OpenauthController.php 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437
  1. <?php
  2. namespace app\controllers;
  3. use app\common\components\SiteUrl;
  4. use Yii;
  5. use app\common\controllers\FController;
  6. use app\common\helpers\Identify;
  7. use app\common\helpers\Cookie;
  8. use app\components\OpenAuth\OpenAuth;
  9. use app\modules\ucenter\models\UserOpenAuth;
  10. use app\modules\ucenter\models\User;
  11. use app\common\components\Wallet;
  12. class OpenauthController extends FController
  13. {
  14. public $enableCsrfValidation = false;
  15. public $openAuth;
  16. public $ucenterRoute;
  17. public function init()
  18. {
  19. parent::init();
  20. $this->openAuth = new OpenAuth();
  21. }
  22. //获取微博登陆地址
  23. public function actionWbloginurl()
  24. {
  25. return $this->openAuth->getWbLoginUrl();
  26. }
  27. //获取微信登录地址
  28. public function actionWxloginurl()
  29. {
  30. return $this->openAuth->getWxLoginUrl();
  31. }
  32. //获取钉钉登录地址
  33. public function actionDdloginurl()
  34. {
  35. return $this->openAuth->getDdLoginUrl();
  36. }
  37. //获取QQ登录地址
  38. public function actionQqloginurl()
  39. {
  40. return $this->openAuth->getQqLoginUrl();
  41. }
  42. //微信登录后回调
  43. public function actionWxcallback()
  44. {
  45. return $this->_callback('wx','wx');
  46. }
  47. //QQ登录后回调
  48. public function actionQqcallback()
  49. {
  50. return $this->_callback('qq','qq');
  51. }
  52. //钉钉登录后回调
  53. public function actionDingcallback()
  54. {
  55. return $this->_callback('dd','dd');
  56. }
  57. //公众号消息通知开启二维码
  58. public function actionMpmsg()
  59. {
  60. return $this->openAuth->mpMsg();
  61. }
  62. //公众号登录调用
  63. public function actionMplogin()
  64. {
  65. return $this->openAuth->mpLogin();
  66. }
  67. //公众号关注二维码
  68. public function actionMpsub()
  69. {
  70. $this->openAuth->mpSub();
  71. }
  72. //微信扫码免费下载文档二维码
  73. public function actionFreedowncode()
  74. {
  75. $this->openAuth->freeDowncode();
  76. }
  77. private function _callback($app,$unionapp)
  78. {
  79. $authFunction = $app.'Auth';
  80. //授权成功以后
  81. if($this->openAuth->$authFunction()&&$this->openAuth->checkAppLogin($app))
  82. {
  83. $userInfo = $this->openAuth->getAppUserInfo($app);
  84. if(Yii::$app->params['openauth']['openUnionId']==1&&$unionapp=='wx')
  85. {
  86. if(empty($userInfo['unionid']))
  87. {
  88. exit('请在微信开放平台绑定该应用');
  89. }
  90. $bindModel = UserOpenAuth::find()->where("app_unionname='".$unionapp."' and app_unionid='".$userInfo['unionid']."'")->orderBy(['id'=>SORT_DESC])->one();
  91. }
  92. else
  93. {
  94. $bindModel = UserOpenAuth::find()->where("app='".$app."' and app_uid='".$userInfo['uid']."'")->orderBy(['id'=>SORT_DESC])->one();
  95. }
  96. //
  97. $justBindUser = Identify::hasLogined()?true:false;
  98. if(empty($bindModel))//如果没有绑定记录
  99. {
  100. $bindModel = new UserOpenAuth;
  101. $bindModel->app = $app;
  102. $bindModel->app_uid = $userInfo['uid'];
  103. $bindModel->user_info = base64_encode(array2string($userInfo));
  104. $bindModel->user_id = Identify::hasLogined()?Identify::getUserInfo(NULL,'user_id'):0;
  105. $bindModel->hash = md5($bindModel->app.$userInfo['uid']);
  106. $bindModel->app_unionid = $userInfo['unionid']?$userInfo['unionid']:'';
  107. $bindModel->app_unionname = $unionapp;
  108. $bindModel->bind_time = TIMESTAMP;
  109. if($bindModel->save())
  110. {
  111. //如果不是绑定操作,生成一个新用户
  112. if(empty($bindModel->user_id))
  113. {
  114. $newUser = Identify::createUser($bindModel,getSysconfigValue('default_user_model'));
  115. $bindModel->user_id = $newUser->user_id;
  116. $bindModel->save();
  117. }
  118. }
  119. else
  120. {
  121. exit('登录失败!'.$bindModel->returnFirstError());
  122. }
  123. }
  124. //Cookie::setCookie(Yii::$app->params['authHashName'],$bindModel->hash);
  125. if($this->_doLogin($bindModel)){
  126. $referPage = Cookie::getCookie(Yii::$app->params['referPageName']);
