login_auth.go 9.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340
  1. package service
  2. import (
  3. "context"
  4. "encoding/json"
  5. "errors"
  6. "fmt"
  7. "strconv"
  8. "strings"
  9. "time"
  10. "youngee_b_api/consts"
  11. "youngee_b_api/db"
  12. "youngee_b_api/model/gorm_model"
  13. "youngee_b_api/model/http_model"
  14. "youngee_b_api/model/redis_model"
  15. "youngee_b_api/model/system_model"
  16. "youngee_b_api/redis"
  17. "youngee_b_api/util"
  18. "github.com/sirupsen/logrus"
  19. )
  20. var LoginAuth *loginAuth
  21. func LoginAuthInit(config *system_model.Session) {
  22. auth := new(loginAuth)
  23. auth.sessionTTL = time.Duration(config.TTL) * time.Minute
  24. LoginAuth = auth
  25. }
  26. type loginAuth struct {
  27. sessionTTL time.Duration
  28. }
  29. func (l *loginAuth) AuthToken(ctx context.Context, token string) (*redis_model.Auth, error) {
  30. phone, err := l.parseToken(ctx, token)
  31. if err != nil {
  32. logrus.Debug("token格式错误:%+v", token)
  33. return nil, err
  34. }
  35. auth, err := l.getSessionAuth(ctx, phone)
  36. if err != nil {
  37. logrus.Debug("获取session redis错误: token:%+v,err:%+v", token, err)
  38. return nil, err
  39. }
  40. if auth.Token != token {
  41. logrus.Debug("获取session time过期错误: token:%+v", token)
  42. return nil, errors.New("auth failed")
  43. }
  44. return auth, nil
  45. }
  46. // AuthCode 判断此手机号是否有账号存在 鉴定验证码 用户信息存入redis 并返回Token
  47. func (l *loginAuth) AuthCode(ctx context.Context, phone string, code string) (string, *http_model.CodeLoginData, error) {
  48. // 1. 验证码校验
  49. vcode, err := l.getSessionCode(ctx, phone)
  50. if err != nil {
  51. return "", nil, err
  52. }
  53. fmt.Printf("缓存的验证码 vcode: %v,实际填入的 code:%v", vcode, code)
  54. if vcode != code {
  55. // 验证码错误
  56. logrus.Debugf("[AuthCode] auth fail,phone:%+v", phone)
  57. return "验证码有误", nil, errors.New("auth fail")
  58. }
  59. // 2. 若无用户信息则注册
  60. var userData *gorm_model.YounggeeUser
  61. user, err := db.GetUserByPhone(ctx, phone)
  62. fmt.Println("login_auth", user, err)
  63. if err != nil {
  64. // 数据库操作错误
  65. return "", nil, err
  66. } else if user == nil {
  67. user, err := db.GetSubUserByPhone(ctx, phone)
  68. if user == nil {
  69. fmt.Println("子账号也不存在")
  70. // 账号不存在,则注册服务商与YG账号
  71. _, err = Supplier.CreateSupplier(ctx, phone)
  72. if err != nil {
  73. return "服务商账号创建失败", nil, err
  74. }
  75. user, err = db.GetUserByPhone(ctx, phone)
  76. userData = user
  77. fmt.Println("login_auth", user, err)
  78. if err != nil {
  79. return "", nil, err
  80. }
  81. } else {
  82. userData = user
  83. }
  84. } else if user != nil {
  85. fmt.Println("是服务商主账号")
  86. userData = user
  87. }
  88. token := l.getToken(ctx, phone)
  89. var jobData gorm_model.YounggeeJob
  90. var accountData gorm_model.YounggeeSubAccount
  91. var supplierUser gorm_model.YoungeeSupplier
  92. var ifsuppplier int = 0
  93. var ifsubaccount int = 0
  94. // 3. 根据用户类型的不同追加信息返回前端
  95. // 若为服务商用户
  96. if string(userData.Role) == "6" {
  97. fmt.Println("服务商主账号")
  98. supplier, err := db.GetSupplierByUserID(ctx, userData.ID)
  99. supplierUser = *supplier
  100. ifsuppplier = 1
  101. // fmt.Println(supplier)
  102. if err != nil {
  103. return "", nil, err
  104. }
  105. auth := &redis_model.Auth{
  106. Phone: phone,
  107. ID: userData.ID,
  108. User: userData.User,
  109. Username: userData.Username,
  110. RealName: userData.RealName,
