From 1cf88d43994ec7ec403319032a9d118b39fe3571 Mon Sep 17 00:00:00 2001 From: liurunyu <lry9898@163.com> Date: 星期五, 25 四月 2025 14:35:35 +0800 Subject: [PATCH] 登录代码优化 --- pipIrr-platform/pipIrr-web/pipIrr-web-sso/src/main/java/com/dy/sso/busi/SsoCtrl.java | 159 +++++++++++++++++++++++++++++++++++++++++++++-------- 1 files changed, 135 insertions(+), 24 deletions(-) diff --git a/pipIrr-platform/pipIrr-web/pipIrr-web-sso/src/main/java/com/dy/sso/busi/SsoCtrl.java b/pipIrr-platform/pipIrr-web/pipIrr-web-sso/src/main/java/com/dy/sso/busi/SsoCtrl.java index aead030..2dd7dee 100644 --- a/pipIrr-platform/pipIrr-web/pipIrr-web-sso/src/main/java/com/dy/sso/busi/SsoCtrl.java +++ b/pipIrr-platform/pipIrr-web/pipIrr-web-sso/src/main/java/com/dy/sso/busi/SsoCtrl.java @@ -2,10 +2,13 @@ import com.dy.common.aop.SsoVo; import com.dy.common.multiDataSource.DataSourceContext; +import com.dy.common.util.MD5; import com.dy.common.webUtil.BaseResponse; import com.dy.common.webUtil.BaseResponseUtils; import com.dy.common.webUtil.ResultCodeMsg; import com.dy.pipIrrGlobal.pojoBa.BaUser; +import com.dy.pipIrrGlobal.util.Org; +import com.mysql.cj.util.StringUtils; import io.swagger.v3.oas.annotations.Hidden; import io.swagger.v3.oas.annotations.Operation; import io.swagger.v3.oas.annotations.Parameter; @@ -18,13 +21,11 @@ import jakarta.validation.Valid; import lombok.extern.slf4j.Slf4j; import org.springframework.beans.factory.annotation.Autowired; -//import org.springframework.cache.CacheManager; import org.springframework.http.MediaType; import org.springframework.validation.BindingResult; import org.springframework.web.bind.annotation.*; -import java.util.Objects; -import java.util.UUID; +import java.util.*; /** * 娉ㄨВTag 鍦ˋPI涓樉绀猴細 Tag 娉ㄨВ, 缁欐暣涓帴鍙h捣浜嗕釜鍚嶅瓧涓庢弿杩�" @@ -42,6 +43,7 @@ //鍦ㄥ睘鎬т笂娉ㄨВ@Autowired鏃讹紝浼氳鍛� Field injection is not recommended锛堜笉鍐嶆帹鑽愪娇鐢ㄥ瓧娈垫敞鍏ワ級 private SsoSv sv ; + //private KaptchaConfig kaptchaConfig; //@Autowired //private CacheManager cacheManager ; @@ -50,6 +52,29 @@ this.sv = sv ; } + //@Autowired + //public void setKaptchaConfig(KaptchaConfig kaptchaConfig) { + // this.kaptchaConfig = kaptchaConfig; + //} + + /** + * 瀹㈡埛绔姹傚緱鍒版墍鏈夌粍缁囨満鏋� + * @return 鎵�鏈夌粍缁囨満鏋勬暟鎹� + */ + @Operation(summary = "鎵�鏈夌粍缁囨満鏋�", description = "杩斿洖鎵�鏈夋墍鏈夌粍缁囨満鏋勬暟鎹�") + @ApiResponses(value = { + @ApiResponse( + responseCode = ResultCodeMsg.RsCode.SUCCESS_CODE, + description = "杩斿洖鎵�鏈夌粍缁囨満鏋勬暟鎹紙BaseResponse.content:[ { \"tag\":\"ym\", \"name\":\"鍏冭皨\" }, { \"tag\":\"鐗囪\", \"name\":\"鐗囪闀嘰" }]锛�", + content = {@Content(mediaType = MediaType.APPLICATION_JSON_VALUE, + schema = @Schema(implementation = Org.class))} + ) + }) + @GetMapping(path = "allOrg") + public BaseResponse<List<Org.OrgVo>> allOrg(){ + //List<Org> list = Arrays.asList(Org.Ym, Org.Pj) ; + return BaseResponseUtils.buildSuccess(Org.OrgList); + } /** * 瀹㈡埛绔姹傜敤鎴风櫥褰曪紝瀹㈡埛绔彁浜son鏁版嵁 @@ -76,17 +101,55 @@ ) }) @PostMapping(path = "loginJson", consumes = MediaType.APPLICATION_JSON_VALUE) - public BaseResponse<UserVo> loginJson(@Valid @RequestBody LoginVo vo, @Parameter(hidden = true) BindingResult bindingResult) { + public BaseResponse<UserVo> loginJson(HttpServletRequest request, @RequestBody @Parameter(description = "鐧诲綍json鏁版嵁", required = true) @Valid LoginVo vo, @Parameter(hidden = true) BindingResult bindingResult) { if(bindingResult != null && bindingResult.hasErrors()){ - return BaseResponseUtils.buildFail(Objects.requireNonNull(bindingResult.getFieldError()).getDefaultMessage()); + return BaseResponseUtils.buildErrorMsg(Objects.requireNonNull(bindingResult.getFieldError()).getDefaultMessage()); + } + if(!vo.phone.equals("admin")){ + if(vo.phone.length() != 11){ + return BaseResponseUtils.buildErrorMsg("鎵嬫満鍙凤紙闀垮害涓嶆槸11浣嶏級涓嶆纭�"); + } + } + if(vo.orgTag == null || vo.orgTag.trim().length() == 0){ + return BaseResponseUtils.buildErrorMsg("鏈�夋嫨缁勭粐鍗曚綅"); + } + if(vo.token == null || vo.token.trim().length() == 0){ + return BaseResponseUtils.buildErrorMsg("鏃爐oken"); + } + if(vo.code == null || vo.code.trim().length() == 0){ + return BaseResponseUtils.buildErrorMsg("璇疯緭鍏ラ獙璇佺爜"); + } + //鎶婄粍缁囧崟浣嶆爣绛句綔涓烘暟鎹簮鍚嶇О + DataSourceContext.set(vo.orgTag); + + // 浠庢暟鎹簱鑾峰彇楠岃瘉鐮� + Map map = sv.getCodeByToken(vo.token); + Long expiration = Long.parseLong(map.get("expiration").toString()); + Long currentTimestamp = System.currentTimeMillis(); + if(currentTimestamp > expiration) { + return BaseResponseUtils.buildErrorMsg("楠岃瘉鐮佸凡瓒呮椂"); + } + String localCode = map.get("code").toString(); + if(!vo.code.equals(localCode)) { + return BaseResponseUtils.buildErrorMsg("楠岃瘉鐮侀敊璇�"); } - String uuid ; - BaUser userPo ; + if(!sv.existPhone(vo.phone)){ + return BaseResponseUtils.buildErrorMsg("璐﹀彿涓嶅瓨鍦�"); + } + + String uuid4Token = null; + BaUser userPo = null ; try { - //Boolean flag = cacheManager.getCacheNames().isEmpty() ; - uuid = UUID.randomUUID().toString(); - userPo = this.sv.loginWithMapperXml(uuid, vo.phone, vo.password); + uuid4Token = UUID.randomUUID().toString(); + if(!StringUtils.isNullOrEmpty(vo.password)){ + /* + 濡傛灉鍓嶇杩涜浜哹ase64鍔犲瘑 + po.password = new String(Base64.getDecoder().decode(po.password)) ; + */ + vo.password = MD5.encrypt(vo.password) ; + } + userPo = this.sv.loginWithMapperXml(uuid4Token, vo.phone, vo.password); } catch (Exception e) { log.error("鐢ㄦ埛鐧诲綍寮傚父", e); return BaseResponseUtils.buildException(e.getMessage()) ; @@ -94,10 +157,10 @@ if(userPo != null){ UserVo uVo = UserVoMapper.INSTANCT.po2vo(userPo); - uVo.token = uuid ; + uVo.token = uuid4Token ; return BaseResponseUtils.buildSuccess(uVo); }else{ - return BaseResponseUtils.buildFail("鐧诲綍澶辫触"); + return BaseResponseUtils.buildErrorMsg("鐧诲綍澶辫触"); } } @@ -118,10 +181,10 @@ @PostMapping(path = "loginForm", consumes = MediaType.MULTIPART_FORM_DATA_VALUE) public BaseResponse<UserVo> loginForm(@Parameter(description = "form琛ㄥ崟鏁版嵁", required = true) @Valid LoginVo vo, @Parameter(hidden = true) BindingResult bindingResult){ if(bindingResult != null && bindingResult.hasErrors()){ - return BaseResponseUtils.buildFail(Objects.requireNonNull(bindingResult.getFieldError()).getDefaultMessage()); + return BaseResponseUtils.buildErrorMsg(Objects.requireNonNull(bindingResult.getFieldError()).getDefaultMessage()); } if(vo.orgTag == null || vo.orgTag.trim().length() == 0){ - return BaseResponseUtils.buildFail("鏈�夋嫨缁勭粐鍗曚綅"); + return BaseResponseUtils.buildErrorMsg("鏈�夋嫨缁勭粐鍗曚綅"); } //鎶婄粍缁囧崟浣嶆爣绛句綔涓烘暟鎹簮鍚嶇О DataSourceContext.set(vo.orgTag); @@ -131,6 +194,13 @@ try { //Boolean flag = cacheManager.getCacheNames().isEmpty() ; uuid = UUID.randomUUID().toString(); + if(!StringUtils.isNullOrEmpty(vo.password)){ + /* + 濡傛灉鍓嶇杩涜浜哹ase64鍔犲瘑 + po.password = new String(Base64.getDecoder().decode(po.password)) ; + */ + vo.password = MD5.encrypt(vo.password) ; + } userPo = this.sv.loginWithMapperXml(uuid, vo.phone, vo.password); } catch (Exception e) { log.error("鐢ㄦ埛鐧诲綍寮傚父", e); @@ -142,7 +212,7 @@ uVo.token = uuid ; return BaseResponseUtils.buildSuccess(uVo); }else{ - return BaseResponseUtils.buildFail("鐧诲綍澶辫触"); + return BaseResponseUtils.buildErrorMsg("鐧诲綍澶辫触"); } } @@ -167,7 +237,7 @@ this.sv.logout(token) ; return BaseResponseUtils.buildSuccess(true); }else{ - return BaseResponseUtils.buildFail("鏈粠header涓緱鍒皌oken"); + return BaseResponseUtils.buildErrorMsg("鏈粠header涓緱鍒皌oken"); } } @@ -183,7 +253,27 @@ BaUser userPo = this.sv.getByUuid(token) ; return userPo == null ? null : userPo.id ; } - + /** + * 姝ゆ柟娉曚緵瀛愭ā鍧楃郴缁熻皟鐢紝鎵�浠ヤ笉鍏紑鍦ˋPI鎺ュ彛涓� + * 鏂规硶鍔熻兘锛氶獙璇佹槸鍚﹀凡缁忕櫥褰� + * @param token 鐧诲綍鐢ㄦ埛token + * @return SsoVo + */ + @Hidden + @GetMapping(path = "ssoCheck") + public SsoVo ssoCheck(String token){ + BaUser userPo = this.sv.getByUuid(token) ; + SsoVo vo = new SsoVo(); + if(userPo != null){ + vo.dataSourceName = userPo.orgTag ; + vo.logined = true ; + vo.hasPower = true ;//榛樿鏈夋潈闄愩��2023-12-21 缁忓晢璁紝鐢卞墠绔壌鏉� + }else{ + vo.logined = false ; + vo.hasPower = true ;//榛樿鏈夋潈闄愩��2023-12-21 缁忓晢璁紝鐢卞墠绔壌鏉� + } + return vo ; + } /** * 姝ゆ柟娉曚緵瀛愭ā鍧楃郴缁熻皟鐢紝鎵�浠ヤ笉鍏紑鍦ˋPI鎺ュ彛涓� * 鏂规硶鍔熻兘锛氶獙璇佹槸鍚﹀凡缁忕櫥褰曪紝濡傛灉鐧诲綍浜嗭紝鍐嶉獙璇佹潈闄� @@ -194,8 +284,8 @@ * @return SsoVo */ @Hidden - @GetMapping(path = "ssoCheck") - public SsoVo ssoCheck(String token, String privilege, String[] allPrivilege, String[] anyPrivilege){ + @GetMapping(path = "ssoPowerCheck") + public SsoVo ssoPowerCheck(String token, String privilege, String[] allPrivilege, String[] anyPrivilege){ BaUser userPo = this.sv.getByUuid(token) ; SsoVo vo = new SsoVo(); if(userPo != null){ @@ -205,12 +295,17 @@ if(userPo.supperAdmin != null && userPo.supperAdmin == 1){ vo.hasPower = true ; }else{ - if(userPo.privileges != null && userPo.privileges.size() > 0){ - vo.hasPower = this.hasOnePrivilege(privilege, userPo) ; - if(!vo.hasPower){ - vo.hasPower = this.hasAllPrivilege(allPrivilege, userPo) ; + if(privilege.equals("-1")){ + //鏃犻渶鏉冮檺楠岃瘉 + vo.hasPower = true ; + }else{ + if(userPo.privileges != null && userPo.privileges.size() > 0){ + vo.hasPower = this.hasOnePrivilege(privilege, userPo) ; if(!vo.hasPower){ - vo.hasPower = this.hasAnyPrivilege(anyPrivilege, userPo) ; + vo.hasPower = this.hasAllPrivilege(allPrivilege, userPo) ; + if(!vo.hasPower){ + vo.hasPower = this.hasAnyPrivilege(anyPrivilege, userPo) ; + } } } } @@ -222,6 +317,22 @@ return vo ; } + /** + * 鑾峰緱褰撳墠鐧诲綍鐢ㄦ埛 + * @param token 鐧诲綍鐢ㄦ埛token + * @return SsoVo + */ + @Hidden + @GetMapping(path = "ssoCurUser") + public CurUserVo ssoCurUser(String token){ + BaUser userPo = this.sv.getByUuid(token) ; + CurUserVo vo = new CurUserVo(); + if(userPo != null){ + vo.id = userPo.id ; + vo.name = userPo.userName; + } + return vo ; + } ///////////////////////////////////////////////////////////////// // // 浠ヤ笅绉佹湁鏂规硶 -- Gitblit v1.8.0