profile_controller.js 26 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664
  1. 'use strict';
  2. /**
  3. * 账号相关控制器
  4. *
  5. * @author CaiAoLin
  6. * @date 2018/1/26
  7. * @version
  8. */
  9. const moment = require('moment');
  10. const profileMenu = require('../../config/menu').profileMenu;
  11. const smsTypeConst = require('../const/sms_type');
  12. const qr = require('qr-image');
  13. const path = require('path');
  14. const sendToWormhole = require('stream-wormhole');
  15. const loginWay = require('../const/setting').loginWay;
  16. const wxWork = require('../lib/wx_work');
  17. module.exports = app => {
  18. class ProfileController extends app.BaseController {
  19. /**
  20. * 构造函数
  21. *
  22. * @param {Object} ctx - egg全局context
  23. * @return {void}
  24. */
  25. constructor(ctx) {
  26. super(ctx);
  27. ctx.subMenu = profileMenu;
  28. }
  29. /**
  30. * 账号资料页面
  31. *
  32. * @param {Object} ctx - egg全局变量
  33. * @return {void}
  34. */
  35. async info(ctx) {
  36. // 获取当前用户数据
  37. const sessionUser = ctx.session.sessionUser;
  38. // 获取账号数据
  39. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: sessionUser.accountId });
  40. // 获取基础数据的字段规则
  41. const baseRule = ctx.service.projectAccount.rule('profileBase');
  42. const baseJsValidator = await this.jsValidator.convert(baseRule).setSelector('#base-form').build();
  43. const renderData = {
  44. accountData,
  45. baseJsValidator,
  46. };
  47. await this.layout('profile/info.ejs', renderData);
  48. }
  49. /**
  50. * 保存基本信息
  51. *
  52. * @param {Object} ctx - egg全局变量
  53. * @return {void}
  54. */
  55. async saveBase(ctx) {
  56. try {
  57. // 获取当前用户数据
  58. const sessionUser = ctx.session.sessionUser;
  59. // 获取基础数据的字段规则
  60. const baseRule = ctx.service.projectAccount.rule('profileBase');
  61. ctx.helper.validate(baseRule);
  62. const result = await ctx.service.projectAccount.saveInfo(ctx.request.body, sessionUser.accountId);
  63. if (!result) {
  64. throw '保存信息失败';
  65. }
  66. this.setMessage('修改成功', this.messageType.SUCCESS);
  67. } catch (error) {
  68. this.log(error);
  69. this.setMessage(error.toString(), this.messageType.ERROR);
  70. }
  71. ctx.redirect(ctx.request.header.referer);
  72. }
  73. /**
  74. * 修改密码操作
  75. *
  76. * @param {Object} ctx - egg全局变量
  77. * @return {void}
  78. */
  79. async modifyPassword(ctx) {
  80. const password = ctx.request.body.password;
  81. const newPassword = ctx.request.body.new_password;
  82. try {
  83. const sessionUser = ctx.session.sessionUser;
  84. let accountId = sessionUser.accountId;
  85. accountId = parseInt(accountId);
  86. if (isNaN(accountId) || accountId <= 0) {
  87. throw '参数错误';
  88. }
  89. // 验证数据
  90. const passwordRule = ctx.service.projectAccount.rule('modifyPassword');
  91. ctx.helper.validate(passwordRule);
  92. // 判断新密码的强度
  93. const reg = /^(?![0-9]+$)(?![a-zA-Z]+$).{6,16}$/;
  94. if (!reg.test(newPassword)) {
  95. throw '请设置至少包含数字和字母的新密码';
  96. }
  97. const result = await ctx.service.projectAccount.modifyPassword(accountId, password, newPassword);
  98. if (!result) {
  99. throw '修改密码失败';
  100. }
  101. this.setMessage('修改密码成功', this.messageType.SUCCESS);
  102. ctx.redirect('/logout');
  103. } catch (error) {
  104. ctx.session.postError = error.toString();
