User.php 22 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737
  1. <?php
  2. namespace app\api\controller;
  3. use app\common\controller\Api;
  4. use app\common\library\Ems;
  5. use app\common\library\Sms;
  6. use fast\Random;
  7. use think\Config;
  8. use think\Validate;
  9. use app\common\library\Token;
  10. use think\Db;
  11. use app\common\model\UserDeviceInfo;
  12. use onlogin\onlogin;
  13. use addons\epay\library\Service;
  14. //use addons\epay\library\Wechat;
  15. use app\common\library\Wechat;
  16. /**
  17. * 会员接口,登录,注册,修改资料等
  18. */
  19. class User extends Api
  20. {
  21. protected $noNeedLogin = ['login', 'mobilelogin','wechatlogin','applelogin', 'register', 'resetpwd', 'changemobile', 'onlogin','getUserOpenid_gzh','jssdkBuildConfig'];
  22. protected $noNeedRight = '*';
  23. public function _initialize()
  24. {
  25. parent::_initialize();
  26. }
  27. /**
  28. * 会员中心
  29. */
  30. public function index()
  31. {
  32. $this->success('', ['welcome' => $this->auth->nickname]);
  33. }
  34. /**
  35. * 会员登录
  36. *
  37. * @ApiMethod (POST)
  38. * @param string $account 账号
  39. * @param string $password 密码
  40. */
  41. public function login()
  42. {
  43. $account = input('account');
  44. $password = input('password');
  45. if (!$account || !$password) {
  46. $this->error(__('Invalid parameters'));
  47. }
  48. $ret = $this->auth->login($account, $password);
  49. if ($ret) {
  50. $data = $this->userInfo('return');
  51. $this->success(__('Logged in successful'), $data);
  52. } else {
  53. $this->error($this->auth->getError());
  54. }
  55. }
  56. /**
  57. * 手机验证码登录
  58. *
  59. * @ApiMethod (POST)
  60. * @param string $mobile 手机号
  61. * @param string $captcha 验证码
  62. */
  63. public function mobilelogin()
  64. {
  65. $mobile = input('mobile');
  66. $captcha = input('captcha');
  67. if (!$mobile || !$captcha) {
  68. $this->error(__('Invalid parameters'));
  69. }
  70. if (!Validate::regex($mobile, "^1\d{10}$")) {
  71. $this->error(__('Mobile is incorrect'));
  72. }
  73. if (!Sms::check($mobile, $captcha, 'mobilelogin')) {
  74. $this->error(__('Captcha is incorrect'));
  75. }
  76. $user = \app\common\model\User::getByMobile($mobile);
  77. if ($user) {
  78. if ($user->status == -1) {
  79. $this->error('账户已注销');
  80. }
  81. if ($user->status != 1) {
  82. $this->error(__('Account is locked'));
  83. }
  84. //如果已经有账号则直接登录
  85. $ret = $this->auth->direct($user->id);
  86. } else {
  87. $extend = [
  88. // 'register_from' => input('register_from',''),
  89. ];
  90. $ret = $this->auth->register('', '', '', $mobile, $extend);
  91. }
  92. if ($ret) {
  93. Sms::flush($mobile, 'mobilelogin');
  94. $data = $this->userInfo('return');
  95. $this->success(__('Logged in successful'), $data);
  96. } else {
  97. $this->error($this->auth->getError());
  98. }
  99. }
  100. /**
  101. * 注册会员
  102. *
  103. * @ApiMethod (POST)
  104. * @param string $username 用户名
  105. * @param string $password 密码
  106. * @param string $email 邮箱
  107. * @param string $mobile 手机号
  108. * @param string $code 验证码
  109. */
  110. /*public function register()
  111. {
  112. $username = $this->request->post('username');
  113. $password = $this->request->post('password');
  114. $email = $this->request->post('email');
