UserController.php 11 KB


  1. <?php
  2. namespace App\Http\Controllers\API;
  3. use App\Http\Controllers\Controller;
  4. use App\Http\Requests\API\User\AdminUpdateRequest;
  5. use App\Http\Requests\API\User\BatchCreateRequest;
  6. use App\Http\Requests\API\User\CreateCompanyUserRequest;
  7. use App\Http\Requests\API\User\CreateRequest;
  8. use App\Http\Requests\API\User\UpdateRequest;
  9. use App\Http\Resources\API\UserInfoResource;
  10. use App\Http\Resources\API\UserSimpleResource;
  11. use App\Models\Company;
  12. use App\Models\Department;
  13. use App\Models\Enums\RequirementStatus;
  14. use App\Models\Menu;
  15. use App\Models\Permission;
  16. use App\Models\Role;
  17. use App\Models\Scopes\CompanyScope;
  18. use App\Models\User;
  19. use GuzzleHttp\Client;
  20. use hisorange\BrowserDetect\Exceptions\Exception;
  21. use Illuminate\Contracts\Encryption\DecryptException;
  22. use Illuminate\Database\Query\Builder;
  23. use Illuminate\Http\Request;
  24. use Illuminate\Support\Facades\Auth;
  25. use Illuminate\Support\Facades\Cache;
  26. use Illuminate\Support\Facades\Crypt;
  27. use Illuminate\Support\Facades\DB;
  28. use Illuminate\Support\Facades\Hash;
  29. use function Laravel\Prompts\password;
  30. use function Nette\Utils\isEmpty;
  31. class UserController extends Controller
  32. {
  33. public function details()
  34. {
  35. $user = Auth::user();
  36. $menus = Menu::query()->where("group", \request("group", "web"))
  37. ->get();
  38. // ->filter(fn(Menu $menu) => Auth::user()->can($menu->permission));
  39. $userPerminssion=$user->role->permissions->pluck('name')->toArray();
  40. $flattenedPaths = [];
  41. foreach ($menus as $index=> $menu) {
  42. if(in_array($menu->permission,$userPerminssion)){
  43. $individualPaths = explode(',', $menu->path);
  44. $flattenedPaths = array_merge($flattenedPaths, $individualPaths);
  45. }
  46. }
  47. $userHasMenu=Menu::query()->whereIn('id',$flattenedPaths)->pluck('name')->toArray();
  48. $user->menus = $userHasMenu;
  49. return new UserInfoResource($user);
  50. }
  51. public function assignRole(Request $request, string $id)
  52. {
  53. $user = User::query()->findOrFail($id);
  54. $roleName = $request->get('role_name');
  55. if ($roleName) {
  56. $role = Role::query()->where("guard_name", "api")->where('name', $roleName)->firstOrFail();
  57. $user->role_id = $role->id;
  58. $user->save();
  59. }
  60. $roles = $roleName ? [$roleName] : [];
  61. $user->syncRoles($roles);
  62. return $this->noContent();
  63. }
  64. public function index(Request $request){
  65. $pageSize=$request->get('page_size') ?? 10;
  66. $sort=$request->input('sort','desc');
  67. $users = User::query()->allowed()->with(['department'])->filter($request->all())->orderBy('created_at',$sort)->paginate($pageSize);
  68. if(Auth::user()->super_admin){
  69. $users->transform(function (User $user) {
  70. $user->display_id = $user->id;
  71. return $user;
  72. });
  73. return UserSimpleResource::collection($users);
  74. }
  75. return UserSimpleResource::collection($users);
  76. }
  77. public function publicSearch(Request $request){
  78. $pageSize=$request->get('page_size') ?? 10;
  79. $sort=$request->input('sort','desc');
  80. //这里公共查询如超级管理员在邮件抄送时会看到其他公司用户不合适
  81. $company_id = $request->input('company_id',Auth::user()->company_id);
  82. $user=User::query()
  83. ->where('company_id',$company_id)
  84. ->filter($request->all())->orderBy('created_at',$sort)->paginate($pageSize);
