login_auth.go 8.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307
  1. package service
  2. import (
  3. "context"
  4. "encoding/json"
  5. "errors"
  6. "fmt"
  7. "strconv"
  8. "strings"
  9. "time"
  10. "youngee_b_api/consts"
  11. "youngee_b_api/db"
  12. "youngee_b_api/model/gorm_model"
  13. "youngee_b_api/model/http_model"
  14. "youngee_b_api/model/redis_model"
  15. "youngee_b_api/model/system_model"
  16. "youngee_b_api/redis"
  17. "youngee_b_api/util"
  18. "github.com/sirupsen/logrus"
  19. )
  20. var LoginAuth *loginAuth
  21. func LoginAuthInit(config *system_model.Session) {
  22. auth := new(loginAuth)
  23. auth.sessionTTL = time.Duration(config.TTL) * time.Minute
  24. LoginAuth = auth
  25. }
  26. type loginAuth struct {
  27. sessionTTL time.Duration
  28. }
  29. func (l *loginAuth) AuthToken(ctx context.Context, token string) (*redis_model.Auth, error) {
  30. phone, err := l.parseToken(ctx, token)
  31. if err != nil {
  32. logrus.Debug("token格式错误:%+v", token)
  33. return nil, err
  34. }
  35. auth, err := l.getSessionAuth(ctx, phone)
  36. if err != nil {
  37. logrus.Debug("获取session redis错误: token:%+v,err:%+v", token, err)
  38. return nil, err
  39. }
  40. if auth.Token != token {
  41. logrus.Debug("获取session time过期错误: token:%+v", token)
  42. return nil, errors.New("auth failed")
  43. }
  44. return auth, nil
  45. }
  46. // AuthCode 判断此手机号是否有账号存在 鉴定验证码 用户信息存入redis 并返回Token
  47. func (l *loginAuth) AuthCode(ctx context.Context, phone string, code string) (string, *http_model.CodeLoginData, error) {
  48. var userData *gorm_model.YounggeeUser
  49. user, err := db.GetUserByPhone(ctx, phone)
  50. fmt.Println("login_auth", user, err)
  51. if err != nil {
  52. // 数据库操作错误
  53. return "", nil, err
  54. } else if user == nil {
  55. user, err := db.GetSubUserByPhone(ctx, phone)
  56. fmt.Println("子账号存在")
  57. if user == nil {
  58. fmt.Println("子账号也不存在")
  59. // 账号不存在,则默认注册商家账号
  60. _, err = Enterprise.CreateEnterprise(ctx, phone)
  61. if err != nil {
  62. return "账号创建失败", nil, err
  63. }
  64. user, err = db.GetUserByPhone(ctx, phone)
  65. userData = user
  66. fmt.Println("login_auth", user, err)
  67. if err != nil {
  68. return "", nil, err
  69. }
  70. } else {
  71. userData = user
  72. }
  73. } else if user != nil {
  74. userData = user
  75. }
  76. vcode, err := l.getSessionCode(ctx, phone)
  77. if err != nil {
  78. return "", nil, err
  79. }
  80. fmt.Printf("缓存的验证码 vcode: %v,实际填入的 code:%v", vcode, code)
  81. if vcode != code {
  82. // 验证码错误
  83. logrus.Debugf("[AuthCode] auth fail,phone:%+v", phone)
  84. return "验证码有误", nil, errors.New("auth fail")
  85. }
  86. token := l.getToken(ctx, phone)
  87. var jobData *gorm_model.YounggeeJob
  88. var accountData *gorm_model.YounggeeSubAccount
  89. // 若为商家用户
  90. if string(userData.Role) == consts.BRole {
  91. fmt.Println("商家主账号")
  92. enterprise, err := db.GetEnterpriseByUID(ctx, userData.ID)
  93. if err != nil {
  94. return "", nil, err
  95. }
  96. auth := &redis_model.Auth{
  97. Phone: phone,
  98. ID: userData.ID,
  99. User: userData.User,
  100. Username: userData.Username,
  101. RealName: userData.RealName,
  102. Role: userData.Role,
  103. Email: userData.Email,
  104. Token: token,
  105. EnterpriseID: enterprise.EnterpriseID,
  106. }
  107. if err := l.setSession(ctx, phone, auth); err != nil {
  108. fmt.Printf("setSession error\n")
  109. return "", nil, err
  110. }
  111. } else {
  112. // 若为商家子账号
  113. fmt.Printf("商家子账号")
  114. subaccount, err := db.FindSubAccountByPhone(ctx, phone)
  115. accountData = subaccount
  116. if err != nil {
  117. return "", nil, err
  118. }
  119. auth := &redis_model.Auth{
  120. Phone: phone,
  121. ID: userData.ID,
  122. User: userData.User,
  123. Username: userData.Username,
  124. RealName: userData.RealName,
  125. Role: userData.Role,
  126. Email: userData.Email,
  127. Token: token,
  128. EnterpriseID: subaccount.EnterpriseId,
  129. }
  130. job, err := db.FindJobByJobId(ctx, subaccount.JobId)
  131. jobData = job
  132. if err := l.setSession(ctx, phone, auth); err != nil {
  133. fmt.Printf("setSession error\n")
  134. return "", nil, err
  135. }
  136. }
  137. loginUserData := http_model.CodeLoginData{
  138. UserId: userData.ID,
  139. Token: token,
  140. Role: userData.Role,
  141. SubAccountId: accountData.SubAccountId,
  142. JobName: jobData.JobName,
  143. EnterpriseId: accountData.EnterpriseId,
  144. WorkshopPermission: jobData.WorkshopPermission,
  145. CooperatePermission: jobData.CooperatePermission,
  146. FinancialPermission: jobData.FinancialPermission,
  147. TaskcenterPermission: jobData.TaskcenterPermission,
  148. }
  149. return "", &loginUserData, nil
