Login.php 8.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use App\Models\Api\Personnel\Employee as EmployeeModel;
  4. use App\Http\Requests\Api\Login as Request;
  5. use App\Facades\Servers\Sms\VerifyCode as Sms;
  6. use Illuminate\Support\Facades\Cache;
  7. /**
  8. * API登录控制器
  9. * @author 唐远望
  10. * @version 1.0
  11. * @date 2025-12-09
  12. *
  13. */
  14. class Login extends Api
  15. {
  16. /**
  17. * 登录方法 /manager/login/index
  18. * @author 唐远望
  19. * @version 1.0
  20. * @date 2025-12-09
  21. * @param string employee_code 登录账号
  22. * @param string password 登录密码
  23. *
  24. * */
  25. public function index(Request $Request, EmployeeModel $EmployeeModel)
  26. {
  27. // 验证规则
  28. $Request->scene('login')->validate();
  29. // 接收数据
  30. $employee_code = $Request->input('employee_code', '');
  31. // 接收数据
  32. $password = $Request->input('password', '');
  33. // 查询用户
  34. $admin = $EmployeeModel->Where('employee_code', $employee_code)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  35. // 用户不存在
  36. if (!$admin || $admin['status']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  37. // 用户不存在
  38. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  39. // 转数组
  40. $admin = $admin->toArray();
  41. // 比对密码
  42. if (md5($password) != $admin['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  43. // 登录
  44. $accessToken = $EmployeeModel->Login($admin['id'], 'api');
  45. // 比对密码
  46. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  47. // 获取权限列表
  48. $accessToken['username'] = $admin['name'];
  49. // 表单令牌
  50. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  51. }
  52. /**
  53. * 退出方法 /manager/login/out
  54. * @author 唐远望
  55. * @version 1.0
  56. * @date 2025-12-09
  57. * @param string authcode 用户令牌
  58. *
  59. */
  60. public function out(EmployeeModel $EmployeeModel)
  61. {
  62. $user_info = $this->checkLogin();
  63. // 验证规则
  64. $uid = $user_info['uid'];
  65. // 退出登录
  66. $EmployeeModel->LoginOut($uid, 'api');
  67. // 表单令牌
  68. return json_send(['code' => 'success', 'msg' => '退出成功', 'data' => '']);
  69. }
  70. /**
  71. * 手机号码登录 /manager/login/mobile
  72. * @author 唐远望
  73. * @version 1.0
  74. * @date 2025-12-04
  75. * @param string mobile 手机号码
  76. * @param string password 登录密码
  77. *
  78. */
  79. public function mobile(Request $Request, EmployeeModel $EmployeeModel)
  80. {
  81. // 验证规则
  82. $Request->scene('mobile')->validate();
  83. // 接收数据
  84. $phone = $Request->input('phone', '');
  85. // 接收数据
  86. $password = $Request->input('password', '');
  87. // 查询用户
  88. $user_info = $EmployeeModel->where('mobile', $phone)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  89. // 用户不存在
  90. if (!$user_info || $user_info['status']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  91. // 用户不存在
  92. if ($user_info['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  93. // 转数组
  94. $user_info = $user_info->toArray();
  95. // 比对密码
  96. if (md5($password) != $user_info['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  97. // 登录
  98. $accessToken = $EmployeeModel->Login($user_info['id'], 'api');
  99. // 比对密码
  100. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  101. // 获取权限列表
  102. $accessToken['username'] = $user_info['name'];
  103. // 表单令牌
  104. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  105. }
  106. /**
  107. * 发送验证码
  108. * @author 唐远望
  109. * @version 1.0
  110. * @date 2026-01-16
  111. * @param string phone 手机号码
  112. *
  113. */
  114. public function send_code(Request $Request, EmployeeModel $EmployeeModel)
  115. {
  116. // 验证规则
  117. $Request->scene('send_code')->validate();
  118. // 接收数据
  119. $mobile = request('phone', '');
