User.php 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481
  1. <?php
  2. namespace app\api\controller;
  3. use app\common\controller\Api;
  4. use app\common\library\Ems;
  5. use app\common\library\Sms;
  6. use fast\Random;
  7. use think\Config;
  8. use think\Validate;
  9. use app\common\library\Token;
  10. use think\Db;
  11. /**
  12. * 会员接口
  13. */
  14. class User extends Api
  15. {
  16. protected $noNeedLogin = ['login', 'mobilelogin', 'register', 'resetpwd', 'changeemail', 'changemobile', 'third'];
  17. protected $noNeedRight = '*';
  18. public function _initialize()
  19. {
  20. parent::_initialize();
  21. if (!Config::get('fastadmin.usercenter')) {
  22. $this->error(__('User center already closed'));
  23. }
  24. }
  25. /**
  26. * 会员中心
  27. */
  28. public function index()
  29. {
  30. $this->success('', ['welcome' => $this->auth->nickname]);
  31. }
  32. /**
  33. * 会员登录
  34. *
  35. * @ApiMethod (POST)
  36. * @param string $account 账号
  37. * @param string $password 密码
  38. */
  39. public function login()
  40. {
  41. $account = $this->request->post('account');
  42. $password = $this->request->post('password');
  43. if (!$account || !$password) {
  44. $this->error(__('Invalid parameters'));
  45. }
  46. $ret = $this->auth->login($account, $password);
  47. if ($ret) {
  48. $data = $this->userInfo('return');
  49. $this->success(__('Logged in successful'), $data);
  50. } else {
  51. $this->error($this->auth->getError());
  52. }
  53. }
  54. /**
  55. * 手机验证码登录
  56. *
  57. * @ApiMethod (POST)
  58. * @param string $mobile 手机号
  59. * @param string $captcha 验证码
  60. */
  61. public function mobilelogin()
  62. {
  63. $mobile = $this->request->post('mobile');
  64. $captcha = $this->request->post('captcha');
  65. if (!$mobile || !$captcha) {
  66. $this->error(__('Invalid parameters'));
  67. }
  68. if (!Validate::regex($mobile, "^1\d{10}$")) {
  69. $this->error(__('Mobile is incorrect'));
  70. }
  71. if (!Sms::check($mobile, $captcha, 'mobilelogin')) {
  72. $this->error(__('Captcha is incorrect'));
  73. }
  74. $user = \app\common\model\User::getByMobile($mobile);
  75. if ($user) {
  76. if ($user->status != 1) {
  77. $this->error(__('Account is locked'));
  78. }
  79. //如果已经有账号则直接登录
  80. $ret = $this->auth->direct($user->id);
  81. } else {
  82. $ret = $this->auth->register($mobile, Random::alnum(), '', $mobile, []);
  83. }
  84. if ($ret) {
  85. Sms::flush($mobile, 'mobilelogin');
  86. $data = $this->userInfo('return');
  87. $this->success(__('Logged in successful'), $data);
  88. } else {
  89. $this->error($this->auth->getError());
  90. }
  91. }
  92. /**
  93. * 注册会员
  94. *
  95. * @ApiMethod (POST)
  96. * @param string $username 用户名
  97. * @param string $password 密码
  98. * @param string $email 邮箱
  99. * @param string $mobile 手机号
  100. * @param string $code 验证码
  101. */
  102. /*public function register()
  103. {
  104. $username = $this->request->post('username');
  105. $password = $this->request->post('password');
  106. $email = $this->request->post('email');
  107. $mobile = $this->request->post('mobile');
  108. $code = $this->request->post('code');
  109. if (!$username || !$password) {
  110. $this->error(__('Invalid parameters'));
  111. }
  112. if ($email && !Validate::is($email, "email")) {
  113. $this->error(__('Email is incorrect'));
  114. }
  115. if ($mobile && !Validate::regex($mobile, "^1\d{10}$")) {
