1
0

AuthController.cs 6.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229
  1. using Admin.Core.Attributes;
  2. using Admin.Core.Common.Auth;
  3. using Admin.Core.Common.Extensions;
  4. using Admin.Core.Common.Helpers;
  5. using Admin.Core.Common.Output;
  6. using Admin.Core.Service.Admin.Auth;
  7. using Admin.Core.Service.Admin.Auth.Input;
  8. using Admin.Core.Service.Admin.Auth.Output;
  9. using Admin.Core.Service.Admin.LoginLog;
  10. using Admin.Core.Service.Admin.LoginLog.Input;
  11. using Admin.Core.Service.Admin.User;
  12. using Admin.Tools.Captcha;
  13. using Microsoft.AspNetCore.Authorization;
  14. using Microsoft.AspNetCore.Mvc;
  15. using Microsoft.AspNetCore.Mvc.ModelBinding;
  16. using System;
  17. using System.Diagnostics;
  18. using System.Linq;
  19. using System.Security.Claims;
  20. using System.Threading.Tasks;
  21. namespace Admin.Core.Controllers.Admin
  22. {
  23. /// <summary>
  24. /// 授权管理
  25. /// </summary>
  26. public class AuthController : AreaController
  27. {
  28. private readonly IUserToken _userToken;
  29. private readonly IAuthService _authService;
  30. private readonly IUserService _userService;
  31. private readonly ILoginLogService _loginLogService;
  32. private readonly ICaptcha _captcha;
  33. public AuthController(
  34. IUserToken userToken,
  35. IAuthService authService,
  36. IUserService userService,
  37. ILoginLogService loginLogService,
  38. ICaptcha captcha
  39. )
  40. {
  41. _userToken = userToken;
  42. _authService = authService;
  43. _userService = userService;
  44. _loginLogService = loginLogService;
  45. _captcha = captcha;
  46. }
  47. /// <summary>
  48. /// 获得token
  49. /// </summary>
  50. /// <param name="output"></param>
  51. /// <returns></returns>
  52. private IResponseOutput GetToken(ResponseOutput<AuthLoginOutput> output)
  53. {
  54. if (!output.Success)
  55. {
  56. return ResponseOutput.NotOk(output.Msg);
  57. }
  58. var user = output.Data;
  59. if (user == null)
  60. {
  61. return ResponseOutput.NotOk();
  62. }
  63. var token = _userToken.Create(new[]
  64. {
  65. new Claim(ClaimAttributes.UserId, user.Id.ToString()),
  66. new Claim(ClaimAttributes.UserName, user.UserName),
  67. new Claim(ClaimAttributes.UserNickName, user.NickName),
  68. new Claim(ClaimAttributes.TenantId, user.TenantId.ToString()),
  69. new Claim(ClaimAttributes.TenantType, user.TenantType.ToString()),
  70. new Claim(ClaimAttributes.DataIsolationType, user.DataIsolationType.ToString())
  71. });
  72. return ResponseOutput.Ok(new { token });
  73. }
  74. /// <summary>
  75. /// 获取验证码
  76. /// </summary>
  77. /// <param name="lastKey">上次验证码键</param>
  78. /// <returns></returns>
  79. [HttpGet]
  80. [AllowAnonymous]
  81. [NoOprationLog]
  82. public async Task<IResponseOutput> GetVerifyCode(string lastKey)
  83. {
  84. return await _authService.GetVerifyCodeAsync(lastKey);
  85. }
  86. /// <summary>
  87. /// 获取验证数据
  88. /// </summary>
  89. /// <returns></returns>
  90. [HttpGet]
  91. [AllowAnonymous]
  92. [NoOprationLog]
  93. public async Task<IResponseOutput> GetCaptcha()
  94. {
  95. var data = await _captcha.GetAsync();
  96. return ResponseOutput.Ok(data);
