleData ? $ruleData->toArray() : ['admin_uid'=>$uid,'menu_type'=>1,'data_type'=>$dataType,'type'=>1,'company_id'=>1,'business_id'=>0];
  171. // 当前登录用户角色数据
  172. $session = session('userRule') ? session('userRule') : ['menu_type'=>0,'company_id'=>0,'business_id'=>0];
  173. // 修改数据
  174. if( $session['menu_type'] ) $ruleData['menu_type'] = $session['menu_type'];
  175. if( $session['company_id'] ) $ruleData['company_id'] = $session['company_id'];
  176. if( $session['business_id'] ) $ruleData['business_id'] = $session['business_id'];
  177. // 密码
  178. $password = request('password','');
  179. // 所属权限组
  180. $groups = (array) request('groups',[]);
  181. // 如果用户不存在
  182. if( !$oldData ) return json_send(['code'=>'error','msg'=>'用户不存在']);
  183. // 不能修改超管的账号
  184. if( $oldData['username'] == config('administrator') ) return json_send(['code'=>'error','msg'=>'这是被禁止的操作']);
  185. // 如果要修密码
  186. if( $password ) $data['password'] = md5($password);
  187. // 开启事务
  188. DB::beginTransaction();
  189. // 写入数据表
  190. $result = $Model->edit($uid,$data);
  191. // 如果操作失败
  192. if( !$result ) {
  193. // 回滚事务
  194. DB::rollBack();
  195. // 告知错误
  196. return json_send(['code'=>'error','msg'=>'新增失败']);
  197. }
  198. // 清空权限组
  199. DB::table('auth_group_access')->where([['user_uid','=',$uid]])->delete();
  200. // 权限组
  201. $access = [];
  202. // 循环数据
  203. foreach ( $groups as $group_id) {
  204. // 追加数据
  205. $access[] = ['group_id'=>$group_id,'user_uid'=>$uid];
  206. }
  207. // 写入用户权限组
  208. $result = DB::table('auth_group_access')->insert($access);
  209. // 如果操作失败
  210. if( !$result ) {
  211. // 回滚事务
  212. DB::rollBack();
  213. // 告知错误
  214. return json_send(['code'=>'error','msg'=>'权限分配失败']);
  215. }
  216. // 写入数据表
  217. $result = empty($ruleData['id']) ? $AdminRule->add($ruleData) : $AdminRule->edit($ruleData['id'],$ruleData);
  218. // 如果操作失败
  219. if( !$result ) {
  220. // 回滚事务
  221. DB::rollBack();
  222. // 告知错误
  223. return json_send(['code'=>'error','msg'=>'修改失败']);
  224. }
  225. // 提交事务
  226. DB::commit();
  227. // 记录行为
  228. $this->addAdminHistory(admin('uid'),$Model->getTable(),$uid,2,$oldData,$data);
  229. // 告知结果
  230. return json_send(['code'=>'success','msg'=>'修改成功','action'=>'edit']);
  231. }
  232. $whereGroup = [];
  233. // 如果不是超管 查询当前用户所属组
  234. $administrator = explode(',', config('administrator'));
  235. if(!in_array(admin('uid'),$administrator)){
  236. // 用户所属组
  237. $gsGroup = DB::table('auth_group_access')->where(['user_uid'=>admin('uid')])->pluck('group_id')->toArray();
  238. // 用户所属组 上级
  239. $upGroup = DB::table('auth_group')->whereIn('id',$gsGroup)->pluck('group_pid')->toArray();
  240. // 用户所属组的下级
  241. $groupLower = DB::table('auth_group')->whereIn('group_pid',$gsGroup)->pluck('id')->toArray();
  242. // 下属组
  243. $whereGroup = array_merge($upGroup,$gsGroup,$groupLower);
  244. }
  245. // 查询用户组
  246. $query = DB::table('auth_group');
  247. // 查询组
  248. if($whereGroup) $query->whereIn('id',$whereGroup);
  249. // 获取
  250. $group = $query->whereNotIn('id',explode(',',config('CUSTOM_GROUP')))->select(['id','title'])->get()->toArray();
  251. // 错误告知
  252. if( !$group ) return $this->error('请先添加用户组');
  253. // 错误告知
  254. if( !$oldData ) return $this->error('查无数据');
  255. // 查询用户的用户组
  256. $oldData['group'] = DB::table('auth_group_access')->where([['user_uid','=',$uid]])->pluck('group_id')->toArray();
  257. // 分配数据
  258. $this->assign('oldData',$oldData);
  259. $this->assign('group',$group);
  260. $this->assign('crumbs','修改');
  261. // 加载模板
  262. return $this->fetch();
  263. }
  264. /**
  265. * 操作历史
  266. *
  267. * */
  268. public function history(){
  269. // 查询
  270. $list = DB::table('user_action')->orderByDesc('ua_id')->paginate(config('page_num',10))->appends(request()->all());
  271. // 分配数据
  272. $this->assign('empty', '<tr><td colspan="20">~~暂无数据</td></tr>');
  273. $this->assign('breadcrumb2','操作记录');
  274. $this->assign('list',$list);
  275. // 加载模板
  276. return $this->fetch();
  277. }
  278. /**
  279. * 修改状态
  280. *
  281. * */
  282. public function set_status(Request $request,Model $Model){
  283. // 验证参数
  284. $request->scene('set_status')->validate();
  285. // 设置状态
  286. $id = request('uid',0);
  287. $status = request('status',0);
  288. // 查询用户
  289. $oldData = $Model->where(['uid'=>$id])->first();
  290. // 如果用户不存在
  291. if( !$oldData ) return json_send(['code'=>'error','msg'=>'用户不存在']);
  292. // 执行修改
  293. $result = $Model->edit($id,['status'=>$status]);
  294. // 提示新增失败
  295. if( !$result ) return json_send(['code'=>'error','msg'=>'设置失败']);
  296. // 记录行为
  297. $this->addAdminHistory(admin('uid'),$Model->getTable(),$id,2,$oldData,['status'=>$status]);
  298. // 告知结果
  299. return json_send(['code'=>'success','msg'=>'设置成功','path'=>'']);
  300. }
  301. }