Login.php 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use App\Models\Api\Personnel\User as UserModel;
  4. use App\Http\Requests\Api\Login as Request;
  5. use App\Facades\Servers\Sms\VerifyCode as Sms;
  6. use App\Facades\Servers\Email\VerifyCode as Email;
  7. use Illuminate\Support\Facades\Cache;
  8. /**
  9. * API登录控制器
  10. * @author 唐远望
  11. * @version 1.0
  12. * @date 2025-12-09
  13. *
  14. */
  15. class Login extends Api
  16. {
  17. /**
  18. * 登录方法 /api/login/index
  19. * @author 唐远望
  20. * @version 1.0
  21. * @date 2025-12-09
  22. * @param string user_code 登录账号
  23. * @param string password 登录密码
  24. *
  25. * */
  26. public function index(Request $Request, UserModel $UserModel)
  27. {
  28. // 验证规则
  29. $Request->scene('login')->validate();
  30. // 接收数据
  31. $user_code = $Request->input('user_code', '');
  32. // 接收数据
  33. $password = $Request->input('password', '');
  34. // 查询用户
  35. $admin = $UserModel->Where('user_code', $user_code)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  36. // 用户不存在
  37. if (!$admin || $admin['status']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  38. // 用户不存在
  39. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  40. // 转数组
  41. $admin = $admin->toArray();
  42. // 比对密码
  43. if (md5($password) != $admin['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  44. // 登录
  45. $accessToken = $UserModel->Login($admin['id']);
  46. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  47. $accessToken['username'] = $admin['name'];
  48. $accessToken['is_system_admin'] = 0;
  49. // 表单令牌
  50. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  51. }
  52. /**
  53. * 退出方法 /api/login/out
  54. * @author 唐远望
  55. * @version 1.0
  56. * @date 2025-12-09
  57. * @param string authcode 用户令牌
  58. *
  59. */
  60. public function out(UserModel $UserModel)
  61. {
  62. $user_info = $this->checkLogin();
  63. // 验证规则
  64. $uid = $user_info['uid'];
  65. // 退出登录
  66. $UserModel->LoginOut($uid, 'api');
  67. // 表单令牌
  68. return json_send(['code' => 'success', 'msg' => '退出成功', 'data' => '']);
  69. }
  70. /**
  71. * 手机号码登录 /api/login/mobile
  72. * @author 唐远望
  73. * @version 1.0
  74. * @date 2025-12-04
  75. * @param string mobile 手机号码
  76. * @param string password 登录密码
  77. *
  78. */
  79. public function mobile(Request $Request, UserModel $UserModel)
  80. {
  81. // 验证规则
  82. $Request->scene('mobile')->validate();
  83. // 接收数据
  84. $phone = $Request->input('phone', '');
  85. // 接收数据
  86. $password = $Request->input('password', '');
  87. // 查询用户
  88. $user_info = $UserModel->where('mobile', $phone)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  89. // 用户不存在
  90. if (!$user_info || $user_info['status']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  91. // 用户不存在
  92. if ($user_info['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  93. // 转数组
  94. $user_info = $user_info->toArray();
  95. // 比对密码
  96. if (md5($password) != $user_info['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  97. // 登录
  98. $accessToken = $UserModel->Login($user_info['id']);
  99. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  100. $accessToken['username'] = $user_info['name'];
  101. $accessToken['is_system_admin'] = 0;
  102. // 表单令牌
  103. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  104. }
  105. /**
  106. * 发送短信验证码
  107. * @author 唐远望
  108. * @version 1.0
  109. * @date 2026-01-16
  110. * @param string phone 手机号码
  111. *
  112. */
  113. public function send_sms_code(Request $Request, UserModel $UserModel)
  114. {
  115. // 验证规则
  116. $Request->scene('send_code')->validate();
  117. // 接收数据
  118. $mobile = request('phone', '');
  119. if (!$mobile) return json_send(['code' => 'error', 'msg' => '请先填写手机号']);
  120. // 获取数据
  121. $session = Cache::get('loginSmsCode_' . $mobile);
  122. // 如果有数据,并且验证码创建的时间在一分钟之内
  123. if ($session && time() - $session['create_time'] < 60) return json_send(['code' => 'error', 'msg' => '请稍后再试']);
  124. // 查询用户
  125. $admin = $UserModel->query()->where('mobile', $mobile)->first(['status']);
  126. if ($admin && $admin['status']) return json_send(['code' => 'error', 'msg' => '用户已被停用']);
  127. $code = strval(rand(100000, 999999));
  128. $result = Sms::sendCode($mobile, $code);
  129. if (isset($result['error'])) return json_send(['code' => 'error', 'msg' => $result['error']]);
  130. $session = ['code' => $code, 'mobile' => $mobile, 'create_time' => time()];
  131. Cache::put('loginSmsCode_' . $mobile, $session, 120);
  132. return json_send(['code' => 'success', 'msg' => '发送成功', 'data' => '']);
  133. }
  134. /**
  135. * 发送邮箱验证码
  136. * @author 唐远望
  137. * @version 1.0
  138. * @date 2026-01-16
  139. * @param string email 邮箱号码
  140. *
  141. */
  142. public function send_email_code(Request $Request, UserModel $UserModel){
  143. // 验证规则
  144. $Request->scene('send_email_code')->validate();
  145. // 接收数据
  146. $email = request('email', '');
  147. if (!$email) return json_send(['code' => 'error', 'msg' => '请先填写邮箱']);
  148. // 获取数据
  149. $session = Cache::get('loginEmailCode_' . $email);
  150. // 如果有数据,并且验证码创建的时间在一分钟之内