  105. this.setMessage(error.toString(), this.messageType.ERROR);
  106. ctx.redirect(ctx.request.header.referer);
  107. }
  108. }
  109. /**
  110. * 设置短信验证码
  111. *
  112. * @param {object} ctx - egg全局变量
  113. * @return {void}
  114. */
  115. async getCode(ctx) {
  116. const response = {
  117. err: 0,
  118. msg: '',
  119. };
  120. try {
  121. const sessionUser = ctx.session.sessionUser;
  122. const mobile = ctx.request.body.mobile;
  123. let type = null;
  124. if (ctx.request.body.type) {
  125. type = ctx.request.body.type;
  126. delete ctx.request.body.type;
  127. }
  128. const rule = { mobile: { type: 'mobile', allowEmpty: false } };
  129. ctx.helper.validate(rule);
  130. if (type === null || type !== 'shenpi') {
  131. // 查找是否有重复的认证手机
  132. const accountData = await ctx.service.projectAccount.getDataByCondition({ project_id: ctx.session.sessionProject.id, auth_mobile: mobile });
  133. if (accountData !== null) {
  134. throw '此手机号码已被使用,请重新输入!';
  135. }
  136. }
  137. const result = await ctx.service.projectAccount.setSMSCode(sessionUser.accountId, mobile);
  138. if (!result) {
  139. throw '获取验证码失败';
  140. }
  141. } catch (error) {
  142. response.err = 1;
  143. response.msg = error.toString();
  144. }
  145. ctx.body = response;
  146. }
  147. /**
  148. * 绑定认证手机
  149. *
  150. * @param {object} ctx - egg全局变量
  151. * @return {void}
  152. */
  153. async bindMobile(ctx) {
  154. const response = {
  155. err: 0,
  156. msg: '',
  157. };
  158. try {
  159. const rule = ctx.service.projectAccount.rule('bindMobile');
  160. ctx.helper.validate(rule);
  161. const sessionUser = ctx.session.sessionUser;
  162. const result = await ctx.service.projectAccount.bindMobile(sessionUser.accountId, ctx.request.body, ctx.session.sessionProject.id);
  163. if (!result) {
  164. throw '绑定手机失败!';
  165. }
  166. // this.setMessage('绑定成功', this.messageType.SUCCESS);
  167. response.msg = '绑定成功';
  168. response.url = ctx.request.header.referer;
  169. } catch (error) {
  170. this.ctx.helper.log(error);
  171. response.err = 1;
  172. response.msg = error.toString();
  173. }
  174. ctx.body = response;
  175. }
  176. /**
  177. * 短信通知
  178. *
  179. * @param {object} ctx - egg全局变量
  180. * @return {void}
  181. */
  182. async sms(ctx) {
  183. // 获取当前用户数据
  184. const sessionUser = ctx.session.sessionUser;
  185. // 获取账号数据
  186. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: sessionUser.accountId });
  187. const renderData = {
  188. accountData,
  189. smsType: smsTypeConst.type,
  190. };
  191. await this.layout('profile/sms.ejs', renderData, 'profile/modal.ejs');
  192. }
  193. /**
  194. * 短信通知类型设置
  195. *
  196. * @param {object} ctx - egg全局变量
  197. * @return {void}
  198. */
  199. async smsType(ctx) {
  200. try {
  201. const sessionUser = ctx.session.sessionUser;
  202. const result = await ctx.service.projectAccount.noticeTypeSet(sessionUser.accountId, ctx.request.body);
  203. if (!result) {
  204. throw '修改通知类型失败!';
  205. }
  206. this.setMessage('通知类型绑定成功', this.messageType.SUCCESS);
  207. } catch (error) {
  208. console.log(error);
  209. this.setMessage(error.toString(), this.messageType.ERROR);
  210. }
  211. ctx.redirect(ctx.request.header.referer);
  212. }
  213. /**
  214. * 电子签名
  215. *
  216. * @param {object} ctx - egg全局变量