  116. $this->error(__('Mobile is incorrect'));
  117. }
  118. $ret = Sms::check($mobile, $code, 'register');
  119. if (!$ret) {
  120. $this->error(__('Captcha is incorrect'));
  121. }
  122. $ret = $this->auth->register($username, $password, $email, $mobile, []);
  123. if ($ret) {
  124. $data = $this->userInfo('return');
  125. $this->success(__('Sign up successful'), $data);
  126. } else {
  127. $this->error($this->auth->getError());
  128. }
  129. }*/
  130. //用户详细资料
  131. public function userInfo($type = 1){
  132. $info = $this->auth->getUserinfo();
  133. if($type == 'return'){
  134. return $info;
  135. }
  136. $this->success(__('success'),$info);
  137. }
  138. //申请真人认证
  139. public function apply_real_confirm(){
  140. Db::name('user')->where('id',$this->auth->id)->update(['real_status'=>1]);
  141. $this->success();
  142. }
  143. //实名认证信息
  144. public function idcard_confirm_info(){
  145. $check = Db::name('user_idconfirm')->where('user_id',$this->auth->id)->order('id desc')->find();
  146. $this->success('success',$check);
  147. }
  148. //申请实名认证
  149. public function apply_idcard_confirm(){
  150. $truename = input('truename','');
  151. $idcard = input('idcard','');
  152. $idcard_images = input('idcard_images','');
  153. $alipay_account = input('alipay_account','');
  154. if(empty($truename) || empty($idcard) || empty($idcard_images) || empty($alipay_account)){
  155. $this->error('实名认证信息必填');
  156. }
  157. if($this->auth->idcard_status == 1){
  158. $this->error('您已经完成实名认证');
  159. }
  160. if($this->auth->idcard_status == 0){
  161. $this->error('您已经提交实名认证,请等待审核');
  162. }
  163. Db::startTrans();
  164. $check = Db::name('user_idconfirm')->where('user_id',$this->auth->id)->lock(true)->find();
  165. if(!empty($check)){
  166. if($check['status'] == 0){
  167. Db::rollback();
  168. $this->error('您已经提交实名认证,请等待审核');
  169. }
  170. if($check['status'] == 1){
  171. Db::rollback();
  172. $this->error('您已经完成实名认证');
  173. }
  174. }
  175. $data = [
  176. 'user_id' => $this->auth->id,
  177. 'truename' => $truename,
  178. 'idcard' => $idcard,
  179. 'idcard_images' => $idcard_images,
  180. 'alipay_account' => $alipay_account,
  181. 'status' => 0,
  182. 'createtime' => time(),
  183. 'updatetime' => time(),
  184. ];
  185. //更新
  186. $update_rs = Db::name('user')->where('id',$this->auth->id)->update(['idcard_status'=>0]);
  187. if(!empty($check)){
  188. $rs = Db::name('user_idconfirm')->where('id',$check['id'])->update($data);
  189. }else{
  190. $rs = Db::name('user_idconfirm')->insertGetId($data);
  191. }
  192. if(!$rs || !$update_rs){
  193. Db::rollback();
  194. $this->error('提交失败');
  195. }
  196. Db::commit();
  197. $this->success('提交成功,请等待审核');
  198. }
  199. /**
  200. * 退出登录
  201. * @ApiMethod (POST)
  202. */
  203. public function logout()
  204. {
  205. if (!$this->request->isPost()) {
  206. $this->error(__('Invalid parameters'));
  207. }
  208. $this->auth->logout();
  209. $this->success(__('Logout successful'));
  210. }
  211. /**
  212. * 修改会员个人信息
  213. *
  214. * @ApiMethod (POST)
  215. * @param string $avatar 头像地址
  216. * @param string $username 用户名
  217. * @param string $nickname 昵称
  218. * @param string $bio 个人简介
  219. */
  220. public function profile()
  221. {
  222. $field_array = ['nickname','gender','birthday','height','weight','bio','audio_bio','avatar','photo_images','education_id','hobby_ids','job_id','marital_id','tag_ids','wages_id','hometown_cityid'];
