Login.php 8.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use App\Models\Api\Personnel\Employee as EmployeeModel;
  4. use App\Http\Requests\Api\Login as Request;
  5. use App\Facades\Servers\Sms\VerifyCode as Sms;
  6. use Illuminate\Support\Facades\Cache;
  7. /**
  8. * API登录控制器
  9. * @author 唐远望
  10. * @version 1.0
  11. * @date 2025-12-09
  12. *
  13. */
  14. class Login extends Api
  15. {
  16. /**
  17. * 登录方法 /manager/login/index
  18. * @author 唐远望
  19. * @version 1.0
  20. * @date 2025-12-09
  21. * @param string employee_code 登录账号
  22. * @param string password 登录密码
  23. *
  24. * */
  25. public function index(Request $Request, EmployeeModel $EmployeeModel)
  26. {
  27. // 验证规则
  28. $Request->scene('login')->validate();
  29. // 接收数据
  30. $employee_code = $Request->input('employee_code', '');
  31. // 接收数据
  32. $password = $Request->input('password', '');
  33. // 查询用户
  34. $admin = $EmployeeModel->Where('employee_code', $employee_code)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  35. // 用户不存在
  36. if (!$admin || $admin['status']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  37. // 用户不存在
  38. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  39. // 转数组
  40. $admin = $admin->toArray();
  41. // 比对密码
  42. if (md5($password) != $admin['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  43. // 登录
  44. $accessToken = $EmployeeModel->Login($admin['id'], 'api');
  45. // 比对密码
  46. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  47. // 获取权限列表
  48. $accessToken['username'] = $admin['name'];
  49. $accessToken['is_system_admin'] = 0;
  50. // 表单令牌
  51. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  52. }
  53. /**
  54. * 退出方法 /manager/login/out
  55. * @author 唐远望
  56. * @version 1.0
  57. * @date 2025-12-09
  58. * @param string authcode 用户令牌
  59. *
  60. */
  61. public function out(EmployeeModel $EmployeeModel)
  62. {
  63. $user_info = $this->checkLogin();
  64. // 验证规则
  65. $uid = $user_info['uid'];
  66. // 退出登录
  67. $EmployeeModel->LoginOut($uid, 'api');
  68. // 表单令牌
  69. return json_send(['code' => 'success', 'msg' => '退出成功', 'data' => '']);
  70. }
  71. /**
  72. * 手机号码登录 /manager/login/mobile
  73. * @author 唐远望
  74. * @version 1.0
  75. * @date 2025-12-04
  76. * @param string mobile 手机号码
  77. * @param string password 登录密码
  78. *
  79. */
  80. public function mobile(Request $Request, EmployeeModel $EmployeeModel)
  81. {
  82. // 验证规则
  83. $Request->scene('mobile')->validate();
  84. // 接收数据
  85. $phone = $Request->input('phone', '');
  86. // 接收数据
  87. $password = $Request->input('password', '');
  88. // 查询用户
  89. $user_info = $EmployeeModel->where('mobile', $phone)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  90. // 用户不存在
  91. if (!$user_info || $user_info['status']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  92. // 用户不存在
  93. if ($user_info['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  94. // 转数组
  95. $user_info = $user_info->toArray();
  96. // 比对密码
  97. if (md5($password) != $user_info['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  98. // 登录
  99. $accessToken = $EmployeeModel->Login($user_info['id'], 'api');
  100. // 比对密码
  101. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  102. // 获取权限列表
  103. $accessToken['username'] = $user_info['name'];
  104. $accessToken['is_system_admin'] = 0;
  105. // 表单令牌
  106. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  107. }
  108. /**
  109. * 发送验证码
  110. * @author 唐远望
  111. * @version 1.0
  112. * @date 2026-01-16
  113. * @param string phone 手机号码
  114. *
  115. */
  116. public function send_code(Request $Request, EmployeeModel $EmployeeModel)
  117. {
  118. // 验证规则