  217. * @return {void}
  218. */
  219. async sign(ctx) {
  220. // 获取当前用户数据
  221. const sessionUser = ctx.session.sessionUser;
  222. // 获取账号数据
  223. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: sessionUser.accountId });
  224. const renderData = {
  225. accountData,
  226. fujianOssPath: ctx.app.config.fujianOssPath,
  227. };
  228. await this.layout('profile/sign.ejs', renderData);
  229. }
  230. /**
  231. * 网证通电子签名页
  232. *
  233. * @param {object} ctx - egg全局变量
  234. * @return {void}
  235. */
  236. async netcasign(ctx) {
  237. // 获取当前用户数据
  238. const sessionUser = ctx.session.sessionUser;
  239. // 获取账号数据
  240. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: sessionUser.accountId });
  241. const signData = await ctx.service.netcasign.getDataByCondition({ uid: sessionUser.accountId });
  242. const renderData = {
  243. accountData,
  244. signData,
  245. };
  246. await this.layout('profile/netcasign.ejs', renderData, 'profile/sign_modal.ejs');
  247. }
  248. /**
  249. * 网证通电子签名页面操作
  250. *
  251. * @param {object} ctx - egg全局变量
  252. * @return {void}
  253. */
  254. async signSave(ctx) {
  255. const response = {
  256. err: 0,
  257. msg: '',
  258. };
  259. try {
  260. const sessionUser = ctx.session.sessionUser;
  261. const data = JSON.parse(ctx.request.body.data);
  262. let signData;
  263. switch (data.type) {
  264. case 'bind':
  265. signData = await ctx.service.netcasign.getDataByCondition({ pid: ctx.session.sessionProject.id, keyId: data.updateData.keyId });
  266. if (signData) {
  267. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: signData.uid });
  268. throw '该Ukey已绑定于 ' + accountData.name + ', 不可重复绑定';
  269. }
  270. const result = await ctx.service.netcasign.add(data.updateData, sessionUser.accountId);
  271. if (!result) {
  272. throw '绑定Ukey失败';
  273. }
  274. response.data = await ctx.service.netcasign.getDataByCondition({ uid: sessionUser.accountId });
  275. break;
  276. case 'unbind':
  277. signData = await ctx.service.netcasign.getDataByCondition({ pid: ctx.session.sessionProject.id, uid: sessionUser.accountId });
  278. if (!signData) {
  279. throw '当前用户不存在绑定证书,解除绑定失败';
  280. }
  281. await ctx.service.netcasign.del(signData.id);
  282. break;
  283. case 'savesign':
  284. signData = await ctx.service.netcasign.getDataByCondition({ pid: ctx.session.sessionProject.id, uid: sessionUser.accountId });
  285. if (!signData) {
  286. throw '当前用户不存在绑定证书';
  287. }
  288. await ctx.service.netcasign.save({ sign_base64: data.sign_base64 }, signData.id);
  289. break;
  290. case 'delsign':
  291. signData = await ctx.service.netcasign.getDataByCondition({ pid: ctx.session.sessionProject.id, uid: sessionUser.accountId });
  292. if (!signData) {
  293. throw '当前用户不存在绑定证书';
  294. }
  295. if (signData && !signData.sign_base64) {
  296. throw '当前用户不存在签名,移除签名失败';
  297. }
  298. await ctx.service.netcasign.save({ sign_base64: null }, signData.id);
  299. break;
  300. default:throw '参数有误';
  301. }
  302. } catch (error) {
  303. response.err = 1;
  304. response.msg = error.toString();
  305. }
  306. ctx.body = response;
  307. }
  308. /**
  309. * 电子签名删除
  310. *
  311. * @param {object} ctx - egg全局变量
  312. * @return {void}
  313. */
  314. async signDelete(ctx) {
  315. const response = {
