|
- <?php
- namespace app\admin\controller;
- use app\BaseController;
- use app\common\model\base\menu\Menurequest;
- use app\common\model\base\user\Token;
- use app\common\model\base\org\Org;
- use app\common\model\base\org\OrgRole;
- use app\common\model\base\user\User;
- use app\common\model\base\user\UserRole;
- use app\common\model\base\user\Wxauth;
- use think\facade\Cache;
- class Base extends BaseController
- {
-
- protected $userinfo;
- protected $org;
-
- protected $noNeedLogin = [];
-
- protected $noNeedAuth = [];
-
- protected $noNeedValidate = [];
- protected $debug = false;
- public function initialize()
- {
- parent::initialize();
- $this->token = $_SERVER["HTTP_AUTHORIZATION"] ?? $_SERVER['HTTP_TOKEN'] ?? $this->request->param('token');
- $this->controller = $this->app->request->controller(true);
- $this->action = strtoupper($this->app->request->action(true));
- $this->noNeedLogin = array_map('strtoupper', $this->noNeedLogin);
-
- $this->noNeedAuth = array_map('strtoupper', array_merge($this->noNeedAuth, $this->noNeedLogin));
- $this->checkLogin();
-
- $sysValidate = cache('develop_validate');
- if (empty($sysValidate)) {
- $sysValidate = sysconfig('develop.validate');
- cache('develop_validate', $sysValidate, 86400);
- }
- $this->noNeedValidate = array_map('strtoupper', $this->noNeedValidate);
- if ($sysValidate == 1 && !in_array(strtoupper($this->action), $this->noNeedValidate)) {
- $this->checkValidate();
- }
- }
-
- private function checkLogin()
- {
-
- if (!in_array($this->action, $this->noNeedLogin)) {
- $checkTokenRes = $this->checkToken($this->token);
- if ($checkTokenRes['code'] != 1) {
- throw new \Exception($checkTokenRes['msg'], 2);
- } else {
- $this->userinfo = $checkTokenRes['data'];
- $this->org = null;
- }
-
- if (!$this->debug) {
- $this->checkAuth();
- }
- }
- }
-
- protected function checkAuth()
- {
- if (empty($this->userinfo)) {
- throw new \Exception("请先登录", 2);
- }
- if (!IsWxApplet() && !in_array($this->action, $this->noNeedAuth)) {
- $action = strtolower("/" . $this->controller . "/" . $this->action);
- $menu_request = Menurequest::where('path', $action)->find();
- if($menu_request){
- if (empty($list)) {
- $userid = $this->userinfo['user_id'] ?? 0;
- $list = User::getUserRole($userid,"base",$this->token);
- if (!isset($list[$action])) {
- throw new \Exception("没有权限", 2);
- }
- }
- }
- }
- }
-
- protected function checkToken($token = "")
- {
- $tokenModel = new Token;
-
- if (!$tokenModel->checktoken($token)) {
- return Result(-1, "登录失效,请重新登录");
- }
- $user = $tokenModel->tokenUser($token);
- if (!$user) {
- return Result(0, "未找到用户");
- } elseif ($user['status'] == 2) {
- return Result(0, "您的帐号已被禁用,请联系管理员");
- } else {
- return Result(1, "验证成功", $user);
- }
- }
-
- protected function checkValidate()
- {
- $data = $this->request->param();
- $controller = $this->app->request->controller();
- $action = $this->app->request->action();
- $validatePath = "app\\admin\\validate\\";
- if (strtolower($action) == 'doedit') {
- $controllerStr = implode('\\', explode('.', $controller));
- $validatePath .= $controllerStr;
- if (class_exists($validatePath)) {
- $check = $this->validate($data, $validatePath);
-
- if (true !== $check) {
- throw new \Exception($check, 2);
- }
- } else {
- throw new \Exception("验证器" . $controller . "不存在", 2);
- }
- }
- }
-
- protected function getClientID()
- {
- return md5($_SERVER['HTTP_USER_AGENT'] . GetIP());
- }
-
- protected function captcha()
- {
- $img = new \image\Image;
- $code = substr(str_shuffle('ABCDEFGHJKLMNPQRSTUVWXYZabcdefghjklmnpqrstuvwxyz123456789'), mt_rand(1, 50), 4);
- cache('captcha_code' . $this->getClientID(), $code, 300);
- return $img::getAuthImage2($code);
- }
-
- protected function captcha_check($code): bool
- {
- $cCode = cache('captcha_code' . $this->getClientID());
- return strtolower(trim($code)) == strtolower($cCode);
- }
- }
|