  111. Role: userData.Role,
  112. Email: userData.Email,
  113. Token: token,
  114. EnterpriseID: "32123",
  115. SupplierId: supplier.SupplierId,
  116. }
  117. if err := l.setSession(ctx, phone, auth); err != nil {
  118. fmt.Printf("setSession error\n")
  119. return "", nil, err
  120. }
  121. } else {
  122. // 若为服务商子账号
  123. fmt.Printf("服务商子账号")
  124. subaccount, err := db.FindSubAccountByPhone(ctx, phone)
  125. accountData = *subaccount
  126. if err != nil {
  127. return "", nil, err
  128. }
  129. ifsubaccount = 1
  130. auth := &redis_model.Auth{
  131. Phone: phone,
  132. ID: userData.ID,
  133. User: userData.User,
  134. Username: userData.Username,
  135. RealName: userData.RealName,
  136. Role: userData.Role,
  137. Email: userData.Email,
  138. Token: token,
  139. SupplierId: subaccount.SupplierId,
  140. EnterpriseID: "32123",
  141. }
  142. job, err := db.FindJobByJobId(ctx, subaccount.JobId)
  143. jobData = *job
  144. if err := l.setSession(ctx, phone, auth); err != nil {
  145. fmt.Printf("setSession error\n")
  146. return "", nil, err
  147. }
  148. }
  149. var loginUserData http_model.CodeLoginData
  150. if ifsuppplier == 1 {
  151. loginUserData = http_model.CodeLoginData{
  152. UserId: userData.ID,
  153. Token: token,
  154. Role: userData.Role,
  155. SubAccountId: 0,
  156. SupplierId: supplierUser.SupplierId,
  157. JobName: "主账号无岗位",
  158. EnterpriseId: "1",
  159. CommercialCenter: "1",
  160. CooperatePermission: "1",
  161. FinancialPermission: "1",
  162. CommercialManagement: "1",
  163. }
  164. } else if ifsubaccount == 1 {
  165. loginUserData = http_model.CodeLoginData{
  166. UserId: userData.ID,
  167. Token: token,
  168. Role: userData.Role,
  169. SubAccountId: accountData.SubAccountId,
  170. JobName: jobData.JobName,
  171. SupplierId: accountData.SupplierId,
  172. EnterpriseId: accountData.EnterpriseId,
  173. CommercialCenter: jobData.CommercialCenter,
  174. CooperatePermission: jobData.CooperatePermission,
  175. FinancialPermission: jobData.FinancialPermission,
  176. CommercialManagement: jobData.CommercialManagement,
  177. }
  178. }
  179. fmt.Println("finish: ", loginUserData)
  180. return "", &loginUserData, nil
  181. }
  182. // func (l *loginAuth) AuthPassword(ctx context.Context, phone string, password string) (string, error) {
  183. // // 验证是否存在
  184. // user, err := db.GetUserByPhone(ctx, phone)
  185. // if err != nil {
  186. // return "", err
  187. // }
  188. // // 验证正确性
  189. // if user == nil || user.Role != consts.BRole || user.Password != l.encryptPassword(password) {
  190. // // 登录失败
  191. // logrus.Debugf("[AuthPassword] auth fail,phone:%+v", phone)
  192. // return "", errors.New("auth fail")
  193. // }
  194. // token := l.getToken(ctx, phone)
  195. // auth := &redis_model.Auth{
  196. // Phone: phone,
  197. // ID: user.ID,
  198. // User: user.User,
  199. // Username: user.Username,
  200. // RealName: user.RealName,
  201. // Role: user.Role,
  202. // Email: user.Email,
  203. // Token: token,
  204. // }
  205. // if err := l.setSession(ctx, phone, auth); err != nil {
  206. // return "", err
  207. // }
  208. // return token, nil
  209. // }
  210. func (l *loginAuth) setSession(ctx context.Context, phone string, auth *redis_model.Auth) error {
  211. if authJson, err := json.Marshal(auth); err == nil {
  212. err = redis.Set(ctx, l.getRedisKey(phone), string(authJson), l.sessionTTL)
  213. if err == nil {
