AuthController.java 7.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236
  1. package org.dromara.web.controller;
  2. import cn.dev33.satoken.annotation.SaIgnore;
  3. import cn.hutool.core.collection.CollUtil;
  4. import cn.hutool.core.util.ObjectUtil;
  5. import jakarta.servlet.http.HttpServletRequest;
  6. import jakarta.validation.constraints.NotBlank;
  7. import lombok.RequiredArgsConstructor;
  8. import me.zhyd.oauth.model.AuthCallback;
  9. import me.zhyd.oauth.model.AuthResponse;
  10. import me.zhyd.oauth.model.AuthUser;
  11. import me.zhyd.oauth.request.AuthRequest;
  12. import me.zhyd.oauth.utils.AuthStateUtils;
  13. import org.dromara.common.core.domain.R;
  14. import org.dromara.common.core.domain.model.EmailLoginBody;
  15. import org.dromara.common.core.domain.model.LoginBody;
  16. import org.dromara.common.core.domain.model.RegisterBody;
  17. import org.dromara.common.core.domain.model.SmsLoginBody;
  18. import org.dromara.common.core.utils.MapstructUtils;
  19. import org.dromara.common.core.utils.StreamUtils;
  20. import org.dromara.common.core.utils.StringUtils;
  21. import org.dromara.common.social.config.properties.SocialLoginConfigProperties;
  22. import org.dromara.common.social.config.properties.SocialProperties;
  23. import org.dromara.common.social.utils.SocialUtils;
  24. import org.dromara.common.tenant.helper.TenantHelper;
  25. import org.dromara.system.domain.bo.SysTenantBo;
  26. import org.dromara.system.domain.vo.SysTenantVo;
  27. import org.dromara.system.service.ISocialUserService;
  28. import org.dromara.system.service.ISysConfigService;
  29. import org.dromara.system.service.ISysTenantService;
  30. import org.dromara.web.domain.vo.LoginTenantVo;
  31. import org.dromara.web.domain.vo.LoginVo;
  32. import org.dromara.web.domain.vo.TenantListVo;
  33. import org.dromara.web.service.SysLoginService;
  34. import org.dromara.web.service.SysRegisterService;
  35. import org.springframework.validation.annotation.Validated;
  36. import org.springframework.web.bind.annotation.*;
  37. import java.io.IOException;
  38. import java.net.URL;
  39. import java.util.List;
  40. /**
  41. * 认证
  42. *
  43. * @author Lion Li
  44. */
  45. @SaIgnore
  46. @Validated
  47. @RequiredArgsConstructor
  48. @RestController
  49. @RequestMapping("/auth")
  50. public class AuthController {
  51. private final SocialProperties socialProperties;
  52. private final SysLoginService loginService;
  53. private final SysRegisterService registerService;
  54. private final ISysConfigService configService;
  55. private final ISysTenantService tenantService;
  56. private final ISocialUserService socialUserService;
  57. /**
  58. * 登录方法
  59. *
  60. * @param body 登录信息
  61. * @return 结果
  62. */
  63. @PostMapping("/login")
  64. public R<LoginVo> login(@Validated @RequestBody LoginBody body) {
  65. LoginVo loginVo = new LoginVo();
  66. // 生成令牌
  67. String token = loginService.login(
  68. body.getTenantId(),
  69. body.getUsername(), body.getPassword(),
  70. body.getCode(), body.getUuid());
  71. loginVo.setToken(token);
  72. return R.ok(loginVo);
  73. }
  74. /**
  75. * 短信登录
  76. *
  77. * @param body 登录信息
  78. * @return 结果
  79. */
  80. @PostMapping("/smsLogin")
  81. public R<LoginVo> smsLogin(@Validated @RequestBody SmsLoginBody body) {
  82. LoginVo loginVo = new LoginVo();
  83. // 生成令牌
  84. String token = loginService.smsLogin(
  85. body.getTenantId(),
  86. body.getPhonenumber(),
  87. body.getSmsCode());
  88. loginVo.setToken(token);
  89. return R.ok(loginVo);
  90. }
  91. /**
  92. * 邮件登录
  93. *
  94. * @param body 登录信息
  95. * @return 结果
  96. */
  97. @PostMapping("/emailLogin")
  98. public R<LoginVo> emailLogin(@Validated @RequestBody EmailLoginBody body) {
  99. LoginVo loginVo = new LoginVo();
  100. // 生成令牌
  101. String token = loginService.emailLogin(
  102. body.getTenantId(),
