SysController.java 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325
  1. package com.qmth.distributed.print.api;
  2. import com.baomidou.mybatisplus.core.conditions.query.QueryWrapper;
  3. import com.qmth.boot.api.annotation.Aac;
  4. import com.qmth.boot.api.annotation.BOOL;
  5. import com.qmth.boot.api.constant.ApiConstant;
  6. import com.qmth.boot.api.exception.ApiException;
  7. import com.qmth.boot.core.enums.Platform;
  8. import com.qmth.boot.tools.signature.SignatureType;
  9. import com.qmth.distributed.print.business.bean.auth.AuthBean;
  10. import com.qmth.distributed.print.business.bean.auth.ExpireTimeBean;
  11. import com.qmth.distributed.print.business.bean.params.LoginParam;
  12. import com.qmth.distributed.print.business.bean.result.EditResult;
  13. import com.qmth.distributed.print.business.bean.result.LoginResult;
  14. import com.qmth.distributed.print.business.config.DictionaryConfig;
  15. import com.qmth.distributed.print.business.entity.*;
  16. import com.qmth.distributed.print.business.enums.DownloadFileEnum;
  17. import com.qmth.distributed.print.business.enums.RoleTypeEnum;
  18. import com.qmth.distributed.print.business.enums.UploadFileEnum;
  19. import com.qmth.distributed.print.business.service.*;
  20. import com.qmth.distributed.print.business.util.AuthUtil;
  21. import com.qmth.distributed.print.business.util.RedisUtil;
  22. import com.qmth.distributed.print.business.util.ServletUtil;
  23. import com.qmth.distributed.print.business.util.security.Md5Utils;
  24. import com.qmth.distributed.print.common.SignatureEntityTest;
  25. import com.qmth.distributed.print.common.contant.SystemConstant;
  26. import com.qmth.distributed.print.common.enums.ExceptionResultEnum;
  27. import com.qmth.distributed.print.common.util.Result;
  28. import com.qmth.distributed.print.common.util.ResultUtil;
  29. import com.qmth.distributed.print.common.util.SessionUtil;
  30. import io.swagger.annotations.*;
  31. import org.slf4j.Logger;
  32. import org.slf4j.LoggerFactory;
  33. import org.springframework.beans.factory.annotation.Autowired;
  34. import org.springframework.transaction.annotation.Transactional;
  35. import org.springframework.validation.BindingResult;
  36. import org.springframework.web.bind.annotation.*;
  37. import org.springframework.web.multipart.MultipartFile;
  38. import javax.annotation.Resource;
  39. import javax.validation.Valid;
  40. import java.security.NoSuchAlgorithmException;
  41. import java.util.*;
  42. import java.util.stream.Collectors;
  43. /**
  44. * @Date: 2021/3/30.
  45. */
  46. @Api(tags = "系统Controller")
  47. @RestController
  48. @RequestMapping(ApiConstant.DEFAULT_URI_PREFIX + "/${prefix.url.common}")
  49. @Aac(strict = BOOL.TRUE, platform = Platform.WEB)
  50. public class SysController {
  51. private final static Logger log = LoggerFactory.getLogger(SysController.class);
  52. @Autowired
  53. private SysUserService sysUserService;
  54. @Autowired
  55. private BasicVerifyCodeService basicVerifyCodeService;
  56. @Autowired
  57. private DictionaryConfig dictionaryConfig;
  58. @Resource
  59. CacheService cacheService;
  60. @Resource
  61. TBSessionService tbSessionService;
  62. @Resource
  63. RedisUtil redisUtil;
  64. @Resource
  65. CommonService commonService;
  66. @Resource
  67. TBTaskService tbTaskService;
  68. @Resource
  69. BasicAttachmentService basicAttachmentService;
  70. @Autowired
  71. private SysConfigService sysConfigService;
  72. /**
  73. * 登录
  74. *
  75. * @param login
  76. * @return
  77. */
  78. @ApiOperation(value = "登录")
  79. @RequestMapping(value = "/login", method = RequestMethod.POST)
