Auth.php 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385
  1. <?php
  2. namespace app\admin\library;
  3. use app\admin\model\Admin;
  4. use fast\Random;
  5. use fast\Tree;
  6. use think\Cookie;
  7. use think\Request;
  8. use think\Session;
  9. class Auth extends \fast\Auth
  10. {
  11. protected $requestUri = '';
  12. protected $breadcrumb = [];
  13. public function __construct()
  14. {
  15. parent::__construct();
  16. }
  17. public function __get($name)
  18. {
  19. return Session::get('admin.' . $name);
  20. }
  21. public function login($username, $password, $keeptime = 0)
  22. {
  23. $admin = Admin::get(['username' => $username]);
  24. if (!$admin)
  25. {
  26. return false;
  27. }
  28. if ($admin->password != md5(md5($password) . $admin->salt))
  29. {
  30. $admin->loginfailure++;
  31. $admin->save();
  32. return false;
  33. }
  34. $admin->loginfailure = 0;
  35. $admin->logintime = time();
  36. $admin->token = Random::uuid();
  37. $admin->save();
  38. Session::set("admin", $admin);
  39. $this->keeplogin($keeptime);
  40. return true;
  41. }
  42. /**
  43. * 注销登录
  44. */
  45. public function logout()
  46. {
  47. $admin = Admin::get(intval($this->id));
  48. if (!$admin)
  49. {
  50. return true;
  51. }
  52. $admin->token = '';
  53. $admin->save();
  54. Session::delete("admin");
  55. Cookie::delete("keeplogin");
  56. return true;
  57. }
  58. /**
  59. * 自动登录
  60. * @return boolean
  61. */
  62. public function autologin()
  63. {
  64. $keeplogin = Cookie::get('keeplogin');
  65. if (!$keeplogin)
  66. {
  67. return false;
  68. }
  69. list($id, $keeptime, $expiretime, $key) = explode('|', $keeplogin);
  70. if ($id && $keeptime && $expiretime && $key && $expiretime > time())
  71. {
  72. $admin = Admin::get($id);
  73. if (!$admin || !$admin->token)
  74. {
  75. return false;
  76. }
  77. //token有变更
  78. if ($key != md5(md5($id) . md5($keeptime) . md5($expiretime) . $admin->token))
  79. {
  80. return false;
  81. }
  82. Session::set("admin", $admin);
  83. //刷新自动登录的时效
  84. $this->keeplogin($keeptime);
  85. return true;
  86. }
  87. else
  88. {
  89. return false;
  90. }
  91. }
  92. /**
  93. * 刷新保持登录的Cookie
  94. * @param int $keeptime
  95. * @return boolean
  96. */
  97. protected function keeplogin($keeptime = 0)
  98. {
  99. if ($keeptime)
  100. {
  101. $expiretime = time() + $keeptime;
  102. $key = md5(md5($this->id) . md5($keeptime) . md5($expiretime) . $this->token);
  103. $data = [$this->id, $keeptime, $expiretime, $key];
  104. Cookie::set('keeplogin', implode('|', $data));
  105. return true;
  106. }
  107. return false;
  108. }
  109. public function check($name, $uid = '', $relation = 'or', $mode = 'url')
  110. {
  111. return parent::check($name, $this->id, $relation, $mode);
  112. }
  113. /**
  114. * 检测当前控制器和方法是否匹配传递的数组
  115. *
  116. * @param array $arr 需要验证权限的数组
  117. */
  118. public function match($arr = [])
  119. {
  120. $request = Request::instance();
  121. $arr = is_array($arr) ? $arr : explode(',', $arr);
  122. if (!$arr)
  123. {
  124. return FALSE;
  125. }
  126. // 是否存在
  127. if (in_array(strtolower($request->action()), $arr) || in_array('*', $arr))
  128. {
  129. return TRUE;
  130. }
  131. // 没找到匹配
  132. return FALSE;