  97. }
  98. /// <summary>
  99. /// 检查验证数据
  100. /// </summary>
  101. /// <returns></returns>
  102. [HttpGet]
  103. [AllowAnonymous]
  104. [NoOprationLog]
  105. public async Task<IResponseOutput> CheckCaptcha([FromQuery] SlideJigsawCaptchaInput input)
  106. {
  107. var result = await _captcha.CheckAsync(input);
  108. return ResponseOutput.Result(result);
  109. }
  110. /// <summary>
  111. /// 获取密钥
  112. /// </summary>
  113. /// <returns></returns>
  114. [HttpGet]
  115. [AllowAnonymous]
  116. [NoOprationLog]
  117. public async Task<IResponseOutput> GetPassWordEncryptKey()
  118. {
  119. return await _authService.GetPassWordEncryptKeyAsync();
  120. }
  121. /// <summary>
  122. /// 查询用户信息
  123. /// </summary>
  124. /// <returns></returns>
  125. [HttpGet]
  126. [Login]
  127. public async Task<IResponseOutput> GetUserInfo()
  128. {
  129. return await _authService.GetUserInfoAsync();
  130. }
  131. /// <summary>
  132. /// 用户登录
  133. /// 根据登录信息生成Token
  134. /// </summary>
  135. /// <param name="input">登录信息</param>
  136. /// <returns></returns>
  137. [HttpPost]
  138. [AllowAnonymous]
  139. [NoOprationLog]
  140. public async Task<IResponseOutput> Login(AuthLoginInput input)
  141. {
  142. var sw = new Stopwatch();
  143. sw.Start();
  144. var res = await _authService.LoginAsync(input);
  145. sw.Stop();
  146. #region 添加登录日志
  147. var loginLogAddInput = new LoginLogAddInput()
  148. {
  149. CreatedUserName = input.UserName,
  150. ElapsedMilliseconds = sw.ElapsedMilliseconds,
  151. Status = res.Success,
  152. Msg = res.Msg
  153. };
  154. ResponseOutput<AuthLoginOutput> output = null;
  155. if (res.Success)
  156. {
  157. output = (res as ResponseOutput<AuthLoginOutput>);
  158. var user = output.Data;
  159. loginLogAddInput.CreatedUserId = user.Id;
  160. loginLogAddInput.NickName = user.NickName;
  161. loginLogAddInput.TenantId = user.TenantId;
  162. }
  163. await _loginLogService.AddAsync(loginLogAddInput);
  164. #endregion 添加登录日志
  165. if (!res.Success)
  166. {
  167. return res;
  168. }
  169. return GetToken(output);
  170. }
  171. /// <summary>
  172. /// 刷新Token
  173. /// 以旧换新
  174. /// </summary>
  175. /// <param name="token"></param>
  176. /// <returns></returns>
  177. [HttpGet]
  178. [AllowAnonymous]
  179. public async Task<IResponseOutput> Refresh([BindRequired] string token)
  180. {
  181. var userClaims = _userToken.Decode(token);
  182. if (userClaims == null || userClaims.Length == 0)
  183. {
  184. return ResponseOutput.NotOk();
  185. }
  186. var refreshExpires = userClaims.FirstOrDefault(a => a.Type == ClaimAttributes.RefreshExpires)?.Value;
  187. if (refreshExpires.IsNull())
  188. {
  189. return ResponseOutput.NotOk();
  190. }
  191. if (refreshExpires.ToLong() <= DateTime.Now.ToTimestamp())
  192. {
  193. return ResponseOutput.NotOk("登录信息已过期");
  194. }
  195. var userId = userClaims.FirstOrDefault(a => a.Type == ClaimAttributes.UserId)?.Value;
  196. if (userId.IsNull())
  197. {
  198. return ResponseOutput.NotOk("登录信息已失效");
  199. }
  200. var output = await _userService.GetLoginUserAsync(userId.ToLong());
  201. return GetToken(output);
  202. }
  203. }
  204. }