UserController.java 7.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194
  1. package com.izouma.nineth.web;
  2. import com.izouma.nineth.domain.User;
  3. import com.izouma.nineth.dto.PageQuery;
  4. import com.izouma.nineth.dto.UserDTO;
  5. import com.izouma.nineth.dto.UserRegister;
  6. import com.izouma.nineth.enums.AuthorityName;
  7. import com.izouma.nineth.exception.BusinessException;
  8. import com.izouma.nineth.repo.UserRepo;
  9. import com.izouma.nineth.security.Authority;
  10. import com.izouma.nineth.security.JwtTokenUtil;
  11. import com.izouma.nineth.security.JwtUserFactory;
  12. import com.izouma.nineth.service.FollowService;
  13. import com.izouma.nineth.service.UserService;
  14. import com.izouma.nineth.utils.SecurityUtils;
  15. import com.izouma.nineth.utils.excel.ExcelUtils;
  16. import io.swagger.annotations.ApiOperation;
  17. import lombok.AllArgsConstructor;
  18. import me.chanjar.weixin.common.error.WxErrorException;
  19. import org.springframework.data.domain.Page;
  20. import org.springframework.security.access.prepost.PreAuthorize;
  21. import org.springframework.security.crypto.bcrypt.BCryptPasswordEncoder;
  22. import org.springframework.web.bind.annotation.*;
  23. import javax.servlet.http.HttpServletResponse;
  24. import java.io.IOException;
  25. import java.util.Collections;
  26. import java.util.List;
  27. import java.util.Map;
  28. @AllArgsConstructor
  29. @RestController
  30. @RequestMapping("/user")
  31. public class UserController extends BaseController {
  32. private UserRepo userRepo;
  33. private UserService userService;
  34. private JwtTokenUtil jwtTokenUtil;
  35. private FollowService followService;
  36. @PostMapping("/register")
  37. public User register(@RequestParam String username,
  38. @RequestParam String password) {
  39. UserRegister user = UserRegister.builder()
  40. .username(username)
  41. .nickname(username)
  42. .password(new BCryptPasswordEncoder().encode(password))
  43. .authorities(Collections.singleton(Authority.get(AuthorityName.ROLE_USER)))
  44. .build();
  45. return userService.create(user);
  46. }
  47. @PreAuthorize("hasRole('ADMIN')")
  48. @PostMapping("/create")
  49. public User create(@RequestBody UserRegister userRegister) {
  50. return userService.create(userRegister);
  51. }
  52. @PostMapping("/save")
  53. public User save(@RequestBody User user) {
  54. if (user.getId() != null) {
  55. return userService.update(user);
  56. }
  57. return userRepo.save(user);
  58. }
  59. @GetMapping("/my")
  60. public User my() {
  61. return userRepo.findById(SecurityUtils.getAuthenticatedUser().getId())
  62. .orElseThrow(new BusinessException("用户不存在"));
  63. }
  64. @GetMapping("/myAdmin")
  65. @PreAuthorize("hasRole('ADMIN')")
  66. public User myAdmin() {
  67. return userRepo.findById(SecurityUtils.getAuthenticatedUser().getId())
  68. .orElseThrow(new BusinessException("用户不存在"));
  69. }
  70. // @PreAuthorize("hasRole('ADMIN')")
  71. @PostMapping("/all")
  72. public Page<UserDTO> all(@RequestBody PageQuery pageQuery) {
  73. if (!(SecurityUtils.getAuthenticatedUser() != null && SecurityUtils.getAuthenticatedUser().isAdmin())) {
  74. pageQuery.getQuery().put("hasRole", "ROLE_MINTER");
  75. }
  76. return userService.toDTO(userService.all(pageQuery));
  77. }
  78. // @PreAuthorize("hasRole('ADMIN')")
  79. @GetMapping("/get/{id}")
  80. public UserDTO get(@PathVariable Long id) {
  81. return userService.toDTO(userRepo.findById(id).orElseThrow(new BusinessException("无记录")), true);
  82. }
  83. @PreAuthorize("hasRole('ADMIN')")
  84. @PostMapping("/del/{id}")
  85. public void del(@PathVariable Long id) {