  133. }
  134. /**
  135. * 检测是否登录
  136. *
  137. * @return boolean
  138. */
  139. public function isLogin()
  140. {
  141. return Session::get('admin') ? true : false;
  142. }
  143. /**
  144. * 获取当前请求的URI
  145. * @return string
  146. */
  147. public function getRequestUri()
  148. {
  149. return $this->requestUri;
  150. }
  151. /**
  152. * 设置当前请求的URI
  153. * @param string $uri
  154. */
  155. public function setRequestUri($uri)
  156. {
  157. $this->requestUri = $uri;
  158. }
  159. public function getGroups($uid = null)
  160. {
  161. $uid = is_null($uid) ? $this->id : $uid;
  162. return parent::getGroups($uid);
  163. }
  164. public function getRuleList($uid = null)
  165. {
  166. $uid = is_null($uid) ? $this->id : $uid;
  167. return parent::getRuleList($uid);
  168. }
  169. public function getUserInfo($uid = null)
  170. {
  171. $uid = is_null($uid) ? $this->id : $uid;
  172. return $uid != $this->id ? Admin::get(intval($uid)) : Session::get('admin');
  173. }
  174. public function getRuleIds($uid = null)
  175. {
  176. $uid = is_null($uid) ? $this->id : $uid;
  177. return parent::getRuleIds($uid);
  178. }
  179. public function isSuperAdmin()
  180. {
  181. return in_array('*', $this->getRuleIds()) ? TRUE : FALSE;
  182. }
  183. /**
  184. * 获取管理员所属于的分组ID
  185. * @param int $uid
  186. * @return array
  187. */
  188. public function getGroupIds($uid = null)
  189. {
  190. $groups = $this->getGroups($uid);
  191. $groupIds = [];
  192. foreach ($groups as $K => $v)
  193. {
  194. $groupIds[] = (int) $v['group_id'];
  195. }
  196. return $groupIds;
  197. }
  198. /**
  199. * 取出当前管理员所拥有权限的分组
  200. * @param boolean $withself 是否包含当前所在的分组
  201. * @return array
  202. */
  203. public function getChildrenGroupIds($withself = false)
  204. {
  205. //取出当前管理员所有的分组
  206. $groups = $this->getGroups();
  207. $groupIds = [];
  208. foreach ($groups as $k => $v)
  209. {
  210. $groupIds[] = $v['id'];
  211. }
  212. // 取出所有分组
  213. $groupList = model('AuthGroup')->all(['status' => 'normal']);
  214. $objList = [];
  215. foreach ($groups as $K => $v)
  216. {
  217. if ($v['rules'] === '*')
  218. {
  219. $objList = $groupList;
  220. break;
  221. }
  222. // 取出包含自己的所有子节点
  223. $childrenList = Tree::instance()->init($groupList)->getChildren($v['id'], true);
  224. $obj = Tree::instance()->init($childrenList)->getTreeArray($v['pid']);
  225. $objList = array_merge($objList, Tree::instance()->getTreeList($obj));
  226. }
  227. $childrenGroupIds = [];
  228. foreach ($objList as $k => $v)
  229. {
  230. $childrenGroupIds[] = $v['id'];
  231. }
  232. if (!$withself)
  233. {
  234. $childrenGroupIds = array_diff($childrenGroupIds, $groupIds);
  235. }
  236. return $childrenGroupIds;
  237. }
  238. /**
  239. * 取出当前管理员所拥有权限的管理员
  240. * @param boolean $withself 是否包含自身
  241. * @return array
  242. */
  243. public function getChildrenAdminIds($withself = false)
  244. {
  245. $groupIds = $this->getChildrenGroupIds(false);
  246. $childrenAdminIds = [];
  247. $authGroupList = model('AuthGroupAccess')
  248. ->field('uid,group_id')
  249. ->where('group_id', 'in', $groupIds)
  250. ->select();
  251. foreach ($authGroupList as $k => $v)
  252. {
  253. $childrenAdminIds[] = $v['uid'];