  150. }
  151. // func (l *loginAuth) AuthPassword(ctx context.Context, phone string, password string) (string, error) {
  152. // // 验证是否存在
  153. // user, err := db.GetUserByPhone(ctx, phone)
  154. // if err != nil {
  155. // return "", err
  156. // }
  157. // // 验证正确性
  158. // if user == nil || user.Role != consts.BRole || user.Password != l.encryptPassword(password) {
  159. // // 登录失败
  160. // logrus.Debugf("[AuthPassword] auth fail,phone:%+v", phone)
  161. // return "", errors.New("auth fail")
  162. // }
  163. // token := l.getToken(ctx, phone)
  164. // auth := &redis_model.Auth{
  165. // Phone: phone,
  166. // ID: user.ID,
  167. // User: user.User,
  168. // Username: user.Username,
  169. // RealName: user.RealName,
  170. // Role: user.Role,
  171. // Email: user.Email,
  172. // Token: token,
  173. // }
  174. // if err := l.setSession(ctx, phone, auth); err != nil {
  175. // return "", err
  176. // }
  177. // return token, nil
  178. // }
  179. func (l *loginAuth) setSession(ctx context.Context, phone string, auth *redis_model.Auth) error {
  180. if authJson, err := json.Marshal(auth); err == nil {
  181. err = redis.Set(ctx, l.getRedisKey(phone), string(authJson), l.sessionTTL)
  182. if err == nil {
  183. return err
  184. }
  185. }
  186. return nil
  187. }
  188. func (l *loginAuth) getSessionCode(ctx context.Context, phone string) (string, error) {
  189. value, err := redis.Get(ctx, l.getRedisKey(phone))
  190. if err != nil {
  191. if err == consts.RedisNil {
  192. return "", fmt.Errorf("not found in redis,phone:%+v", phone)
  193. }
  194. return "", err
  195. }
  196. return value, nil
  197. }
  198. func (l *loginAuth) getSessionAuth(ctx context.Context, phone string) (*redis_model.Auth, error) {
  199. value, err := redis.Get(ctx, l.getRedisKey(phone))
  200. if err != nil {
  201. if err == consts.RedisNil {
  202. return nil, fmt.Errorf("not found in redis,phone:%+v", phone)
  203. }
  204. return nil, err
  205. }
  206. auth := new(redis_model.Auth)
  207. if err = json.Unmarshal([]byte(value), auth); err != nil {
  208. return nil, err
  209. }
  210. return auth, nil
  211. }
  212. func (l *loginAuth) getToken(ctx context.Context, phone string) string {
  213. timeSeed := strconv.FormatInt(time.Now().Unix(), 10)
  214. token := phone + "." + timeSeed + "." + util.MD5(phone, timeSeed, consts.AuthSalt)
  215. return token
  216. }
  217. func (l *loginAuth) parseToken(ctx context.Context, token string) (string, error) {
  218. parts := strings.Split(token, ".")
  219. if len(parts) == 3 {
  220. phone := parts[0]
  221. timeSeed := parts[1]
  222. if parts[2] == util.MD5(phone, timeSeed, consts.AuthSalt) {
  223. return phone, nil
  224. }
  225. }
  226. return "", errors.New("token invalid")
  227. }
  228. func (l *loginAuth) encryptPassword(password string) string {
  229. return util.MD5(password)
  230. }
  231. func (l *loginAuth) getRedisKey(key string) string {
  232. return fmt.Sprintf("%s%s", consts.SessionRedisPrefix, key)
  233. }
  234. func (l *loginAuth) SubAccountAuthCode(ctx context.Context, phone string, code string) (string, error) {
  235. user, err := db.FindSubAccountByPhone(ctx, phone)
  236. phoneNumber := phone
  237. fmt.Println("login_auth", user, err)
  238. if err != nil {
  239. // 数据库错误
  240. return "数据库错误", err
  241. } else if user == nil {
  242. // 账号不存在,则判断此手机号码是否被商家主账号注册
  243. user, err := db.GetUserByPhone(ctx, phoneNumber)
  244. if err != nil {
  245. // 数据库操作错误
  246. return "", err
  247. } else if user == nil {
  248. // 没有被商家主账户注册,则可以注册
  249. vcode, err := l.getSessionCode(ctx, phoneNumber)
  250. if err != nil {
  251. return "session err", err
  252. }
  253. fmt.Printf("缓存的验证码 vcode: %v,实际填入的 code:%v", vcode, code)
  254. if vcode != code {
  255. // 验证码错误
  256. logrus.Debugf("[AuthCode] auth fail,phone:%+v", phone)
  257. return "验证码有误", errors.New("auth fail")
  258. }
  259. return "1", err
  260. } else if string(user.Role) == consts.BRole {
  261. if user.AuthStatus == 1 {
  262. // 被商家主账户注册,未认证,则可以注册
  263. vcode, err := l.getSessionCode(ctx, phoneNumber)
  264. if err != nil {
  265. return "session err", err
  266. }
  267. fmt.Printf("缓存的验证码 vcode: %v,实际填入的 code:%v", vcode, code)
  268. if vcode != code {
  269. // 验证码错误
  270. logrus.Debugf("[AuthCode] auth fail,phone:%+v", phone)
  271. return "验证码有误", errors.New("auth fail")
  272. }
  273. return "1", err
  274. } else {
  275. return "主账号存在", errors.New("auth fail")
  276. }
  277. }
  278. } else if user != nil {
  279. // 子账号存在,则无法注册
  280. logrus.Debugf("[AuthCode] auth fail,phone:%+v", phone)
  281. return "子账号存在", errors.New("auth fail")
  282. }
  283. return "", nil
  284. }