light_auth.go 5.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171
  1. package auth
  2. import (
  3. "fmt"
  4. "git.qianqiusoft.com/qianqiusoft/light-apiengine/config"
  5. "git.qianqiusoft.com/qianqiusoft/light-apiengine/entitys"
  6. sysmodel "git.qianqiusoft.com/qianqiusoft/light-apiengine/models"
  7. sysutils "git.qianqiusoft.com/qianqiusoft/light-apiengine/utils"
  8. "github.com/xormplus/xorm"
  9. "net"
  10. "net/http"
  11. "strings"
  12. )
  13. type LightAuth struct {
  14. }
  15. var session *xorm.Engine
  16. func init() {
  17. var err error
  18. lightAuth := &LightAuth{}
  19. RegisterAuth("qianqiusoft.com", lightAuth)
  20. if session == nil {
  21. session, err = xorm.NewEngine("mysql", config.AppConfig.GetKey("logger_data_source"))
  22. if err != nil {
  23. fmt.Println(err)
  24. return
  25. }
  26. }
  27. }
  28. func (la *LightAuth) Init() {
  29. }
  30. func (la *LightAuth) Login(c *entitys.CtrlContext) {
  31. var logininfo sysmodel.LoginInfo
  32. c.Ctx.BindJSON(&logininfo)
  33. //fmt.Println(logininfo)
  34. var user sysmodel.SysUser
  35. ret, err := c.PlatformDbEngine.SQL(sysmodel.SqlUserLogin, logininfo.Account).Get(&user)
  36. if ret && err == nil {
  37. // 输错密码5次,锁定账户10分钟不允许登录
  38. if !sysutils.GetGlobalLoginCheck().CheckErrNum(user.LoginId) {
  39. c.Ctx.JSON(200, sysmodel.SysReturn{400, "输错密码5次,锁定账户10分钟!", nil})
  40. return
  41. }
  42. md5Pwd := sysutils.HashPassword(logininfo.Password, "")
  43. //密码错误
  44. if !strings.EqualFold(user.Password, md5Pwd) {
  45. if !sysutils.GetGlobalLoginCheck().AddPwdErrNum(user.LoginId) {
  46. c.Ctx.JSON(200, sysmodel.SysReturn{400, "输错密码5次,锁定账户10分钟!", nil})
  47. return
  48. }
  49. c.Ctx.JSON(200, sysmodel.SysReturn{400, "password incorrect!", nil})
  50. return
  51. }
  52. //token := &entitys.Token{}
  53. //timestamp_str := strconv.FormatUint(timestamp, 10)
  54. //sec_tooken := sysutils.GenerateToken(logininfo.Account + timestamp_str)
  55. //if v := sysutils.GetGlobalTokenStore().Get(sec_tooken); v == nil {
  56. // token.AccessToken = sec_tooken
  57. // token.RefreshToken = sec_tooken
  58. // token.LoginID = logininfo.Account
  59. // token.UserId = user.Id
  60. // token.Result = 200
  61. // //token.Password = pwd
  62. // token.ServerIp = ""
  63. // token.Domain = user.Domain
  64. // sysutils.GetGlobalTokenStore().Set(sec_tooken, token)
  65. // //sysutils.GetGlobalTokenStore().Set(token.LoginID+user.Domain, token)
  66. //} else {
  67. // token = v
  68. //}
  69. //// 查找Business对应的用户信息
  70. //var businessUser sysmodel.SysUser
  71. //_, err = c.App.GetBusinessDb(user.Domain).Table(new(sysmodel.SysUser)).ID(user.Id).Get(&businessUser)
  72. //if err != nil {
  73. // c.Ctx.JSON(200, sysmodel.SysReturn{400, "business db con't found user!", nil})
  74. // return
  75. //}
  76. //
  77. //data := sysmodel.LoginReturnInfo{}
  78. //data.Id = user.Id
  79. //data.LoginId = user.LoginId
  80. //data.Token = token.AccessToken
  81. //data.Type = user.Type
  82. //data.Domain = user.Domain
  83. //data.OrgId = businessUser.OrgId
  84. //data.Name = businessUser.Name
  85. //data.Mobile = businessUser.Mobile
  86. //data.Email = businessUser.Email
  87. //
  88. //// 查找用户对应角色
  89. //var roles []sysmodel.SysRole
  90. //c.App.GetBusinessDb(user.Domain).SQL("select sys_role.* from sys_user_role, sys_role where sys_user_role.role_id = sys_role.id and sys_role.del_flag = 0 and sys_user_role.user_id = ? order by sys_role.priority asc", user.Id).Find(&roles)
  91. //data.Roles = roles
  92. data, err := AddToGlobalTokenStore(c, &user)
  93. if err != nil {
  94. c.Ctx.JSON(200, sysmodel.SysReturn{400, err.Error(), nil})
  95. return
  96. }
  97. //登录日志
  98. if session != nil {
  99. ip := RemoteIp(c.Ctx.Request)
  100. sql := "insert into log_sys_login (user_id,account,ip_addr,login_time,del_flag,login_type,user_name) values (?, ?,?,?,?,?,?)"