  120. if (!$mobile) return json_send(['code' => 'error', 'msg' => '请先填写手机号']);
  121. // 获取数据
  122. $session = Cache::get('loginSmsCode_' . $mobile);
  123. // 如果有数据,并且验证码创建的时间在一分钟之内
  124. if ($session && time() - $session['create_time'] < 60) return json_send(['code' => 'error', 'msg' => '请稍后再试']);
  125. // 查询用户
  126. $admin = $EmployeeModel->query()->where('mobile', $mobile)->first(['status']);
  127. if ($admin && $admin['status']) return json_send(['code' => 'error', 'msg' => '用户已被停用']);
  128. $code = strval(rand(100000, 999999));
  129. $result = Sms::sendCode($mobile, $code);
  130. if (isset($result['error'])) return json_send(['code' => 'error', 'msg' => $result['error']]);
  131. $session = ['code' => $code, 'mobile' => $mobile, 'create_time' => time()];
  132. Cache::put('loginSmsCode_' . $mobile, $session, 60);
  133. return json_send(['code' => 'success', 'msg' => '发送成功', 'data' => $code]);
  134. }
  135. /**
  136. * 邮箱登录 /manager/login/email
  137. * @author 唐远望
  138. * @version 1.0
  139. * @date 2026-01-16
  140. * @param string email 邮箱号码
  141. * @param string password 登录密码
  142. *
  143. */
  144. public function email(Request $Request, EmployeeModel $EmployeeModel)
  145. {
  146. // 验证规则
  147. $Request->scene('email')->validate();
  148. // 接收数据
  149. $email = $Request->input('email', '');
  150. // 接收数据
  151. $password = $Request->input('password', '');
  152. // 查询用户
  153. $admin = $EmployeeModel->where('email', $email)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  154. // 用户不存在
  155. if (!$admin) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  156. // 用户不存在
  157. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  158. // 转数组
  159. $admin = $admin->toArray();
  160. // 比对密码
  161. if (md5($password) != $admin['password']) return json_send(['code' => 'error', 'msg' => '密码错误或账号不存在']);
  162. // 登录
  163. $accessToken = $EmployeeModel->Login($admin['id'], 'api');
  164. // 比对密码
  165. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  166. // 获取权限列表
  167. $accessToken['username'] = $admin['name'];
  168. // 表单令牌
  169. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  170. }
  171. /**
  172. * 手机验证码登录 /manager/login/mobile_code
  173. * @author 唐远望
  174. * @version 1.0
  175. * @date 2026-01-16
  176. * @param string mobile 手机号码
  177. * @param string code 验证码
  178. *
  179. */
  180. public function mobile_code(Request $Request, EmployeeModel $EmployeeModel)
  181. {
  182. // 验证规则
  183. $Request->scene('mobile_code')->validate();
  184. // 接收数据
  185. $phone = $Request->input('phone', '');
  186. // 接收数据
  187. $code = $Request->input('code', '');
  188. // 获取数据
  189. $session = Cache::get('loginSmsCode_' . $phone);
  190. if (!$session) return json_send(['code' => 'error', 'msg' => '请先获取手机号验证码']);
  191. if ($session['code'] != $code || $session['mobile'] != $phone) return json_send(['code' => 'error', 'msg' => '验证码错误']);
  192. // 查询用户
  193. $admin = $EmployeeModel->where('mobile', $phone)->first(['id', 'name', 'mobile', 'status', 'password', 'insert_time', 'update_time']);
  194. // 用户不存在
  195. if (!$admin) return json_send(['code' => 'error', 'msg' => '账号不存在']);
  196. // 用户不存在
  197. if ($admin['status']) return json_send(['code' => 'error', 'msg' => '该账号已停用']);
  198. // 转数组
  199. $admin = $admin->toArray();
  200. // 登录
  201. $accessToken = $EmployeeModel->Login($admin['uid'], 'api');
  202. // 比对密码
  203. if (isset($accessToken['error'])) return json_send(['code' => 'error', 'msg' => '登录失败', 'data' => $accessToken['data']]);
  204. // 获取权限列表
  205. $accessToken['username'] = $admin['name'];
  206. // 表单令牌
  207. return json_send(['code' => 'success', 'msg' => '登录成功', 'data' => $accessToken]);
  208. }
  209. }