  115. $mobile = $this->request->post('mobile');
  116. $code = $this->request->post('code');
  117. if (!$username || !$password) {
  118. $this->error(__('Invalid parameters'));
  119. }
  120. if ($email && !Validate::is($email, "email")) {
  121. $this->error(__('Email is incorrect'));
  122. }
  123. if ($mobile && !Validate::regex($mobile, "^1\d{10}$")) {
  124. $this->error(__('Mobile is incorrect'));
  125. }
  126. $ret = Sms::check($mobile, $code, 'register');
  127. if (!$ret) {
  128. $this->error(__('Captcha is incorrect'));
  129. }
  130. $ret = $this->auth->register($username, $password, $email, $mobile, []);
  131. if ($ret) {
  132. $data = $this->userInfo('return');
  133. $this->success(__('Sign up successful'), $data);
  134. } else {
  135. $this->error($this->auth->getError());
  136. }
  137. }*/
  138. //微信登录+注册
  139. public function wechatlogin(){
  140. $nickname = input('nickname','');
  141. $avatar = input('avatar','');
  142. $gender = input('gender',1);
  143. $wechat_openid = input('wechat_openid','');
  144. if (!$wechat_openid) {
  145. $this->error(__('Invalid parameters'));
  146. }
  147. if($gender != 1){
  148. $gender = 0;
  149. }
  150. $user = \app\common\model\User::getByOpenid($wechat_openid);
  151. if ($user) {
  152. if ($user->status == -1) {
  153. $this->error('账户已注销');
  154. }
  155. if ($user->status != 1) {
  156. $this->error(__('Account is locked'));
  157. }
  158. //如果已经有账号则直接登录
  159. $ret = $this->auth->direct($user->id);
  160. } else {
  161. if (!$nickname || !$avatar) {
  162. $this->error(__('Invalid parameters'));
  163. }
  164. $reg_data = [
  165. 'nickname'=>$nickname,
  166. 'avatar'=>$avatar,
  167. 'gender'=>$gender,
  168. 'register_from' => input('register_from',''),
  169. ];
  170. $ret = $this->auth->openid_register($wechat_openid,$reg_data);
  171. }
  172. if ($ret) {
  173. $data = $this->userInfo('return');
  174. $this->success(__('Logged in successful'), $data);
  175. } else {
  176. $this->error($this->auth->getError());
  177. }
  178. }
  179. /**
  180. * 运营商一键登录
  181. */
  182. public function onLogin()
  183. {
  184. $accessToken = input('accessToken');// 运营商预取号获取到的token
  185. $token = input('tokenT');// 易盾返回的token
  186. if (!$accessToken || !$token) {
  187. $this->error("参数获取失败!");
  188. }
  189. $params = array(
  190. // 运营商预取号获取到的token
  191. "accessToken" => $accessToken,
  192. // 易盾返回的token
  193. "token" => $token
  194. );
  195. // 获取密钥配置
  196. $configInfo = config("onLogin");
  197. $onlogin = new onlogin($configInfo["secretid"], $configInfo["secretkey"], $configInfo["businessid"]);
  198. $onret = $onlogin->check($params);
  199. // $ret = [];
  200. // $ret["code"] = 200;
  201. // $ret["msg"] = "ok";
  202. // $ret["data"] = [
  203. // "phone" => "17574504021",
  204. // "resultCode" => 0
  205. // ];
  206. if ($onret["code"] == 200) {
  207. $mobile = $onret["data"]["phone"];
  208. if (empty($mobile)) {
  209. // 取号失败,建议进行二次验证,例如短信验证码
  210. $this->error("取号登录失败,请用验证码方式登录!");
  211. } else {
  212. // 取号成功, 执行登录等流程
  213. // 用户登录逻辑 === 开始
  214. $user = \app\common\model\User::getByMobile($mobile);
  215. if ($user) {
  216. if ($user->status == -1) {
  217. $this->error('账户已注销');
  218. }
  219. if ($user->status != 1) {
  220. $this->error(__('Account is locked'));