  103. body.getEmail(),
  104. body.getEmailCode());
  105. loginVo.setToken(token);
  106. return R.ok(loginVo);
  107. }
  108. /**
  109. * 小程序登录(示例)
  110. *
  111. * @param xcxCode 小程序code
  112. * @return 结果
  113. */
  114. @PostMapping("/xcxLogin")
  115. public R<LoginVo> xcxLogin(@NotBlank(message = "{xcx.code.not.blank}") String xcxCode) {
  116. LoginVo loginVo = new LoginVo();
  117. // 生成令牌
  118. String token = loginService.xcxLogin(xcxCode);
  119. loginVo.setToken(token);
  120. return R.ok(loginVo);
  121. }
  122. /**
  123. * 认证授权
  124. * @param source
  125. */
  126. @GetMapping("/binding/{source}")
  127. @ResponseBody
  128. public R<LoginVo> authBinding(@PathVariable("source") String source, HttpServletRequest request){
  129. SocialLoginConfigProperties obj = socialProperties.getType().get(source);
  130. if (ObjectUtil.isNull(obj)){
  131. return R.fail(source + "平台账号暂不支持");
  132. }
  133. AuthRequest authRequest = SocialUtils.getAuthRequest(source,
  134. obj.getClientId(),
  135. obj.getClientSecret(),
  136. obj.getRedirectUri());
  137. String authorizeUrl = authRequest.authorize(AuthStateUtils.createState());
  138. return R.ok(authorizeUrl);
  139. }
  140. /**
  141. * 第三方登录回调业务处理
  142. * @param source
  143. * @param callback
  144. * @param request
  145. * @return
  146. */
  147. @SuppressWarnings("unchecked")
  148. @GetMapping("/social-login/{source}")
  149. public R<String> socialLogin(@PathVariable("source") String source, AuthCallback callback, HttpServletRequest request) throws IOException {
  150. SocialLoginConfigProperties obj = socialProperties.getType().get(source);
  151. if (ObjectUtil.isNull(obj)){
  152. return R.fail(source + "平台账号暂不支持");
  153. }
  154. AuthRequest authRequest = SocialUtils.getAuthRequest(source,
  155. obj.getClientId(),
  156. obj.getClientSecret(),
  157. obj.getRedirectUri());
  158. AuthResponse<AuthUser> response = authRequest.login(callback);
  159. return loginService.socialLogin(source, response, request);
  160. }
  161. /**
  162. * 取消授权
  163. * @param socialId
  164. */
  165. @DeleteMapping(value = "/unlock/{socialId}")
  166. public R<Void> unlockSocial(@PathVariable Long socialId)
  167. {
  168. Boolean rows = socialUserService.deleteWithValidById(socialId);
  169. return rows ? R.ok() : R.fail("取消授权失败");
  170. }
  171. /**
  172. * 退出登录
  173. */
  174. @PostMapping("/logout")
  175. public R<Void> logout() {
  176. loginService.logout();
  177. return R.ok("退出成功");
  178. }
  179. /**
  180. * 用户注册
  181. */
  182. @PostMapping("/register")
  183. public R<Void> register(@Validated @RequestBody RegisterBody user) {
  184. if (!configService.selectRegisterEnabled(user.getTenantId())) {
  185. return R.fail("当前系统没有开启注册功能!");
  186. }
  187. registerService.register(user);
  188. return R.ok();
  189. }
  190. /**
  191. * 登录页面租户下拉框
  192. *
  193. * @return 租户列表
  194. */
  195. @GetMapping("/tenant/list")
  196. public R<LoginTenantVo> tenantList(HttpServletRequest request) throws Exception {
  197. List<SysTenantVo> tenantList = tenantService.queryList(new SysTenantBo());
  198. List<TenantListVo> voList = MapstructUtils.convert(tenantList, TenantListVo.class);
  199. // 获取域名
  200. String host;
  201. String referer = request.getHeader("referer");
  202. if (StringUtils.isNotBlank(referer)) {
  203. // 这里从referer中取值是为了本地使用hosts添加虚拟域名,方便本地环境调试
  204. host = referer.split("//")[1].split("/")[0];
  205. } else {
  206. host = new URL(request.getRequestURL().toString()).getHost();
  207. }
  208. // 根据域名进行筛选
  209. List<TenantListVo> list = StreamUtils.filter(voList, vo ->
  210. StringUtils.equals(vo.getDomain(), host));
  211. // 返回对象
  212. LoginTenantVo vo = new LoginTenantVo();
  213. vo.setVoList(CollUtil.isNotEmpty(list) ? list : voList);
  214. vo.setTenantEnabled(TenantHelper.isEnable());
  215. return R.ok(vo);
  216. }
  217. }