  80. @ApiResponses({@ApiResponse(code = 200, message = "用户信息", response = LoginResult.class)})
  81. @Aac(auth = BOOL.FALSE)
  82. public Result login(@ApiParam(value = "用户信息", required = true) @Valid @RequestBody LoginParam login, BindingResult bindingResult) throws NoSuchAlgorithmException {
  83. if (bindingResult.hasErrors()) {
  84. return ResultUtil.error(bindingResult.getAllErrors().get(0).getDefaultMessage());
  85. }
  86. BasicSchool basicSchool = null;
  87. if (!Objects.equals(login.getSchoolCode().toUpperCase(), RoleTypeEnum.ADMIN.name())) {
  88. basicSchool = cacheService.schoolCache(login.getSchoolCode());
  89. if (Objects.isNull(basicSchool)) {
  90. throw ExceptionResultEnum.SCHOOL_NO_DATA.exception();
  91. }
  92. if (Objects.nonNull(basicSchool.getEnable()) && !basicSchool.getEnable()) {
  93. throw ExceptionResultEnum.SCHOOL_ENABLE.exception();
  94. }
  95. }
  96. QueryWrapper<SysUser> wrapper = new QueryWrapper<>();
  97. wrapper.lambda().eq(SysUser::getLoginName, login.getLoginName());
  98. if (!Objects.equals(login.getSchoolCode().toUpperCase(), RoleTypeEnum.ADMIN.name())) {
  99. wrapper.lambda().eq(SysUser::getSchoolId, basicSchool.getId());
  100. }
  101. List<SysUser> userList = sysUserService.list(wrapper);
  102. //用户不存在
  103. if (Objects.isNull(userList) || userList.size() == 0) {
  104. throw ExceptionResultEnum.USER_NO_DATA.exception();
  105. }
  106. if (Objects.equals(login.getSchoolCode().toUpperCase(), RoleTypeEnum.ADMIN.name())) {
  107. userList.forEach(o -> {
  108. AuthBean authBean = commonService.getUserAuth(o.getId());
  109. if (Objects.nonNull(authBean) && Objects.nonNull(authBean.getRoleList()) && authBean.getRoleList().size() > 0) {
  110. Set<RoleTypeEnum> roleType = authBean.getRoleList().stream().map(s -> s.getType()).collect(Collectors.toSet());
  111. if (!roleType.contains(RoleTypeEnum.ADMIN)) {
  112. throw ExceptionResultEnum.ERROR.exception("学校代码为admin只允许超级管理员登录");
  113. }
  114. }
  115. });
  116. }
  117. if (userList.size() > 1) {
  118. throw ExceptionResultEnum.ERROR.exception("查询的用户有多条");
  119. }
  120. SysUser sysUser = userList.get(0);
  121. if (Objects.nonNull(sysUser.getSchoolId()) && sysUser.getSchoolId().longValue() != basicSchool.getId().longValue()) {
  122. throw ExceptionResultEnum.ERROR.exception("用户学校不匹配");
  123. }
  124. //密码不正确
  125. if (!Objects.equals(login.getPassword(), sysUser.getPassword())) {
  126. throw ExceptionResultEnum.PASSWORD_ERROR.exception();
  127. }
  128. //停用
  129. if (!sysUser.getEnable()) {
  130. throw ExceptionResultEnum.USER_ENABLE.exception();
  131. }
  132. // 校验验证码
  133. SysConfig value = sysConfigService.getByKey("sys.code.enable");
  134. if (Objects.nonNull(value) && value.getConfigValue().equals("true")) {
  135. String code = login.getCode();
  136. if (Objects.isNull(code)) {
  137. throw ExceptionResultEnum.ERROR.exception("验证码为空");
  138. }
  139. if (!dictionaryConfig.smsDomain().getSmsNormalCode().equals(code)) {
  140. QueryWrapper<BasicVerifyCode> codeWrapper = new QueryWrapper<>();
  141. codeWrapper.lambda().eq(BasicVerifyCode::getMobileNumber, sysUser.getMobileNumber()).eq(BasicVerifyCode::getUserId, sysUser.getId());
  142. BasicVerifyCode accessControl = basicVerifyCodeService.getOne(codeWrapper);
  143. if (accessControl == null || (accessControl != null && !accessControl.getVerifyCode().equals(code))) {
  144. throw ExceptionResultEnum.ERROR.exception("短信验证码错误,请仔细核对后再次输入");
  145. }
  146. if (new Date(accessControl.getExpireTime()).before(new Date())) {
  147. throw ExceptionResultEnum.ERROR.exception("短信验证码已过期");
  148. }
  149. }
  150. }
  151. Platform platform = ServletUtil.getRequestPlatform();
