UserController.java 7.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209
  1. package com.izouma.nineth.web;
  2. import com.izouma.nineth.domain.User;
  3. import com.izouma.nineth.dto.PageQuery;
  4. import com.izouma.nineth.dto.UserDTO;
  5. import com.izouma.nineth.dto.UserRegister;
  6. import com.izouma.nineth.enums.AuthorityName;
  7. import com.izouma.nineth.exception.BusinessException;
  8. import com.izouma.nineth.repo.UserRepo;
  9. import com.izouma.nineth.security.Authority;
  10. import com.izouma.nineth.security.JwtTokenUtil;
  11. import com.izouma.nineth.security.JwtUserFactory;
  12. import com.izouma.nineth.service.FollowService;
  13. import com.izouma.nineth.service.UserService;
  14. import com.izouma.nineth.utils.SecurityUtils;
  15. import com.izouma.nineth.utils.excel.ExcelUtils;
  16. import io.swagger.annotations.ApiOperation;
  17. import lombok.AllArgsConstructor;
  18. import me.chanjar.weixin.common.error.WxErrorException;
  19. import org.apache.commons.lang3.StringUtils;
  20. import org.springframework.data.domain.Page;
  21. import org.springframework.security.access.prepost.PreAuthorize;
  22. import org.springframework.security.crypto.bcrypt.BCryptPasswordEncoder;
  23. import org.springframework.web.bind.annotation.*;
  24. import javax.servlet.http.HttpServletResponse;
  25. import java.io.IOException;
  26. import java.util.Collections;
  27. import java.util.HashMap;
  28. import java.util.List;
  29. import java.util.Map;
  30. @AllArgsConstructor
  31. @RestController
  32. @RequestMapping("/user")
  33. public class UserController extends BaseController {
  34. private UserRepo userRepo;
  35. private UserService userService;
  36. private JwtTokenUtil jwtTokenUtil;
  37. private FollowService followService;
  38. @PostMapping("/register")
  39. public User register(@RequestParam String username,
  40. @RequestParam String password) {
  41. UserRegister user = UserRegister.builder()
  42. .username(username)
  43. .nickname(username)
  44. .password(new BCryptPasswordEncoder().encode(password))
  45. .authorities(Collections.singleton(Authority.get(AuthorityName.ROLE_USER)))
  46. .build();
  47. return userService.create(user);
  48. }
  49. @PreAuthorize("hasRole('ADMIN')")
  50. @PostMapping("/create")
  51. public User create(@RequestBody UserRegister userRegister) {
  52. return userService.create(userRegister);
  53. }
  54. @PostMapping("/save")
  55. public User save(@RequestBody User user) {
  56. if (user.getId() != null) {
  57. return userService.update(user);
  58. }
  59. return userRepo.save(user);
  60. }
  61. @GetMapping("/my")
  62. public User my() {
  63. return userRepo.findById(SecurityUtils.getAuthenticatedUser().getId())
  64. .orElseThrow(new BusinessException("用户不存在"));
  65. }
  66. @GetMapping("/myAdmin")
  67. @PreAuthorize("hasRole('ADMIN')")
  68. public User myAdmin() {
  69. return userRepo.findById(SecurityUtils.getAuthenticatedUser().getId())
  70. .orElseThrow(new BusinessException("用户不存在"));
  71. }
  72. // @PreAuthorize("hasRole('ADMIN')")
  73. @PostMapping("/all")
  74. public Page<UserDTO> all(@RequestBody PageQuery pageQuery) {
  75. if (!(SecurityUtils.getAuthenticatedUser() != null && SecurityUtils.getAuthenticatedUser().isAdmin())) {
  76. pageQuery.getQuery().put("hasRole", "ROLE_MINTER");
  77. }
  78. return userService.toDTO(userService.all(pageQuery));
  79. }
  80. // @PreAuthorize("hasRole('ADMIN')")
  81. @GetMapping("/get/{id}")
  82. public UserDTO get(@PathVariable Long id) {
  83. return userService.toDTO(userRepo.findById(id).orElseThrow(new BusinessException("无记录")), true);
  84. }
  85. @PreAuthorize("hasRole('ADMIN')")
  86. @PostMapping("/del/{id}")
  87. public void del(@PathVariable Long id) {
  88. userService.del(id);
  89. }
  90. @GetMapping("/excel")
  91. @ResponseBody
  92. public void excel(HttpServletResponse response, PageQuery pageQuery) throws IOException {