  316. err: 0,
  317. msg: '',
  318. };
  319. try {
  320. const sessionUser = ctx.session.sessionUser;
  321. // 获取账号数据
  322. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: sessionUser.accountId });
  323. const data = JSON.parse(ctx.request.body.data);
  324. let result = false;
  325. if (data.type && data.type === 'stamp') {
  326. if (!accountData.stamp_path) {
  327. throw '不存在签章';
  328. }
  329. const stamp_path_list = accountData.stamp_path.split('!;!');
  330. const spIndex = ctx.helper._.indexOf(stamp_path_list, data.src);
  331. if (spIndex === -1) {
  332. throw '不存在此签章';
  333. }
  334. // 不删除地址,只删除数据库数据,防止已签章的报表丢失
  335. // await ctx.app.fujianOss.delete(ctx.app.config.fujianOssFolder + stamp_path_list[spIndex]);
  336. stamp_path_list.splice(spIndex, 1);
  337. // 删除库
  338. result = await ctx.service.projectAccount.update({ stamp_path: stamp_path_list.length === 0 ? null : stamp_path_list.join('!;!') }, { id: sessionUser.accountId });
  339. } else {
  340. if (accountData.sign_path === '') {
  341. throw '不存在签名';
  342. }
  343. result = await ctx.service.projectAccount.update({ sign_path: '' }, { id: sessionUser.accountId });
  344. }
  345. if (!result) {
  346. throw '移除签名失败';
  347. }
  348. } catch (error) {
  349. response.err = 1;
  350. response.msg = error.toString();
  351. }
  352. ctx.body = response;
  353. }
  354. /**
  355. * 生成二维码
  356. *
  357. * @param {object} ctx - egg全局变量
  358. * @return {void}
  359. */
  360. async qrCode(ctx) {
  361. const size = 5;
  362. const margin = 1;
  363. try {
  364. // 获取当前用户数据
  365. const sessionUser = ctx.session.sessionUser;
  366. let text = ctx.protocol + '://' + ctx.host + '/sign?user_id=' + sessionUser.accountId + '&app_token=' + sessionUser.sessionToken;
  367. if (ctx.query.from === 'netcasign') {
  368. text += '&from=netcasign';
  369. }
  370. // 大小默认5,二维码周围间距默认1
  371. const img = qr.image(text || '', { type: 'png', size: size || 5, margin: margin || 1 });
  372. ctx.status = 200;
  373. ctx.type = 'image/png';
  374. ctx.body = img;
  375. } catch (e) {
  376. ctx.status = 414;
  377. ctx.set('Content-Type', 'text/html');
  378. ctx.body = '<h1>414 Request-URI Too Large</h1>';
  379. }
  380. }
  381. /**
  382. * 上传签名图
  383. *
  384. * @param {object} ctx - egg全局变量
  385. * @return {void}
  386. */
  387. async signUpload(ctx) {
  388. const responseData = {
  389. err: 0, msg: '', data: null,
  390. };
  391. try {
  392. const stream = await ctx.getFileStream();
  393. const create_time = Date.parse(new Date()) / 1000;
  394. const fileInfo = path.parse(stream.filename);
  395. if (stream.fields && stream.fields.type && stream.fields.type === 'stamp') {
  396. // const dirName = 'app/public/upload/sign/profile';
  397. // const fileName = moment().format('YYYYMMDD') + '_sign_' + create_time + fileInfo.ext;
  398. const filepath = `app/public/upload/sign/profile/qianzhang_${create_time + fileInfo.ext}`;
  399. await ctx.app.fujianOss.put(ctx.app.config.fujianOssFolder + filepath, stream);
  400. await sendToWormhole(stream);
  401. const result = await ctx.service.projectAccount.update({ stamp_path: filepath }, { id: ctx.session.sessionUser.accountId });
  402. if (result) {
  403. responseData.data = { stamp_path: filepath };
  404. } else {
  405. throw '添加数据库失败';
  406. }