  152. String deviceId = ServletUtil.getRequestDeviceId();
  153. //添加用户鉴权缓存
  154. AuthBean authBean = cacheService.userAuthCache(sysUser.getId());
  155. if (Objects.isNull(authBean)) {
  156. throw ExceptionResultEnum.ROLE_ENABLE_AUTHORIZATION.exception();
  157. }
  158. //生成token
  159. String token = SystemConstant.getUuid();
  160. cacheService.userCache(sysUser.getId());
  161. //添加用户会话缓存
  162. Set<RoleTypeEnum> roleType = authBean.getRoleList().stream().map(s -> s.getType()).collect(Collectors.toSet());
  163. String sessionId = SessionUtil.digest(sysUser.getId(), Math.abs(roleType.toString().hashCode()), platform.name());
  164. //TODO 测试用
  165. String test = SignatureEntityTest.build(SignatureType.TOKEN, sessionId, token);
  166. ExpireTimeBean expireTime = AuthUtil.getExpireTime(platform);
  167. TBSession tbSession = new TBSession(sessionId, String.valueOf(sysUser.getId()), roleType.toString(),
  168. platform.name(), platform.name(), deviceId, ServletUtil.getRequest().getLocalAddr(), token,
  169. expireTime.getDate().getTime());
  170. tbSessionService.saveOrUpdate(tbSession);
  171. redisUtil.setUserSession(sessionId, tbSession, expireTime.getExpireSeconds());
  172. LoginResult loginResult = new LoginResult(sysUser, sessionId, test, roleType);
  173. loginResult.setSchoolInfo(Objects.nonNull(authBean.getSchool()) ? loginResult.new SchoolNativeBean(authBean.getSchool()) : null);
  174. loginResult.setOrgInfo(Objects.nonNull(authBean.getOrg()) ? loginResult.new OrgNativeBean(authBean.getOrg()) : null);
  175. return ResultUtil.ok(loginResult);
  176. }
  177. /**
  178. * 登出
  179. *
  180. * @return
  181. */
  182. @ApiOperation(value = "登出")
  183. @RequestMapping(value = "/logout", method = RequestMethod.POST)
  184. @ApiResponses({@ApiResponse(code = 200, message = "返回信息", response = EditResult.class)})
  185. public Result logout() {
  186. SysUser sysUser = (SysUser) ServletUtil.getRequestUser();
  187. TBSession tbSession = (TBSession) ServletUtil.getRequestSession();
  188. AuthBean authBean = cacheService.userAuthCache(sysUser.getId());
  189. if (Objects.isNull(authBean)) {
  190. throw ExceptionResultEnum.NOT_LOGIN.exception();
  191. }
  192. tbSessionService.removeById(tbSession.getId());
  193. redisUtil.deleteUserSession(tbSession.getId());
  194. cacheService.removeUserCache(sysUser.getId());
  195. cacheService.removeUserAuthCache(sysUser.getId());
  196. return ResultUtil.ok(new EditResult(sysUser.getId()));
  197. }
  198. /**
  199. * 发送验证码
  200. *
  201. * @param loginParam
  202. * @return
  203. */
  204. @ApiOperation(value = "发送验证码")
  205. @RequestMapping(value = "/getVerifyCode", method = RequestMethod.POST)
  206. public Object getverifyCode(@RequestBody LoginParam loginParam) {
  207. String loginName = loginParam.getLoginName();
  208. QueryWrapper<SysUser> wrapper = new QueryWrapper<>();
  209. wrapper.lambda().eq(SysUser::getLoginName, loginName);
  210. SysUser user = sysUserService.getOne(wrapper);
  211. //用户不存在
  212. if (Objects.isNull(user)) {
  213. throw ExceptionResultEnum.ERROR.exception("用户不存在");
  214. }
  215. String password = Md5Utils.toMd5Hex(loginParam.getPassword());
  216. if (password.equals(user.getPassword())) {
  217. throw ExceptionResultEnum.ERROR.exception("密码错误");
  218. }
  219. String mobileNumber = user.getMobileNumber();
  220. if (Objects.isNull(mobileNumber)) {
  221. throw ExceptionResultEnum.ERROR.exception("用户未绑定手机号码");
  222. }
  223. basicVerifyCodeService.sendVeirfyCode(mobileNumber, user.getId());
  224. return ResultUtil.ok(true);
  225. }
  226. @ApiOperation(value = "根据机构代码查询机构信息接口")
  227. @RequestMapping(value = "/school/query_by_school_code", method = RequestMethod.POST)