  86. userService.del(id);
  87. }
  88. @GetMapping("/excel")
  89. @ResponseBody
  90. public void excel(HttpServletResponse response, PageQuery pageQuery) throws IOException {
  91. List<User> data = userService.all(pageQuery).getContent();
  92. ExcelUtils.export(response, data);
  93. }
  94. @PostMapping("/getMaUserInfo")
  95. @ApiOperation(value = "获取小程序用户信息")
  96. public User getMaUserInfo(String sessionKey, String rawData, String signature, String encryptedData, String iv) {
  97. User user = userService.getMaUserInfo(sessionKey, rawData, signature, encryptedData, iv);
  98. if (user != null) {
  99. return user;
  100. }
  101. throw new BusinessException("获取用户信息失败");
  102. }
  103. @PostMapping("/code2openId")
  104. @ApiOperation(value = "获取OpenId")
  105. public String code2openId(@RequestParam String code) throws WxErrorException {
  106. return userService.code2openId(code);
  107. }
  108. @PreAuthorize("hasRole('ADMIN')")
  109. @PostMapping("/setPasswordAdmin")
  110. public String setPasswordAdmin(@RequestParam Long userId, @RequestParam String password) {
  111. return userService.setPassword(userId, password);
  112. }
  113. @PostMapping("/changePassword")
  114. @ApiOperation("修改密码")
  115. public String changePassword(@RequestParam String password, @RequestParam String code) {
  116. return userService.setPassword(SecurityUtils.getAuthenticatedUser().getId(), code, password);
  117. }
  118. @PostMapping("/forgotPassword")
  119. @ApiOperation("忘记密码")
  120. public String forgotPassword(@RequestParam String phone, @RequestParam String password, @RequestParam String code) {
  121. return userService.forgotPassword(phone, password, code);
  122. }
  123. @PreAuthorize("hasRole('ADMIN')")
  124. @GetMapping("/getToken/{userId}")
  125. public String getToken(@PathVariable Long userId) {
  126. return jwtTokenUtil.generateToken(JwtUserFactory.create(userRepo.findById(userId)
  127. .orElseThrow(new BusinessException("用户不存在"))));
  128. }
  129. @PostMapping("/bindPhone")
  130. public void bindPhone(@RequestParam String phone) {
  131. userService.bindPhone(SecurityUtils.getAuthenticatedUser().getId(), phone);
  132. }
  133. @GetMapping("/{id}/follow")
  134. public void follow(@PathVariable Long id) {
  135. followService.follow(SecurityUtils.getAuthenticatedUser().getId(), id);
  136. }
  137. @GetMapping("/{id}/unfollow")
  138. public void unfollow(@PathVariable Long id) {
  139. followService.unfollow(SecurityUtils.getAuthenticatedUser().getId(), id);
  140. }
  141. @GetMapping("/myFollows")
  142. @ApiOperation("我的关注")
  143. public List<UserDTO> myFollows() {
  144. return userService.toDTO(userRepo.userFollows(SecurityUtils.getAuthenticatedUser().getId()));
  145. }
  146. @GetMapping("/myFollowers")
  147. @ApiOperation("关注我的")
  148. public List<UserDTO> myFollowers() {
  149. return userService.toDTO(userRepo.userFollowers(SecurityUtils.getAuthenticatedUser().getId()));
  150. }
  151. @PostMapping("/setTradeCode")
  152. @ApiOperation("修改交易密码")
  153. public void setTradeCode(@RequestParam String token, @RequestParam String tradeCode) {
  154. userService.setTradeCode(SecurityUtils.getAuthenticatedUser().getId(), token, tradeCode);
  155. }
  156. @PostMapping("/verifyTradeCode")
  157. @ApiOperation("验证交易密码")
  158. public void verifyTradeCode(@RequestParam String tradeCode) {
  159. userService.verifyTradeCode(SecurityUtils.getAuthenticatedUser().getId(), tradeCode);
  160. }
  161. @PostMapping("/searchByPhone")
  162. public Map<String, Object> searchByPhone(@RequestParam String phone) {
  163. return userService.searchByPhone(phone);
  164. }
  165. }