  407. } else {
  408. const dirName = 'public/upload/sign';
  409. const fileName = moment().format('YYYYMMDD') + '_sign_' + create_time + fileInfo.ext;
  410. await ctx.helper.saveStreamFile(stream, path.join(this.app.baseDir, 'app', dirName, fileName));
  411. await sendToWormhole(stream);
  412. const result = await ctx.service.projectAccount.update({ sign_path: fileName }, { id: ctx.session.sessionUser.accountId });
  413. if (result) {
  414. responseData.data = { sign_path: fileName };
  415. } else {
  416. throw '添加数据库失败';
  417. }
  418. }
  419. } catch (err) {
  420. this.log(err);
  421. responseData.err = 1;
  422. responseData.msg = err;
  423. }
  424. ctx.body = responseData;
  425. }
  426. /**
  427. * 上传签章图(多选)
  428. *
  429. * @param {object} ctx - egg全局变量
  430. * @return {void}
  431. */
  432. async stampUpload(ctx) {
  433. const responseData = {
  434. err: 0, msg: '', data: null,
  435. };
  436. let stream;
  437. try {
  438. const parts = ctx.multipart({ autoFields: true });
  439. const paths = [];
  440. let index = 0;
  441. stream = await parts();
  442. while (stream !== undefined) {
  443. // 判断用户是否选择上传文件
  444. if (!stream.filename) {
  445. throw '请选择上传的文件!';
  446. }
  447. const fileInfo = path.parse(stream.filename);
  448. const create_time = Date.parse(new Date()) / 1000;
  449. const filepath = `app/public/upload/sign/profile/qianzhang_${create_time + index.toString() + fileInfo.ext}`;
  450. // await ctx.helper.saveStreamFile(stream, path.resolve(this.app.baseDir, filepath));
  451. await ctx.app.fujianOss.put(ctx.app.config.fujianOssFolder + filepath, stream);
  452. if (stream) {
  453. await sendToWormhole(stream);
  454. }
  455. paths.push(filepath);
  456. ++index;
  457. if (Array.isArray(parts.field.size) && index < parts.field.size.length) {
  458. stream = await parts();
  459. } else {
  460. stream = undefined;
  461. }
  462. }
  463. // 获取账号数据
  464. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: ctx.session.sessionUser.accountId });
  465. const stamp_path = accountData.stamp_path ? accountData.stamp_path.split('!;!') : [];
  466. const stamp_path_list = ctx.helper._.concat(stamp_path, paths);
  467. const result = await ctx.service.projectAccount.update({ stamp_path: stamp_path_list.join('!;!') }, { id: ctx.session.sessionUser.accountId });
  468. if (result) {
  469. responseData.data = { stamp_path: stamp_path_list };
  470. } else {
  471. throw '添加数据库失败';
  472. }
  473. } catch (err) {
  474. this.log(err);
  475. // 失败需要消耗掉stream 以防卡死
  476. if (stream) {
  477. await sendToWormhole(stream);
  478. }
  479. responseData.err = 1;
  480. responseData.msg = err.toString();
  481. }
  482. ctx.body = responseData;
  483. }
  484. /**
  485. * 账号安全
  486. *
  487. * @param {object} ctx - egg全局变量
  488. * @return {void}
  489. */
  490. async safe(ctx) {
  491. // 获取当前用户数据
  492. const sessionUser = ctx.session.sessionUser;
  493. // 获取账号数据
  494. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: sessionUser.accountId });
  495. // 获取修改密码的字段规则
  496. // const passwordRule = ctx.service.projectAccount.rule('modifyPassword');
  497. // const passwordJsValidator = await this.jsValidator.convert(passwordRule).setSelector('#password-form').build();
  498. // console.log(passwordJsValidator);
  499. // 获取登录日志