  221. }
  222. //如果已经有账号则直接登录
  223. $ret = $this->auth->direct($user->id);
  224. $is_register = 0;
  225. } else {
  226. $ret = $this->auth->register('', '', '', $mobile, []);
  227. $is_register = 1;
  228. }
  229. if ($ret) {
  230. $this->success(__('Logged in successful'), $this->auth->getUserinfo());
  231. } else {
  232. $this->error($this->auth->getError());
  233. }
  234. // 用户登录逻辑 === 结束
  235. }
  236. } else {
  237. $this->error("登录失败,请用验证码方式登录!");
  238. }
  239. }
  240. //苹果登录+注册
  241. public function applelogin(){
  242. $iosUserId = input_post('ios_user_id','');
  243. if(!$iosUserId){
  244. $this->error(__('Invalid parameters'));
  245. }
  246. $user = Db::name('user')->where('ios_user_id',$iosUserId)->find();
  247. if ($user) {
  248. if ($user['status'] == -1) {
  249. $this->error('账户已经注销');
  250. }
  251. if ($user['status'] != 1) {
  252. $this->error(__('Account is locked'));
  253. }
  254. //如果已经有账号则直接登录
  255. $ret = $this->auth->direct($user['id']);
  256. } else {
  257. $ret = $this->auth->ios_register($iosUserId);
  258. }
  259. if ($ret) {
  260. $this->success(__('Logged in successful'), $this->auth->getUserinfo());
  261. } else {
  262. $this->error($this->auth->getError());
  263. }
  264. }
  265. //用户详细资料
  266. public function userInfo($type = 1){
  267. $info = $this->auth->getUserinfo();
  268. if($type == 'return'){
  269. return $info;
  270. }
  271. $this->success(__('success'),$info);
  272. }
  273. /**
  274. * 退出登录
  275. * @ApiMethod (POST)
  276. */
  277. public function logout()
  278. {
  279. if (!$this->request->isPost()) {
  280. $this->error(__('Invalid parameters'));
  281. }
  282. //退出im
  283. // $tenIm = new Tenim();
  284. // $tenIm->loginoutim($this->auth->id);
  285. $this->auth->logout();
  286. $this->success(__('Logout successful'));
  287. }
  288. /**
  289. * 修改会员个人信息
  290. *
  291. * @ApiMethod (POST)
  292. * @param string $avatar 头像地址
  293. * @param string $username 用户名
  294. * @param string $nickname 昵称
  295. * @param string $bio 个人简介
  296. */
  297. public function profile()
  298. {
  299. $field_array = ['nickname','introcode','gender','birthday','attribute','shoesize','height','weight','bio','avatar','photo_images','tag_ids','hide_is_finishinfo'];
  300. $data = [];
  301. foreach($field_array as $key => $field){
  302. //前端传不了post,改了
  303. /*if(!request()->has($field,'post')){
  304. continue;
  305. }*/
  306. if(!input('?'.$field)){
  307. continue;
  308. }
  309. $newone = input($field);
  310. if($field == 'avatar'){
  311. $newone = input('avatar', '', 'trim,strip_tags,htmlspecialchars');
  312. }
  313. if($field == 'photo_images'){
  314. $newone = input('photo_images', '', 'trim,strip_tags,htmlspecialchars');
  315. }
  316. $data[$field] = $newone;
  317. }
  318. if(isset($data['birthday'])){
  319. $data['birthday'] = strtotime($data['birthday']);
  320. }
  321. if(isset($data['tag_ids'])){
  322. $data['tag_ids'] = implode(',',explode(',',$data['tag_ids']));
  323. }
  324. if(isset($data['introcode'])){
  325. $intro_user = Db::name('user')->where('introcode',$data['introcode'])->value('id');
  326. if(!$intro_user){
  327. $this->error('不存在的邀请人');
  328. }
  329. unset($data['introcode']);//别人的邀请码,不能改了自己的
  330. $data['intro_uid'] = $intro_user;