  119. $Request->scene('send_code')->validate();
  120. // 接收数据
  121. $mobile = request('phone', '');
  122. if (!$mobile) return json_send(['code' => 'error', 'msg' => '请先填写手机号']);
  123. // 获取数据
  124. $session = Cache::get('loginSmsCode_' . $mobile);
  125. // 如果有数据,并且验证码创建的时间在一分钟之内
  126. if ($session && time() - $session['create_time'] < 60) return json_send(['code' => 'error', 'msg' => '请稍后再试']);
  127. // 查询用户
  128. $admin = $EmployeeModel->query()->where('mobile', $mobile)->first(['status']);
  129. if ($admin && $admin['status']) return json_send(['code' => 'error', 'msg' => '用户已被停用']);
  130. $code = strval(rand(100000, 999999));
  131. $result = Sms::sendCode($mobile, $code);
  132. if (isset($result['error'])) return json_send(['code' => 'error', 'msg' => $result['error']]);
  133. $session = ['code' => $code, 'mobile' => $mobile, 'create_time' => time()];
  134. Cache::put('loginSmsCode_' . $mobile, $session, 120);
  135. return json_send(['code' => 'success', 'msg' => '发送成功', 'data' => '']);
  136. }
  137. /**
  138. * 邮箱登录 /manager/login/email
  139. * @author 唐远望
  140. * @version 1.0
  141. * @date 2026-01-16
  142. * @param string email 邮箱号码
  143. * @param string password 登录密码
  144. *
  145. */
  146. public function email(Request $Request, EmployeeModel $EmployeeModel)
  147. {
  148. // 验证规则
  149. $Request->scene('email')->validate();
  150. // 接收数据
  151. $email = $Request->input('email', '');
  152. // 接收数据
  153. $password = $Request->input('password', '');
  154. // 查询用户
  155. $admin = $EmployeeModel->where('email', $email)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  156. // 用户不存在
  157. if (!$admin) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  158. // 用户不存在
  159. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  160. // 转数组
  161. $admin = $admin->toArray();
  162. // 比对密码
  163. if (md5($password) != $admin['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  164. // 登录
  165. $accessToken = $EmployeeModel->Login($admin['id'], 'api');
  166. // 比对密码
  167. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  168. // 获取权限列表
  169. $accessToken['username'] = $admin['name'];
  170. $accessToken['is_system_admin'] = 0;
  171. // 表单令牌
  172. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  173. }
  174. /**
  175. * 手机验证码登录 /manager/login/mobile_code
  176. * @author 唐远望
  177. * @version 1.0
  178. * @date 2026-01-16
  179. * @param string mobile 手机号码
  180. * @param string code 验证码
  181. *
  182. */
  183. public function mobile_code(Request $Request, EmployeeModel $EmployeeModel)
  184. {
  185. // 验证规则
  186. $Request->scene('mobile_code')->validate();
  187. // 接收数据
  188. $phone = $Request->input('phone', '');
  189. // 接收数据
  190. $code = $Request->input('code', '');
  191. // 获取数据
  192. $session = Cache::get('loginSmsCode_' . $phone);
  193. if (!$session) return json_send(['code' => 'error', 'msg' => '请先获取手机号验证码']);
  194. if ($session['code'] != $code || $session['mobile'] != $phone) return json_send(['code' => 'error', 'msg' => '验证码错误']);
  195. // 查询用户
  196. $admin = $EmployeeModel->where('mobile', $phone)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  197. // 用户不存在
  198. if (!$admin) return json_send(['code' => 'error', 'msg' => '账号不存在']);
  199. // 用户不存在
  200. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  201. // 转数组
  202. $admin = $admin->toArray();
  203. // 登录
  204. $accessToken = $EmployeeModel->Login($admin['id'], 'api');
  205. // 比对密码
  206. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  207. // 获取权限列表
  208. $accessToken['username'] = $admin['name'];
  209. $accessToken['is_system_admin'] = 0;
  210. // 表单令牌
  211. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  212. }
  213. }