  500. const loginLogging = await ctx.service.loginLogging.getLoginLogs(ctx.session.sessionProject.id, ctx.session.sessionUser.accountId);
  501. const renderData = {
  502. accountData,
  503. // passwordJsValidator,
  504. loginLogging,
  505. loginWay,
  506. };
  507. await this.layout('profile/safe.ejs', renderData);
  508. }
  509. /**
  510. * 微信通知
  511. *
  512. * @param {object} ctx - egg全局变量
  513. * @return {void}
  514. */
  515. async wechat(ctx) {
  516. // 获取当前用户数据
  517. const sessionUser = ctx.session.sessionUser;
  518. // 获取账号数据
  519. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: sessionUser.accountId });
  520. if (accountData.qywx_user_info !== null) {
  521. accountData.qywx_user_info = JSON.parse(accountData.qywx_user_info);
  522. }
  523. const renderData = {
  524. accountData,
  525. smsType: smsTypeConst.type,
  526. };
  527. await this.layout('profile/wechat.ejs', renderData, 'profile/wechat_modal.ejs');
  528. }
  529. /**
  530. * 微信解绑
  531. *
  532. * @param {object} ctx - egg全局变量
  533. * @return {void}
  534. */
  535. async removeWechat(ctx) {
  536. try {
  537. const sessionUser = ctx.session.sessionUser;
  538. // 获取账号数据
  539. const accountData = await ctx.service.projectAccount.getDataByCondition({ id: sessionUser.accountId });
  540. // 判断解绑类型
  541. if (ctx.request.body.data_type === 'wxWork') {
  542. const result = await ctx.service.projectAccount.bindWx4Work(sessionUser.accountId, null, null, null);
  543. if (!result) {
  544. throw '解绑企业微信失败!';
  545. }
  546. // 解绑成功通知
  547. const qywx = new wxWork(ctx);
  548. const desc = '您好,纵横云计量与企业微信解绑成功。';
  549. const content = [
  550. {
  551. keyname: '项目编号',
  552. value: ctx.session.sessionProject.code,
  553. },
  554. {
  555. keyname: '账号',
  556. value: sessionUser.account,
  557. },
  558. {
  559. keyname: '绑定时间',
  560. value: moment(new Date()).format('YYYY-MM-DD'),
  561. },
  562. {
  563. keyname: '备注',
  564. value: '感谢您的使用,要接收通知请重新绑定。',
  565. },
  566. ];
  567. const url = ctx.protocol + '://' + ctx.host + '/wx/tips?msg=解绑成功,感谢您的使用。';
  568. await qywx.sendTemplateCard([accountData.qywx_userid], accountData.qywx_corpid, '账号解绑成功通知', desc, content, url);
  569. this.setMessage('企业微信解绑成功', this.messageType.SUCCESS);
  570. } else {
  571. const result = await ctx.service.projectAccount.bindWx(sessionUser.accountId, null, null);
  572. if (!result) {
  573. throw '解绑微信失败!';
  574. }
  575. // 解绑成功通知
  576. const templateId = '0w0Yp65X4PHccTLeAyE5aQhS-blS-bylwxAPYEGy3CI';
  577. const url = '';
  578. const msgData = {
  579. first: {
  580. value: '您好,纵横云计量与微信解绑成功。',
  581. },
  582. keyword1: {
  583. value: ctx.session.sessionProject.code,
  584. },
  585. keyword2: {
  586. value: sessionUser.account,
  587. },
  588. keyword3: {
  589. value: moment(new Date()).format('YYYY-MM-DD'),
  590. },
  591. remark: {
  592. value: '感谢您的使用,要接收通知请重新绑定。',
  593. },
  594. };
  595. await app.wechat.api.sendTemplate(accountData.wx_openid, templateId, url, '', msgData);
  596. this.setMessage('微信解绑成功', this.messageType.SUCCESS);
  597. }
  598. } catch (error) {
  599. console.log(error);
  600. this.setMessage(error.toString(), this.messageType.ERROR);
  601. }
  602. ctx.redirect(ctx.request.header.referer);
  603. }
  604. }
  605. return ProfileController;
  606. };