  151. if ($session && time() - $session['create_time'] < 60) return json_send(['code' => 'error', 'msg' => '请稍后再试']);
  152. // 查询用户
  153. $admin = $UserModel->query()->where('email', $email)->first(['status']);
  154. if ($admin && $admin['status']) return json_send(['code' => 'error', 'msg' => '用户已被停用']);
  155. $code = strval(rand(100000, 999999));
  156. $subject = '验证码';
  157. $body = '您的验证码是:' . $code . ',2分钟内有效,请勿外泄。';
  158. $result = Email::sendSmtpEmail($email, $subject, $body);
  159. if (isset($result['error'])) return json_send(['code' => 'error', 'msg' => $result['error']]);
  160. $session = ['code' => $code, 'email' => $email, 'create_time' => time()];
  161. Cache::put('loginEmailCode_' . $email, $session, 120);
  162. return json_send(['code' => 'success', 'msg' => '发送成功', 'data' => '']);
  163. }
  164. /**
  165. * 邮箱登录 /api/login/email
  166. * @author 唐远望
  167. * @version 1.0
  168. * @date 2026-01-16
  169. * @param string email 邮箱号码
  170. * @param string password 登录密码
  171. *
  172. */
  173. public function email(Request $Request, UserModel $UserModel)
  174. {
  175. // 验证规则
  176. $Request->scene('email')->validate();
  177. // 接收数据
  178. $email = $Request->input('email', '');
  179. // 接收数据
  180. $password = $Request->input('password', '');
  181. // 查询用户
  182. $admin = $UserModel->where('email', $email)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  183. // 用户不存在
  184. if (!$admin) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  185. // 用户不存在
  186. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  187. // 转数组
  188. $admin = $admin->toArray();
  189. // 比对密码
  190. if (md5($password) != $admin['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  191. // 登录
  192. $accessToken = $UserModel->Login($admin['id']);
  193. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  194. $accessToken['username'] = $admin['name'];
  195. $accessToken['is_system_admin'] = 0;
  196. // 表单令牌
  197. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  198. }
  199. /**
  200. * 邮箱注册
  201. * @author 唐远望
  202. * @version 1.0
  203. * @date 2026-01-16
  204. * @param string email 邮箱号码
  205. *
  206. */
  207. public function email_register(Request $Request, UserModel $UserModel)
  208. {
  209. // 验证规则
  210. $Request->scene('email_register')->validate();
  211. // 接收数据
  212. $code = request('code', '');
  213. $email = $Request->input('email', '');
  214. $password = $Request->input('password', '');
  215. $name = $Request->input('name', '');
  216. $mobile = $Request->input('mobile', '');
  217. $session = Cache::get('loginEmailCode_' . $email);
  218. if (!$session) return json_send(['code' => 'error', 'msg' => '请先获取邮箱验证码验证码']);
  219. if ($session['code'] != $code || $session['email'] != $email) return json_send(['code' => 'error', 'msg' => '邮箱验证码错误']);
  220. // 查询用户
  221. $admin = $UserModel->where('email', $email)->first(['id']);
  222. // 用户已存在
  223. if ($admin) return json_send(['code' => 'error', 'msg' => '该邮箱已注册']);
  224. // 注册用户
  225. $data = [
  226. 'name' => $name,
  227. 'mobile' => $mobile,
  228. 'email' => $email,
  229. 'password' => md5($password),
  230. 'status' => 0,
  231. 'insert_time' => time(),
  232. 'update_time' => time(),
  233. ];
  234. $user_id = $UserModel->insertGetId($data);
  235. if (!$user_id) return json_send(['code' => 'error', 'msg' => '注册失败']);
  236. $UserModel->where('id', $user_id)->update(['user_code' => 'LY'. $user_id]);
  237. // 登录
  238. $accessToken = $UserModel->Login($UserModel->id);
  239. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  240. $accessToken['username'] = $name;
  241. $accessToken['is_system_admin'] = 0;
  242. // 表单令牌
  243. return json_send(['code' => 'success', 'msg' => '注册成功', 'data' => $accessToken]);
  244. }
  245. /**
  246. * 手机验证码登录 /api/login/mobile_code
  247. * @author 唐远望
  248. * @version 1.0
  249. * @date 2026-01-16
  250. * @param string mobile 手机号码
  251. * @param string code 验证码
  252. *
  253. */
  254. public function mobile_code(Request $Request, UserModel $UserModel)
  255. {
  256. // 验证规则
  257. $Request->scene('mobile_code')->validate();
  258. // 接收数据
  259. $phone = $Request->input('phone', '');
  260. // 接收数据
  261. $code = $Request->input('code', '');
  262. // 获取数据
  263. $session = Cache::get('loginSmsCode_' . $phone);
  264. if (!$session) return json_send(['code' => 'error', 'msg' => '请先获取手机号验证码']);
  265. if ($session['code'] != $code || $session['mobile'] != $phone) return json_send(['code' => 'error', 'msg' => '验证码错误']);
  266. // 查询用户
  267. $admin = $UserModel->where('mobile', $phone)->first(['company_id', 'id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  268. // 用户不存在
  269. if (!$admin) return json_send(['code' => 'error', 'msg' => '账号不存在']);
  270. // 用户不存在
  271. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  272. // 转数组
  273. $admin = $admin->toArray();
  274. // 登录
  275. $accessToken = $UserModel->Login($admin['id']);
  276. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  277. $accessToken['username'] = $admin['name'];
  278. $accessToken['is_system_admin'] = 0;
  279. // 表单令牌
  280. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  281. }
  282. }