  85. return UserSimpleResource::collection($user);
  86. }
  87. /**
  88. * add a new User
  89. * @return \Illuminate\Http\Response
  90. */
  91. public function store(CreateRequest $request){
  92. $password = Hash::make($request->password);
  93. $userRequest=$request->all();
  94. $userRequest['password']=$password;
  95. $user=User::create([
  96. ...$userRequest,
  97. 'created_by' => Auth::id(),
  98. ]);
  99. // TODO:发送邮箱给目标用户
  100. $roleId = $request->get('role_id');
  101. $role = Role::query()->findOrFail($roleId);
  102. $user->syncRoles($role);
  103. return $this->created();
  104. }
  105. /**
  106. * batchCreate User,为ditto时参考上一条
  107. * @return \Illuminate\Http\Response
  108. */
  109. public function batchStore(BatchCreateRequest $request){
  110. $userData = $request->users;
  111. DB::transaction(function () use ($userData) {
  112. foreach ($userData as $k => $data) {
  113. $user = new User();
  114. if ($k != 0) {
  115. // $userData[$k]["department_id"] = $userData[$k]["department_id"] == 'ditto' ? $userData[$k - 1]["department_id"] : $userData[$k]["department_id"];
  116. $userData[$k]["role_id"] = $userData[$k]["role_id"] == 'ditto' ? $userData[$k - 1]["role_id"] : $userData[$k]["role_id"];
  117. }
  118. $userData[$k]['password'] = Hash::make($userData[$k]['password']);
  119. $role = Role::query()->findOrFail($userData[$k]["role_id"]);
  120. $user->syncRoles($role);
  121. $user->fill([
  122. ...$userData[$k],
  123. 'created_by' => Auth::id(),
  124. ]);
  125. // TODO:发送邮箱给目标用户
  126. $user->save();
  127. }
  128. });
  129. // TODO:发送邮箱给目标用户
  130. return $this->created();
  131. }
  132. /**
  133. * enable or ban users 启用或禁用用户
  134. * @param Request $request
  135. * @return \Illuminate\Http\Response
  136. */
  137. public function status(Request $request,string $status){
  138. User::query()->allowed()->whereIn('id', $request->user_id)->update(['status' => $status]);
  139. return $this->created();
  140. }
  141. public function destroy(string $id)
  142. {
  143. $user = User::query()->allowed()->findOrFail($id);
  144. $user->delete();
  145. return $this->noContent();
  146. }
  147. public function show(string $id)
  148. {
  149. $company = Company::query()->where("id", Auth::user()->company_id)->orWhere('parent_id', Auth::user()->company_id)->pluck("id");
  150. $user = User::query()
  151. ->when(!Auth::user()->super_admin, fn($query) => $query->whereIn('company_id',$company->toArray()))
  152. ->findOrFail($id);
  153. return new UserInfoResource($user);
  154. }
  155. public function update(UpdateRequest $request,string $id)
  156. {
  157. $user = User::allowed()->findOrFail($id);
  158. $newPassword=null;
  159. // 如果用户是超级管理员或具有相应权限
  160. if (Auth::user()->super_admin || Auth::user()->can('user.assign-role')) {
  161. $user->fill([
  162. ...$request->except(['username']),
  163. 'password' => $request->password ? Hash::make($request->password) : $user->password,
  164. ]);
  165. $roleId = $request->get('role_id');
  166. if ($roleId) {
  167. $role = Role::findOrFail($roleId);
  168. $user->syncRoles([$role]);
  169. }
  170. } else {
  171. // 如果用户不是超级管理员且没有编辑角色的权限
  172. $user->fill([
  173. ...$request->except(['role_id', 'department_id', 'company_id']),
  174. 'password' => $request->password ? Hash::make($request->password) : $user->password,
  175. ]);
  176. }
  177. $user->save();
  178. return $this->noContent();
  179. }
  180. /**
  181. * 获取4s系统的访问令牌