  331. }
  332. //dump($data);
  333. if(empty($data)){
  334. $this->error('没有任何改变');
  335. }
  336. Db::startTrans();
  337. $update_rs = Db::name('user')->where('id',$this->auth->id)->update($data);
  338. if($update_rs === false){
  339. Db::rollback();
  340. $this->error('修改资料失败');
  341. }
  342. //task任务
  343. //上传本人头像
  344. if(isset($data['avatar'])&& $data['avatar'] != config('site.domain_cdnurl').'/avatar.png'){
  345. $task_rs = \app\common\model\TaskLog::tofinish($this->auth->id,1);
  346. if($task_rs === false){
  347. Db::rollback();
  348. $this->error('完成任务失败');
  349. }
  350. }
  351. Db::commit();
  352. $this->success();
  353. }
  354. /**
  355. * 修改会员权限
  356. */
  357. public function setpower()
  358. {
  359. $is_vip = $this->is_vip($this->auth->id);
  360. if(!$is_vip){
  361. $this->error('VIP才能设置隐私权限');
  362. }
  363. $data = [
  364. 'yinsi' => input('yinsi',0),
  365. 'yinshen' => input('yinshen',0),
  366. 'wuhen' => input('wuhen',0),
  367. ];
  368. $update_rs = Db::name('user_power')->where('id',$this->auth->id)->update($data);
  369. $this->success();
  370. }
  371. /*
  372. * 修改用户的坐标
  373. * */
  374. public function change_longlat(){
  375. $longitude = input_post('longitude',0);
  376. $latitude = input_post('latitude',0);
  377. $cityname = input_post('cityname','');
  378. $plat_unique_id = input_post('plat_unique_id','');
  379. if(empty($longitude) || empty($latitude) || empty($cityname)){
  380. $this->error();
  381. }
  382. $data = [
  383. 'longitude' => $longitude,
  384. 'latitude' => $latitude,
  385. 'cityname' => $cityname,
  386. 'plat_unique_id' => $plat_unique_id,
  387. ];
  388. Db::name('user')->where('id',$this->auth->id)->update($data);
  389. $this->success();
  390. }
  391. /**
  392. * 修改手机号
  393. *
  394. * @ApiMethod (POST)
  395. * @param string $mobile 手机号
  396. * @param string $captcha 验证码
  397. */
  398. public function changemobile()
  399. {
  400. $user = $this->auth->getUser();
  401. $oldcaptcha = $this->request->request('oldcaptcha');
  402. $mobile = $this->request->request('mobile');
  403. $captcha = $this->request->request('captcha');
  404. if (!$oldcaptcha || !$mobile || !$captcha) {
  405. $this->error(__('Invalid parameters'));
  406. }
  407. if (!Validate::regex($mobile, "^1\d{10}$")) {
  408. $this->error(__('Mobile is incorrect'));
  409. }
  410. if($user->mobile == $mobile){
  411. $this->error('新手机号不能与旧手机号相同');
  412. }
  413. if (\app\common\model\User::where('mobile', $mobile)->find()) {
  414. $this->error(__('Mobile already exist'));
  415. }
  416. $result = Sms::check($user->mobile, $oldcaptcha, 'changemobile');
  417. if (!$result) {
  418. $this->error(__('Captcha is incorrect'));
  419. }
  420. $result = Sms::check($mobile, $captcha, 'changemobile');
  421. if (!$result) {
  422. $this->error(__('Captcha is incorrect'));
  423. }
  424. $verification = $user->verification;
  425. $verification->mobile = 1;
  426. $user->verification = $verification;
  427. $user->mobile = $mobile;
  428. $user->save();
  429. Sms::flush($user->mobile, 'changemobile');
  430. Sms::flush($mobile, 'changemobile');
  431. $this->success();
  432. }
  433. /**
  434. * 微信注册来的,绑定手机号
  435. *
  436. * @ApiMethod (POST)
  437. * @param string $mobile 手机号