  223. $data = [];
  224. foreach($field_array as $key => $field){
  225. $newone = input_post($field);
  226. if($field == 'avatar'){
  227. $newone = input_post('avatar', '', 'trim,strip_tags,htmlspecialchars');
  228. }
  229. if($field == 'photo_images'){
  230. $newone = input_post('avatar', '', 'trim,strip_tags,htmlspecialchars');
  231. }
  232. if(!empty($newone)){
  233. $data[$field] = $newone;
  234. }
  235. }
  236. if(isset($data['birthday'])){
  237. $data['birthday'] = strtotime($data['birthday']);
  238. }
  239. if(isset($data['avatar'])){
  240. $data['real_status'] = -1; //或许应该改成0
  241. }
  242. //dump($data);
  243. if(empty($data)){
  244. $this->error('没有任何改变');
  245. }
  246. Db::name('user')->where('id',$this->auth->id)->update($data);
  247. $this->success();
  248. }
  249. /**
  250. * 修改邮箱
  251. *
  252. * @ApiMethod (POST)
  253. * @param string $email 邮箱
  254. * @param string $captcha 验证码
  255. */
  256. public function changeemail()
  257. {
  258. $user = $this->auth->getUser();
  259. $email = $this->request->post('email');
  260. $captcha = $this->request->post('captcha');
  261. if (!$email || !$captcha) {
  262. $this->error(__('Invalid parameters'));
  263. }
  264. if (!Validate::is($email, "email")) {
  265. $this->error(__('Email is incorrect'));
  266. }
  267. if (\app\common\model\User::where('email', $email)->where('id', '<>', $user->id)->find()) {
  268. $this->error(__('Email already exists'));
  269. }
  270. $result = Ems::check($email, $captcha, 'changeemail');
  271. if (!$result) {
  272. $this->error(__('Captcha is incorrect'));
  273. }
  274. $verification = $user->verification;
  275. $verification->email = 1;
  276. $user->verification = $verification;
  277. $user->email = $email;
  278. $user->save();
  279. Ems::flush($email, 'changeemail');
  280. $this->success();
  281. }
  282. /**
  283. * 修改手机号
  284. *
  285. * @ApiMethod (POST)
  286. * @param string $mobile 手机号
  287. * @param string $captcha 验证码
  288. */
  289. public function changemobile()
  290. {
  291. $user = $this->auth->getUser();
  292. $oldcaptcha = $this->request->request('oldcaptcha');
  293. $mobile = $this->request->request('mobile');
  294. $captcha = $this->request->request('captcha');
  295. if (!$oldcaptcha || !$mobile || !$captcha) {
  296. $this->error(__('Invalid parameters'));
  297. }
  298. if (!Validate::regex($mobile, "^1\d{10}$")) {
  299. $this->error(__('Mobile is incorrect'));
  300. }
  301. if($user->mobile == $mobile){
  302. $this->error('新手机号不能与旧手机号相同');
  303. }
  304. if (\app\common\model\User::where('mobile', $mobile)->find()) {
  305. $this->error(__('Mobile already exist'));
  306. }
  307. $result = Sms::check($user->mobile, $oldcaptcha, 'changemobile');
  308. if (!$result) {
  309. $this->error(__('Captcha is incorrect'));
  310. }
  311. $result = Sms::check($mobile, $captcha, 'changemobile');
  312. if (!$result) {
  313. $this->error(__('Captcha is incorrect'));
  314. }
  315. $verification = $user->verification;
  316. $verification->mobile = 1;
  317. $user->verification = $verification;
  318. $user->mobile = $mobile;
  319. $user->save();
  320. Sms::flush($user->mobile, 'changemobile');
  321. Sms::flush($mobile, 'changemobile');
  322. $this->success();
  323. }
  324. /**
  325. * 第三方登录
  326. *
  327. * @ApiMethod (POST)
  328. * @param string $platform 平台名称