  127. if(empty($referPage))
  128. {
  129. $referPage = $this->homeUrl;
  130. }
  131. $this->showMessage(array('class'=>'success','message'=>$justBindUser?'绑定成功':'登录成功','url'=>$justBindUser?rtrim(SiteUrl::myaccount(3),'/').'/':$referPage,'time'=>2000));
  132. }
  133. else
  134. {
  135. exit('登录失败!');//没有关联的用户账号,可以设置一个绑定账号的页面
  136. }
  137. }
  138. }
  139. //最终登录记录本地库的身份信息
  140. private function _doLogin($bindModel)
  141. {
  142. if(!empty($bindModel->user_id))
  143. {
  144. if(Identify::hasLogined())
  145. {
  146. $user_id = Identify::getUserInfo(NULL,'user_id');
  147. if($bindModel->user_id>0&&$user_id!=$bindModel->user_id)
  148. {
  149. exit($this->openAuth->getAppName($bindModel->app).'已有绑定用户,无法绑定当前用户');
  150. }
  151. return true;
  152. }
  153. else
  154. {
  155. $user = User::findOne($bindModel->user_id);
  156. $user->generateAccessToken($user,REQUEST_FROM);
  157. Identify::doLogin($user);
  158. return true;
  159. }
  160. }
  161. else
  162. {
  163. if(Identify::hasLogined())
  164. {
  165. $user_id = Identify::getUserInfo(NULL,'user_id');
  166. $bindModel->user_id = $user_id;
  167. $bindModel->save();
  168. return true;
  169. }
  170. else
  171. {
  172. //对异常情况进行纠正
  173. $newUser = Identify::createUser($bindModel,getSysconfigValue('default_user_model'));
  174. $bindModel->user_id = $newUser->user_id;
  175. $bindModel->save();
  176. $newUser->generateAccessToken($newUser,REQUEST_FROM);
  177. Identify::doLogin($newUser);
  178. return true;
  179. }
  180. }
  181. }
  182. //退出
  183. public function actionLogout()
  184. {
  185. $this->openAuth->logout();
  186. }
  187. //微信公众号消息通知的轮询
  188. public function actionFetchmpmsg()
  189. {
  190. $app = 'mpmsg';
  191. //防止恶意攻击
  192. $fromUrl = Yii::$app->request->getReferrer();
  193. if(strpos($fromUrl,APP_URL)===false||empty($fromUrl))
  194. {
  195. exit;
  196. }
  197. $scene_id = Yii::$app->request->get('scene_id');
  198. if(!empty($scene_id))
  199. {
  200. $userOpenAuth = UserOpenAuth::find()->where("scene_id='$scene_id' and app='".$app."'")->one();
  201. if($userOpenAuth)
  202. {
  203. if(Identify::hasLogined())
  204. {
  205. if(!$userOpenAuth->user_id)
  206. {
  207. $userOpenAuth->user_id = Identify::getUserInfo(null,'user_id');
  208. $userOpenAuth->save();
  209. //积分奖励
  210. $pointConfigResult = Yii::$app->db->createCommand("select * from {{%config}} where name='point'")->queryOne();
  211. $pointConfig = string2array($pointConfigResult['value']);
  212. if($pointConfig['bindmpmsg_prize']>0)
  213. {
  214. Wallet::pointChange($userOpenAuth->user_id,$pointConfig['bindmpmsg_prize'],'绑定微信消息',1,'point');
  215. }
  216. echo_json(array('error'=>0,'msg'=>'绑定成功','data'=>['scene_id'=>$scene_id]));
  217. }
  218. else
  219. {
  220. if($userOpenAuth->user_id==Identify::getUserInfo(null,'user_id'))
  221. {
  222. echo_json(array('error'=>0,'msg'=>'绑定成功','data'=>['scene_id'=>$scene_id]));
  223. }
  224. else
  225. {
  226. echo_json(array('error'=>1,'msg'=>'绑定失败,已绑定其它账号'));
  227. }
  228. }
  229. }
  230. else
  231. {
  232. echo_json(array('error'=>1,'msg'=>'绑定失败'));
  233. }
  234. }
  235. }
  236. else
  237. {
  238. echo_json(array('error'=>1,'msg'=>'系统错误'));
  239. }
  240. }
  241. //微信公众号登录的轮询
  242. public function actionFetchopenauth()
  243. {
  244. $app_unionname = 'wx';
  245. $app = 'mp';
  246. //防止恶意攻击
  247. $fromUrl = Yii::$app->request->getReferrer();
  248. if(strpos($fromUrl,APP_URL)===false||empty($fromUrl))
  249. {
  250. exit;
  251. }
  252. $scene_id = Yii::$app->request->get('scene_id');
  253. $refer_page = Cookie::getCookie(Yii::$app->params['referPageName']);
  254. if(!empty($scene_id))
  255. {
  256. if(Yii::$app->params['openauth']['openUnionId']==1)
  257. {
  258. $userOpenAuth = UserOpenAuth::find()->where("scene_id='$scene_id' and app_uid!='0' and app_unionname='".$app_unionname."'")->one();
  259. }
  260. else
  261. {