  438. * @param string $captcha 验证码
  439. */
  440. public function bindmobile()
  441. {
  442. $user = $this->auth->getUser();
  443. $mobile = $this->request->request('mobile');
  444. $captcha = $this->request->request('captcha');
  445. if(!empty($this->auth->mobile)){
  446. $this->error('已经绑定了手机号');
  447. }
  448. if (!$mobile || !$captcha) {
  449. $this->error(__('Invalid parameters'));
  450. }
  451. if (!Validate::regex($mobile, "^1\d{10}$")) {
  452. $this->error(__('Mobile is incorrect'));
  453. }
  454. if (\app\common\model\User::where('mobile', $mobile)->find()) {
  455. $this->error('该手机号已被其他用户绑定');
  456. }
  457. $result = Sms::check($mobile, $captcha, 'changemobile');
  458. if (!$result) {
  459. $this->error(__('Captcha is incorrect'));
  460. }
  461. $verification = $user->verification;
  462. $verification->mobile = 1;
  463. $user->verification = $verification;
  464. $user->mobile = $mobile;
  465. $user->save();
  466. Sms::flush($mobile, 'changemobile');
  467. $this->success('success',$this->userInfo('return'));
  468. }
  469. /**
  470. * 手机注册来的,绑定微信
  471. *
  472. * @ApiMethod (POST)
  473. * @param string $wechat_openid
  474. */
  475. public function bindopenid()
  476. {
  477. $wechat_openid = $this->request->request('wechat_openid');
  478. if (!$wechat_openid) {
  479. $this->error(__('Invalid parameters'));
  480. }
  481. if(!empty($this->auth->wechat_openid)){
  482. $this->error('已经绑定了微信号');
  483. }
  484. $otherUserWhere['wechat_openid'] = $wechat_openid;
  485. $otherUserWhere['id'] = ['neq',$this->auth->id];
  486. if (\app\common\model\User::where($otherUserWhere)->find()) {
  487. $this->error('该微信号已被其他用户绑定');
  488. }
  489. $user = $this->auth->getUser();
  490. $user->wechat_openid = $wechat_openid;
  491. $user->save();
  492. $this->success('success',$this->userInfo('return'));
  493. }
  494. /**
  495. * 重置密码
  496. *
  497. * @ApiMethod (POST)
  498. * @param string $mobile 手机号
  499. * @param string $newpassword 新密码
  500. * @param string $captcha 验证码
  501. */
  502. public function resetpwd()
  503. {
  504. //$type = input("type");
  505. $type = 'mobile';
  506. $mobile = input("mobile");
  507. $email = input("email");
  508. $newpassword = input("newpassword");
  509. $captcha = input("captcha");
  510. if (!$newpassword || !$captcha) {
  511. $this->error(__('Invalid parameters'));
  512. }
  513. if ($type == 'mobile') {
  514. if (!Validate::regex($mobile, "^1\d{10}$")) {
  515. $this->error(__('Mobile is incorrect'));
  516. }
  517. $user = \app\common\model\User::getByMobile($mobile);
  518. if (!$user) {
  519. $this->error(__('User not found'));
  520. }
  521. $ret = Sms::check($mobile, $captcha, 'resetpwd');
  522. if (!$ret) {
  523. $this->error(__('Captcha is incorrect'));
  524. }
  525. Sms::flush($mobile, 'resetpwd');
  526. } else {
  527. if (!Validate::is($email, "email")) {
  528. $this->error(__('Email is incorrect'));
  529. }
  530. $user = \app\common\model\User::getByEmail($email);
  531. if (!$user) {
  532. $this->error(__('User not found'));
  533. }
  534. $ret = Ems::check($email, $captcha, 'resetpwd');
  535. if (!$ret) {
  536. $this->error(__('Captcha is incorrect'));
  537. }
  538. Ems::flush($email, 'resetpwd');
  539. }
  540. //模拟一次登录
  541. $this->auth->direct($user->id);