  329. * @param string $code Code码
  330. */
  331. public function third()
  332. {
  333. $url = url('user/index');
  334. $platform = $this->request->post("platform");
  335. $code = $this->request->post("code");
  336. $config = get_addon_config('third');
  337. if (!$config || !isset($config[$platform])) {
  338. $this->error(__('Invalid parameters'));
  339. }
  340. $app = new \addons\third\library\Application($config);
  341. //通过code换access_token和绑定会员
  342. $result = $app->{$platform}->getUserInfo(['code' => $code]);
  343. if ($result) {
  344. $loginret = \addons\third\library\Service::connect($platform, $result);
  345. if ($loginret) {
  346. $data = [
  347. 'userinfo' => $this->auth->getUserinfo(),
  348. 'thirdinfo' => $result
  349. ];
  350. $this->success(__('Logged in successful'), $data);
  351. }
  352. }
  353. $this->error(__('Operation failed'), $url);
  354. }
  355. /**
  356. * 重置密码
  357. *
  358. * @ApiMethod (POST)
  359. * @param string $mobile 手机号
  360. * @param string $newpassword 新密码
  361. * @param string $captcha 验证码
  362. */
  363. public function resetpwd()
  364. {
  365. //$type = $this->request->post("type");
  366. $type = 'mobile';
  367. $mobile = $this->request->post("mobile");
  368. $email = $this->request->post("email");
  369. $newpassword = $this->request->post("newpassword");
  370. $captcha = $this->request->post("captcha");
  371. if (!$newpassword || !$captcha) {
  372. $this->error(__('Invalid parameters'));
  373. }
  374. if ($type == 'mobile') {
  375. if (!Validate::regex($mobile, "^1\d{10}$")) {
  376. $this->error(__('Mobile is incorrect'));
  377. }
  378. $user = \app\common\model\User::getByMobile($mobile);
  379. if (!$user) {
  380. $this->error(__('User not found'));
  381. }
  382. $ret = Sms::check($mobile, $captcha, 'resetpwd');
  383. if (!$ret) {
  384. $this->error(__('Captcha is incorrect'));
  385. }
  386. Sms::flush($mobile, 'resetpwd');
  387. } else {
  388. if (!Validate::is($email, "email")) {
  389. $this->error(__('Email is incorrect'));
  390. }
  391. $user = \app\common\model\User::getByEmail($email);
  392. if (!$user) {
  393. $this->error(__('User not found'));
  394. }
  395. $ret = Ems::check($email, $captcha, 'resetpwd');
  396. if (!$ret) {
  397. $this->error(__('Captcha is incorrect'));
  398. }
  399. Ems::flush($email, 'resetpwd');
  400. }
  401. //模拟一次登录
  402. $this->auth->direct($user->id);
  403. $ret = $this->auth->changepwd($newpassword, '', true);
  404. if ($ret) {
  405. $this->success(__('Reset password successful'));
  406. } else {
  407. $this->error($this->auth->getError());
  408. }
  409. }
  410. /**
  411. * 修改密码
  412. *
  413. * @ApiMethod (POST)
  414. * @param string $newpassword 新密码
  415. * @param string $oldpassword 旧密码
  416. */
  417. public function changepwd(){
  418. $newpassword = input('post.newpassword');
  419. $oldpassword = input('post.oldpassword','');
  420. if (!$newpassword) {
  421. $this->error(__('Invalid parameters'));
  422. }
  423. if($this->auth->password && empty($oldpassword)){
  424. $this->error('原密码必填');
  425. }
  426. if(empty($this->auth->password)){
  427. $ret = $this->auth->changepwd($newpassword, '', true);
  428. }else{
  429. $ret = $this->auth->changepwd($newpassword,$oldpassword,false);
  430. }
  431. if ($ret) {
  432. $this->success(__('Reset password successful'));
  433. } else {
  434. $this->error($this->auth->getError());
  435. }
  436. }
  437. }