  228. @ApiResponses({@ApiResponse(code = 200, message = "学校信息", response = EditResult.class)})
  229. @Aac(auth = BOOL.FALSE)
  230. public Result queryBySchoolCode(@ApiParam(value = "机构code", required = true) @RequestParam String code) {
  231. // HtmlToPdfUtil.convert("/Users/king/Downloads/测试附件/3120ee49668e4bf48fd8c161a2abb73b的副本.html", "/Users/king/Downloads/测试附件/new_test1.pdf", PageSizeEnum.A3);
  232. if (!Objects.equals(code.toUpperCase(), RoleTypeEnum.ADMIN.name())) {
  233. BasicSchool basicSchool = cacheService.schoolCache(code);
  234. if (Objects.isNull(basicSchool)) {
  235. throw ExceptionResultEnum.SCHOOL_NO_DATA.exception();
  236. }
  237. return ResultUtil.ok(Collections.singletonMap(SystemConstant.LOGO, basicSchool.getLogo()));
  238. } else {
  239. return ResultUtil.ok(Collections.singletonMap(SystemConstant.LOGO, dictionaryConfig.sysDomain().getAdminLogoUrl()));
  240. }
  241. }
  242. @ApiOperation(value = "文件上传接口")
  243. @RequestMapping(value = "/file/upload", method = RequestMethod.POST)
  244. @Transactional
  245. @ApiResponses({@ApiResponse(code = 200, message = "返回信息", response = EditResult.class)})
  246. public Result fileUpload(@ApiParam(value = "上传文件", required = true) @RequestParam MultipartFile file,
  247. @ApiParam(value = "上传文件类型", required = true) @RequestParam UploadFileEnum type) {
  248. BasicAttachment basicAttachment = null;
  249. try {
  250. basicAttachment = basicAttachmentService.saveAttachment(file, ServletUtil.getRequestMd5(), type);
  251. if (Objects.isNull(basicAttachment)) {
  252. throw ExceptionResultEnum.ATTACHMENT_ERROR.exception();
  253. }
  254. } catch (Exception e) {
  255. log.error("请求出错", e);
  256. if (Objects.nonNull(basicAttachment)) {
  257. basicAttachmentService.deleteAttachment(basicAttachment);
  258. }
  259. if (e instanceof ApiException) {
  260. ResultUtil.error((ApiException) e, e.getMessage());
  261. } else {
  262. ResultUtil.error(e.getMessage());
  263. }
  264. }
  265. return ResultUtil.ok(new EditResult(basicAttachment.getId(), commonService.filePreview(basicAttachment.getPath()), basicAttachment.getPages()));
  266. }
  267. @ApiOperation(value = "文件下载接口")
  268. @RequestMapping(value = "/file/download", method = RequestMethod.POST)
  269. @ApiResponses({@ApiResponse(code = 200, message = "返回信息", response = EditResult.class)})
  270. public Result fileDownload(@ApiParam(value = "任务id", required = true) @RequestParam String id,
  271. @ApiParam(value = "下载文件类型", required = true) @RequestParam DownloadFileEnum type) {
  272. TBTask tbTask = tbTaskService.getById(Long.parseLong(id));
  273. if (Objects.isNull(tbTask)) {
  274. throw ExceptionResultEnum.TASK_NO_DATA.exception();
  275. }
  276. String path = null;
  277. switch (type.ordinal()) {
  278. case 0:
  279. path = tbTask.getImportFilePath();
  280. break;
  281. case 1:
  282. path = tbTask.getReportFilePath();
  283. break;
  284. default:
  285. path = tbTask.getResultFilePath();
  286. break;
  287. }
  288. if (Objects.isNull(path)) {
  289. throw ExceptionResultEnum.PATH_NO_DATA.exception();
  290. }
  291. return ResultUtil.ok(new EditResult(commonService.filePreview(path)));
  292. }
  293. @ApiOperation(value = "文件预览接口")
  294. @RequestMapping(value = "/file/preview", method = RequestMethod.POST)
  295. @ApiResponses({@ApiResponse(code = 200, message = "返回信息", response = EditResult.class)})
  296. public Result filePreview(@ApiParam(value = "附件id", required = true) @RequestParam String id) {
  297. BasicAttachment basicAttachment = basicAttachmentService.getById(Long.parseLong(id));
  298. return ResultUtil.ok(new EditResult(commonService.filePreview(basicAttachment.getPath())));
  299. }
  300. }