  101. _, err = session.Exec(sql, user.Id, user.LoginId, ip, sysmodel.NowLocal().Value(), 0, 0, user.Name)
  102. if err != nil {
  103. c.Ctx.JSON(200, sysmodel.SysReturn{400, err.Error(), nil})
  104. return
  105. }
  106. }
  107. //
  108. c.Ctx.JSON(200, sysmodel.SysReturn{200, "", data})
  109. } else {
  110. //fmt.Println(err.Error())
  111. c.Ctx.JSON(200, sysmodel.SysReturn{400, "username or password incorrect!", nil})
  112. }
  113. }
  114. func (la *LightAuth) Logout(c *entitys.CtrlContext) {
  115. token := c.Ctx.GetHeader("token")
  116. fmt.Println("delete token: ", token)
  117. sysutils.GetGlobalTokenStore().Remove(token)
  118. //登录日志
  119. tokenStore := sysutils.GetGlobalTokenStore()
  120. tokenInfo := tokenStore.Get(token)
  121. user := new(sysmodel.SysUser)
  122. if session != nil && tokenInfo != nil {
  123. _, err := c.PlatformDbEngine.Table(user.TableName()).Where("login_id = ?", tokenInfo.LoginID).Get(user)
  124. if err != nil {
  125. c.Ctx.JSON(200, sysmodel.SysReturn{400, err.Error(), nil})
  126. return
  127. }
  128. ip := RemoteIp(c.Ctx.Request)
  129. sql := "insert into log_sys_login (user_id,account,ip_addr,login_time,del_flag,login_type,user_name) values (?, ?,?,?,?,?,?)"
  130. _, err = session.Exec(sql, user.Id, user.LoginId, ip, sysmodel.NowLocal().Value(), 0, 1, user.Name)
  131. if err != nil {
  132. c.Ctx.JSON(200, sysmodel.SysReturn{400, err.Error(), nil})
  133. return
  134. }
  135. }
  136. //
  137. c.Ctx.JSON(200, sysmodel.SysReturn{200, "", nil})
  138. }
  139. const (
  140. XForwardedFor = "X-Forwarded-For"
  141. XRealIP = "X-Real-IP"
  142. )
  143. // RemoteIp 返回远程客户端的 IP,如 192.168.1.1
  144. func RemoteIp(req *http.Request) string {
  145. remoteAddr := req.RemoteAddr
  146. if ip := req.Header.Get(XRealIP); ip != "" {
  147. remoteAddr = ip
  148. } else if ip = req.Header.Get(XForwardedFor); ip != "" {
  149. remoteAddr = ip
  150. } else {
  151. remoteAddr, _, _ = net.SplitHostPort(remoteAddr)
  152. }
  153. if remoteAddr == "::1" {
  154. remoteAddr = "127.0.0.1"
  155. }
  156. return remoteAddr
  157. }