  262. $userOpenAuth = UserOpenAuth::find()->where("scene_id='$scene_id' and app_uid!='0' and app='".$app."'")->one();
  263. }
  264. if($userOpenAuth)
  265. {
  266. //Cookie::setCookie(Yii::$app->params['authHashName'],$userOpenAuth->hash);
  267. if(!$userOpenAuth->user_id)
  268. {
  269. if(Identify::hasLogined())
  270. {
  271. $userOpenAuth->user_id = Identify::getUserInfo(null,'user_id');
  272. $userOpenAuth->save();
  273. echo_json(array('error'=>0,'msg'=>'绑定成功','data'=>['scene_id'=>$scene_id,'refer_page'=>$refer_page?$refer_page:SiteUrl::ucenter()]));
  274. }
  275. else
  276. {
  277. //生成新用户
  278. $checkUserInfo = string2array(base64_decode($userOpenAuth->user_info));
  279. //判断用户资料是否写入
  280. if($checkUserInfo['nick_name'])
  281. {
  282. $newUser = Identify::createUser($userOpenAuth,getSysconfigValue('default_user_model'));
  283. if($newUser)
  284. {
  285. $userOpenAuth->user_id = $newUser->user_id;
  286. $userOpenAuth->save();
  287. ob_clean();
  288. $newUser->generateAccessToken($newUser,REQUEST_FROM);
  289. if(Identify::doLogin($newUser))
  290. {
  291. echo_json(array('error'=>0,'msg'=>'登录成功','data'=>['scene_id'=>$scene_id,'refer_page'=>$refer_page?$refer_page:APP_URL]));
  292. }
  293. }
  294. else
  295. {
  296. echo_json(array('error'=>1,'msg'=>'登录失败'));
  297. }
  298. }
  299. }
  300. }
  301. else
  302. {
  303. if(!Identify::hasLogined())
  304. {
  305. //生成新用户
  306. $checkUserInfo = string2array(base64_decode($userOpenAuth->user_info));
  307. //判断用户资料是否写入
  308. if($checkUserInfo['nick_name'])
  309. {
  310. $user = User::find()->where("user_id='".$userOpenAuth->user_id."'")->one();
  311. if($user->is_lock)
  312. {
  313. echo_json(array('error'=>1,'msg'=>'你的账号已被锁定,请联系管理员'));
  314. }
  315. if($user->disabled)
  316. {
  317. echo_json(array('error'=>1,'msg'=>'你的账号已被禁用,请联系管理员'));
  318. }
  319. if($user->is_delete)
  320. {
  321. echo_json(array('error'=>1,'msg'=>'你的账号已被永久禁用,请联系管理员'));
  322. }
  323. ob_clean();
  324. $user->generateAccessToken($user,REQUEST_FROM);
  325. if(Identify::doLogin($user))
  326. {
  327. echo json_encode(array('error'=>0,'msg'=>'登录成功','data'=>['scene_id'=>$scene_id,'refer_page'=>$refer_page?$refer_page:APP_URL]));
  328. }
  329. }
  330. }
  331. else
  332. {
  333. if(Identify::hasLogined()&&Identify::getUserInfo(NULL,'user_id')!=$userOpenAuth->user_id)
  334. {
  335. echo_json(array('error'=>1,'msg'=>$userOpenAuth->app.'已有绑定用户,无法绑定当前用户'));
  336. }
  337. echo_json(array('error'=>0,'msg'=>'绑定成功','data'=>['scene_id'=>$scene_id,'refer_page'=>$refer_page?$refer_page:APP_URL]));
  338. }
  339. }
  340. }
  341. }
  342. else
  343. {
  344. echo_json(array('error'=>1,'msg'=>'系统错误'));
  345. }
  346. }
  347. //使用token登录
  348. public function actionAccesstokenlogin()
  349. {
  350. $token = safe_replace(Yii::$app->request->post(Yii::$app->params['access_token_name']));
  351. $tokenModel = \app\modules\ucenter\models\UserToken::find()->where("token='".$token."'")->orderBy(['id'=>SORT_DESC])->one();
  352. if(!empty($tokenModel))
  353. {
  354. if($tokenModel->create_time+Yii::$app->params['apiTokenExpire']<TIMESTAMP)
  355. {
  356. $result = array('error'=>1,'msg'=>'登录失败(失效凭据)');
  357. }
  358. else
  359. {
  360. $user = \app\modules\ucenter\models\User::find()->where("user_id=".$tokenModel->user_id)->one();
  361. Cookie::setCookie(Yii::$app->params['access_token_name'],$token);
  362. if(Yii::$app->request->post('rember'))$expire = TIMESTAMP+Yii::$app->params['remberExpire'];
  363. \app\common\helpers\Identify::doLogin($user,$expire);
  364. $refer_page = Cookie::getCookie(Yii::$app->params['referPageName']);
  365. if(empty($refer_page))$refer_page = '';
  366. $result = array('error'=>0,'msg'=>'恭喜您,登录成功','data'=>array('refer_page'=>$refer_page));
  367. }
  368. }
  369. else
  370. {
  371. $result = array('error'=>1,'msg'=>'登录失败(无效凭据)');
  372. }
  373. ob_clean();
  374. echo json_encode($result);
  375. }
  376. }