  254. }
  255. if ($withself)
  256. {
  257. if (!in_array($this->id, $childrenAdminIds))
  258. {
  259. $childrenAdminIds[] = $this->id;
  260. }
  261. }
  262. else
  263. {
  264. $childrenAdminIds = array_diff($childrenAdminIds, [$this->id]);
  265. }
  266. return $childrenAdminIds;
  267. }
  268. /**
  269. * 获得面包屑导航
  270. * @param string $path
  271. * @return array
  272. */
  273. public function getBreadCrumb($path = '')
  274. {
  275. if ($this->breadcrumb || !$path)
  276. return $this->breadcrumb;
  277. $path_rule_id = 0;
  278. foreach ($this->rules as $rule)
  279. {
  280. $path_rule_id = $rule['name'] == $path ? $rule['id'] : $path_rule_id;
  281. }
  282. if ($path_rule_id)
  283. {
  284. $this->breadcrumb = Tree::instance()->init($this->rules)->getParents($path_rule_id, true);
  285. foreach ($this->breadcrumb as $k => &$v)
  286. {
  287. $v['url'] = url($v['name']);
  288. $v['title'] = __($v['title']);
  289. }
  290. }
  291. return $this->breadcrumb;
  292. }
  293. /**
  294. * 获取左侧菜单栏
  295. *
  296. * @param array $params URL对应的badge数据
  297. * @return string
  298. */
  299. public function getSidebar($params = [], $fixedPage = 'dashboard')
  300. {
  301. $colorArr = ['red', 'green', 'yellow', 'blue', 'teal', 'orange', 'purple'];
  302. $colorNums = count($colorArr);
  303. $badgeList = [];
  304. $module = request()->module();
  305. // 生成菜单的badge
  306. foreach ($params as $k => $v)
  307. {
  308. $url = $k;
  309. if (is_array($v))
  310. {
  311. $nums = isset($v[0]) ? $v[0] : 0;
  312. $color = isset($v[1]) ? $v[1] : $colorArr[(is_numeric($nums) ? $nums : strlen($nums)) % $colorNums];
  313. $class = isset($v[2]) ? $v[2] : 'label';
  314. }
  315. else
  316. {
  317. $nums = $v;
  318. $color = $colorArr[(is_numeric($nums) ? $nums : strlen($nums)) % $colorNums];
  319. $class = 'label';
  320. }
  321. //必须nums大于0才显示
  322. if ($nums)
  323. {
  324. $badgeList[$url] = '<small class="' . $class . ' pull-right bg-' . $color . '">' . $nums . '</small>';
  325. }
  326. }
  327. // 读取管理员当前拥有的权限节点
  328. $userRule = $this->getRuleList();
  329. $select_id = 0;
  330. $pinyin = new \Overtrue\Pinyin\Pinyin('Overtrue\Pinyin\MemoryFileDictLoader');
  331. // 必须将结果集转换为数组
  332. $ruleList = collection(model('AuthRule')->where('ismenu', 1)->order('weigh', 'desc')->cache("__menu__")->select())->toArray();
  333. foreach ($ruleList as $k => &$v)
  334. {
  335. if (!in_array($v['name'], $userRule))
  336. {
  337. unset($ruleList[$k]);
  338. continue;
  339. }
  340. $select_id = $v['name'] == $fixedPage ? $v['id'] : $select_id;
  341. $v['url'] = '/' . $module . '/' . $v['name'];
  342. $v['badge'] = isset($badgeList[$v['name']]) ? $badgeList[$v['name']] : '';
  343. $v['py'] = $pinyin->abbr($v['title'], '');
  344. $v['pinyin'] = $pinyin->permalink($v['title'], '');
  345. $v['title'] = __($v['title']);
  346. }
  347. // 构造菜单数据
  348. Tree::instance()->init($ruleList);
  349. $menu = Tree::instance()->getTreeMenu(0, '<li class="@class"><a href="@url" addtabs="@id" url="@url" py="@py" pinyin="@pinyin"><i class="@icon"></i> <span>@title</span> <span class="pull-right-container">@caret @badge</span></a> @childlist</li>', $select_id, '', 'ul', 'class="treeview-menu"');
  350. return $menu;
  351. }
  352. }