  542. $ret = $this->auth->changepwd($newpassword, '', true);
  543. if ($ret) {
  544. $this->success(__('Reset password successful'));
  545. } else {
  546. $this->error($this->auth->getError());
  547. }
  548. }
  549. /**
  550. * 修改密码
  551. *
  552. * @ApiMethod (POST)
  553. * @param string $newpassword 新密码
  554. * @param string $oldpassword 旧密码
  555. */
  556. public function changepwd(){
  557. $newpassword = input('newpassword');
  558. $oldpassword = input('oldpassword','');
  559. if (!$newpassword) {
  560. $this->error(__('Invalid parameters'));
  561. }
  562. if($this->auth->password && empty($oldpassword)){
  563. $this->error('原密码必填');
  564. }
  565. if(empty($this->auth->password)){
  566. $ret = $this->auth->changepwd($newpassword, '', true);
  567. }else{
  568. $ret = $this->auth->changepwd($newpassword,$oldpassword,false);
  569. }
  570. if ($ret) {
  571. $this->success('设置密码成功');
  572. } else {
  573. $this->error($this->auth->getError());
  574. }
  575. }
  576. /**
  577. * 记录当前登陆的设备ID,设备信息,IP等
  578. */
  579. public function changeDeviceIp()
  580. {
  581. // 接口防并发
  582. if (!$this->apiLimit(1, 5000)) {
  583. return ;
  584. }
  585. $user = $this->auth->getUser();
  586. $ip = request()->ip();
  587. $deviceId = $this->request->request('device_id','');
  588. $phoneModel = $this->request->request('phone_model','');
  589. $brand = $this->request->request('brand','');
  590. $apiVersion = $this->request->request('api_version','');
  591. $deviceOs = $this->request->request('device_os','');
  592. if ($ip !== $user->loginip){
  593. $update = [];
  594. $update['id'] = $user->id;
  595. $update['loginip'] = $ip;
  596. \app\common\model\User::update($update);
  597. }
  598. $userDeviceInfo = UserDeviceInfo::get(['user_id'=>$user->u_id]);
  599. if (empty($userDeviceInfo)){
  600. $userDeviceInfo = new UserDeviceInfo();
  601. $userDeviceInfo->user_id = $user->u_id;
  602. }
  603. $userDeviceInfo->device_os = $deviceOs;
  604. $userDeviceInfo->device_id = $deviceId;
  605. $userDeviceInfo->phone_model = $phoneModel;
  606. $userDeviceInfo->brand = $brand;
  607. $userDeviceInfo->api_version = $apiVersion;
  608. $userDeviceInfo->save();
  609. //首页接口调用,这里不反回信息
  610. // $this->success("更新成功!");
  611. }
  612. //假注销
  613. public function cancleUser(){
  614. if (!$this->request->isPost()) {
  615. $this->error(__('Invalid parameters'));
  616. }
  617. //退出im
  618. // $tenIm = new Tenim();
  619. // $tenIm->loginoutim($this->auth->id);
  620. Db::name('user')->where('id',$this->auth->id)->update(['status'=>-1]);
  621. $this->auth->logout();
  622. $this->success('注销成功');
  623. }
  624. //公众号获取openid
  625. public function getUserOpenid_gzh(){
  626. $configValue = Service::getConfig('wechat');
  627. $wechat = new Wechat($configValue['app_id'],$configValue['app_secret']);
  628. $rs = $wechat->getOpenid();
  629. $this->success('success',$rs);
  630. }
  631. /**
  632. * 微信内H5-JSAPI支付
  633. */
  634. public function jssdkBuildConfig() {
  635. $url = $this->request->request("url");
  636. $configValue = Service::getConfig('wechat');
  637. $wechat = new Wechat($configValue['app_id'],$configValue['app_secret']);
  638. $sign = $wechat->getSignPackage(urldecode($url));
  639. $this->success("获取成功!",$sign);
  640. }
  641. }