  182. *
  183. * @return \Illuminate\Http\JsonResponse
  184. * @throws Exception
  185. */
  186. public function get4sAccessToken()
  187. {
  188. $user = Auth::user();
  189. if (!$user->fs_password) {
  190. return $this->badRequest('The user has not set a 4s password');
  191. }
  192. try {
  193. $client = new Client();
  194. $url = env("4sLoginUrl", "https://4s.autosmartcity.com:18443/login/pc");
  195. $cacheKey = '4s_token_' . $user->username;
  196. // 尝试从缓存中获取 token
  197. $token = Cache::get($cacheKey);
  198. if ($token) {
  199. return $this->success([
  200. 'token' => $token,
  201. 'target_url' => env("4sUrl", "https://4s.autosmartcity.com:8080")."?token=".$token
  202. ]);
  203. }
  204. $response = $client->post($url, [
  205. 'form_params' => [
  206. 'username' => $user->username,
  207. 'password' => $user->fs_password
  208. ]
  209. ]);
  210. $targetUrl = env("4sUrl", "https://4s.autosmartcity.com:8080");
  211. $result = json_decode($response->getBody()->getContents(), true);
  212. if ($result['code'] == 200 && $result['data']['token']) {
  213. Cache::put($cacheKey, $result['data']['token'], 60 * 60 * 23);
  214. return $this->success([
  215. 'token' => $result['data']['token'],
  216. 'target_url' => $targetUrl."?token=".$result['data']['token']
  217. ]);
  218. } else {
  219. return $this->badRequest('get 4s token error: '. $result['message']);
  220. }
  221. } catch (\Exception $e) {
  222. return $this->badRequest('get 4s token error: ' . $e->getMessage());
  223. }
  224. }
  225. // public function byDepartment(Request $request){
  226. // $departmentIds = $request->get("department", []);
  227. //
  228. // $emptyResponse = $this->success([
  229. // 'data' => [],
  230. // ]);
  231. //
  232. // if (! $departmentIds) {
  233. // return $emptyResponse;
  234. // }
  235. //
  236. // $users = User::query()->filter($request->all())->where('company_id',Auth::user()->company_id)->whereIn("department_id",$departmentIds)->get();
  237. //
  238. // return UserSimpleResource::collection($users);
  239. //
  240. // }
  241. // /**
  242. // * @param CreateRequest $request
  243. // * @return \Illuminate\Http\Response
  244. // * 修改个人信息
  245. // */
  246. // public function updateInfo(UpdateRequest $request)
  247. // {
  248. // $user = User::findOrFail(Auth::user()->id);
  249. // $user->fill([
  250. // ...$request->except(['username','role_id','department_id','company_id'])
  251. // ]);
  252. // $user->save();
  253. // return $this->noContent();
  254. // }
  255. //
  256. // /**
  257. // * @param AdminUpdateRequest $request 修改主体
  258. // * @param string $id 用户id
  259. // * @return \Illuminate\Http\Response
  260. // * 超管修改用户的信息
  261. // */
  262. // public function updateUserInfo(AdminUpdateRequest $request, string $id)
  263. // {
  264. // $user = User::findOrFail($id);
  265. // $user->fill([
  266. // ...$request->all()
  267. // ]);
  268. // $user->save();
  269. // return $this->noContent();
  270. //
  271. // }
  272. // /**
  273. // * 注册用户
  274. // * @return \Illuminate\Http\Response
  275. // */
  276. // public function registerCompanyUser(CreateCompanyUserRequest $request){
  277. // $password = Hash::make($request->password);
  278. // $userRequest=$request->all();
  279. // $userRequest['password']=$password;
  280. // User::create([
  281. // ...$userRequest,
  282. // 'created_by' => Auth::id(),
  283. // ]);
  284. // return $this->created();
  285. // }
  286. }