  93. List<User> data = userService.all(pageQuery).getContent();
  94. ExcelUtils.export(response, data);
  95. }
  96. @PostMapping("/getMaUserInfo")
  97. @ApiOperation(value = "获取小程序用户信息")
  98. public User getMaUserInfo(String sessionKey, String rawData, String signature, String encryptedData, String iv) {
  99. User user = userService.getMaUserInfo(sessionKey, rawData, signature, encryptedData, iv);
  100. if (user != null) {
  101. return user;
  102. }
  103. throw new BusinessException("获取用户信息失败");
  104. }
  105. @PostMapping("/code2openId")
  106. @ApiOperation(value = "获取OpenId")
  107. public String code2openId(@RequestParam String code) throws WxErrorException {
  108. return userService.code2openId(code);
  109. }
  110. @PreAuthorize("hasRole('ADMIN')")
  111. @PostMapping("/setPasswordAdmin")
  112. public String setPasswordAdmin(@RequestParam Long userId, @RequestParam String password) {
  113. return userService.setPassword(userId, password);
  114. }
  115. @PostMapping("/changePassword")
  116. @ApiOperation("修改密码")
  117. public String changePassword(@RequestParam String password, @RequestParam String code) {
  118. return userService.setPassword(SecurityUtils.getAuthenticatedUser().getId(), code, password);
  119. }
  120. @PostMapping("/forgotPassword")
  121. @ApiOperation("忘记密码")
  122. public String forgotPassword(@RequestParam String phone, @RequestParam String password, @RequestParam String code) {
  123. return userService.forgotPassword(phone, password, code);
  124. }
  125. @PreAuthorize("hasRole('ADMIN')")
  126. @GetMapping("/getToken/{userId}")
  127. public String getToken(@PathVariable Long userId) {
  128. return jwtTokenUtil.generateToken(JwtUserFactory.create(userRepo.findById(userId)
  129. .orElseThrow(new BusinessException("用户不存在"))));
  130. }
  131. @PostMapping("/bindPhone")
  132. public void bindPhone(@RequestParam String phone) {
  133. userService.bindPhone(SecurityUtils.getAuthenticatedUser().getId(), phone);
  134. }
  135. @GetMapping("/{id}/follow")
  136. public void follow(@PathVariable Long id) {
  137. followService.follow(SecurityUtils.getAuthenticatedUser().getId(), id);
  138. }
  139. @GetMapping("/{id}/unfollow")
  140. public void unfollow(@PathVariable Long id) {
  141. followService.unfollow(SecurityUtils.getAuthenticatedUser().getId(), id);
  142. }
  143. @GetMapping("/myFollows")
  144. @ApiOperation("我的关注")
  145. public List<UserDTO> myFollows() {
  146. return userService.toDTO(userRepo.userFollows(SecurityUtils.getAuthenticatedUser().getId()));
  147. }
  148. @GetMapping("/myFollowers")
  149. @ApiOperation("关注我的")
  150. public List<UserDTO> myFollowers() {
  151. return userService.toDTO(userRepo.userFollowers(SecurityUtils.getAuthenticatedUser().getId()));
  152. }
  153. @PostMapping("/setTradeCode")
  154. @ApiOperation("修改交易密码")
  155. public void setTradeCode(@RequestParam String token, @RequestParam String tradeCode) {
  156. userService.setTradeCode(SecurityUtils.getAuthenticatedUser().getId(), token, tradeCode);
  157. }
  158. @PostMapping("/verifyTradeCode")
  159. @ApiOperation("验证交易密码")
  160. public void verifyTradeCode(@RequestParam String tradeCode) {
  161. userService.verifyTradeCode(SecurityUtils.getAuthenticatedUser().getId(), tradeCode);
  162. }
  163. @PostMapping("/searchByPhone")
  164. public Map<String, Object> searchByPhone(@RequestParam String phone) {
  165. return userService.searchByPhone(phone);
  166. }
  167. @PreAuthorize("hasAnyRole('ADMIN', 'OPERATOR')")
  168. @PostMapping("/searchByPhoneAdmin")
  169. public Map<String, Object> searchByPhoneAdmin(@RequestParam String phone) {
  170. return userService.searchByPhoneAdmin(phone);
  171. }
  172. @GetMapping("/tradeCodeStatus")
  173. public Object tradeCodeStatus() {
  174. return new HashMap<String, Object>() {{
  175. put("set", !StringUtils.isBlank(SecurityUtils.getAuthenticatedUser().getTradeCode()));
  176. }};
  177. }
  178. }