  214. return err
  215. }
  216. }
  217. return nil
  218. }
  219. func (l *loginAuth) getSessionCode(ctx context.Context, phone string) (string, error) {
  220. value, err := redis.Get(ctx, l.getRedisKey(phone))
  221. if err != nil {
  222. if err == consts.RedisNil {
  223. return "", fmt.Errorf("not found in redis,phone:%+v", phone)
  224. }
  225. return "", err
  226. }
  227. return value, nil
  228. }
  229. func (l *loginAuth) getSessionAuth(ctx context.Context, phone string) (*redis_model.Auth, error) {
  230. value, err := redis.Get(ctx, l.getRedisKey(phone))
  231. if err != nil {
  232. if err == consts.RedisNil {
  233. return nil, fmt.Errorf("not found in redis,phone:%+v", phone)
  234. }
  235. return nil, err
  236. }
  237. auth := new(redis_model.Auth)
  238. if err = json.Unmarshal([]byte(value), auth); err != nil {
  239. return nil, err
  240. }
  241. return auth, nil
  242. }
  243. func (l *loginAuth) getToken(ctx context.Context, phone string) string {
  244. timeSeed := strconv.FormatInt(time.Now().Unix(), 10)
  245. token := phone + "." + timeSeed + "." + util.MD5(phone, timeSeed, consts.AuthSalt)
  246. return token
  247. }
  248. func (l *loginAuth) parseToken(ctx context.Context, token string) (string, error) {
  249. parts := strings.Split(token, ".")
  250. if len(parts) == 3 {
  251. phone := parts[0]
  252. timeSeed := parts[1]
  253. if parts[2] == util.MD5(phone, timeSeed, consts.AuthSalt) {
  254. return phone, nil
  255. }
  256. }
  257. return "", errors.New("token invalid")
  258. }
  259. func (l *loginAuth) encryptPassword(password string) string {
  260. return util.MD5(password)
  261. }
  262. func (l *loginAuth) getRedisKey(key string) string {
  263. return fmt.Sprintf("%s%s", consts.SessionRedisPrefix, key)
  264. }
  265. func (l *loginAuth) SubAccountAuthCode(ctx context.Context, phone string, code string) (string, error) {
  266. user, err := db.FindSubAccountByPhone(ctx, phone)
  267. phoneNumber := phone
  268. fmt.Println("login_auth", user, err)
  269. if err != nil {
  270. // 数据库错误
  271. return "数据库错误", err
  272. } else if user == nil {
  273. // 账号不存在,则判断此手机号码是否被服务商主账号注册
  274. user, err := db.GetUserByPhone(ctx, phoneNumber)
  275. if err != nil {
  276. // 数据库操作错误
  277. return "", err
  278. } else if user == nil {
  279. // 没有被服务商主账户注册,则可以注册
  280. vcode, err := l.getSessionCode(ctx, phoneNumber)
  281. if err != nil {
  282. return "session err", err
  283. }
  284. fmt.Printf("缓存的验证码 vcode: %v,实际填入的 code:%v", vcode, code)
  285. if vcode != code {
  286. // 验证码错误
  287. logrus.Debugf("[AuthCode] auth fail,phone:%+v", phone)
  288. return "验证码有误", errors.New("auth fail")
  289. }
  290. return "1", err
  291. } else if string(user.Role) == "6" {
  292. if user.AuthStatus == 1 {
  293. // 被服务商主账户注册,未认证,则可以注册
  294. vcode, err := l.getSessionCode(ctx, phoneNumber)
  295. if err != nil {
  296. return "session err", err
  297. }
  298. fmt.Printf("缓存的验证码 vcode: %v,实际填入的 code:%v", vcode, code)
  299. if vcode != code {
  300. // 验证码错误
  301. logrus.Debugf("[AuthCode] auth fail,phone:%+v", phone)
  302. return "验证码有误", errors.New("auth fail")
  303. }
  304. return "1", err
  305. } else {
  306. return "已认证的主账号存在", errors.New("auth fail")
  307. }
  308. }
  309. } else if user != nil {
  310. // 子账号存在,则无法注册
  311. logrus.Debugf("[AuthCode] auth fail,phone:%+v", phone)
  312. return "子账号存在", errors.New("auth fail")
  313. }
  314. return "", nil
  315. }