wechat_controller.js 23 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563
  1. 'use strict';
  2. /**
  3. *
  4. *
  5. * @author Ellisran
  6. * @date 2020/7/2
  7. * @version
  8. */
  9. const moment = require('moment');
  10. // const Controller = require('egg').Controller;
  11. const crypto = require('crypto');
  12. const qywxCrypto = require('@wecom/crypto');
  13. const getRawBody = require('raw-body');
  14. const maintainConst = require('../const/maintain');
  15. const wxConst = require('../const/wechat_template.js');
  16. const smsTypeConst = require('../const/sms_type');
  17. const wxWork = require('../lib/wx_work');
  18. module.exports = app => {
  19. class WechatController extends app.BaseController {
  20. /**
  21. * 接入微信
  22. *
  23. * @param {Object} ctx - egg全局页面
  24. * @return {void}
  25. */
  26. async index(ctx) {
  27. try {
  28. const signature = ctx.query.signature;
  29. const timestamp = ctx.query.timestamp;
  30. const nonce = ctx.query.nonce;
  31. const echostr = ctx.query.echostr;
  32. const array = [ctx.app.config.wechatAll.token, timestamp, nonce];
  33. array.sort();
  34. const tempStr = array.join('');
  35. const hashCode = crypto.createHash('sha1');
  36. const resultCode = hashCode.update(tempStr, 'utf8').digest('hex');
  37. if (resultCode === signature) {
  38. ctx.body = echostr;
  39. // res.send(echostr);
  40. } else {
  41. throw '验证失败';
  42. }
  43. } catch (e) {
  44. console.log(e);
  45. }
  46. }
  47. /**
  48. * 微信登录验证
  49. *
  50. * @param {Object} ctx - egg全局页面
  51. * @return {void}
  52. */
  53. async oauth(ctx) {
  54. const redirect_uri = ctx.query.redirect_uri;
  55. const url = await app.wechat.oauth.getAuthorizeURL(redirect_uri, '', 'snsapi_userinfo');
  56. ctx.redirect(url);
  57. }
  58. /**
  59. * 绑定页面
  60. *
  61. * @param {Object} ctx - egg全局页面
  62. * @return {void}
  63. */
  64. async bind(ctx) {
  65. try {
  66. const user = await app.wechat.oauth.getUser(ctx.session.wechatToken.openid);
  67. const errorMessage = ctx.session.loginError;
  68. // 显示完删除
  69. ctx.session.loginError = null;
  70. // 获取系统维护信息
  71. const maintainData = await ctx.service.maintain.getDataById(1);
  72. const renderData = {
  73. maintainData,
  74. maintainConst,
  75. errorMessage,
  76. user,
  77. };
  78. await ctx.render('wechat/bind.ejs', renderData);
  79. } catch (e) {
  80. const renderData = {
  81. status: 1,
  82. msg: e,
  83. };
  84. await ctx.render('wechat/tips.ejs', renderData);
  85. }
  86. }
  87. async bindwx(ctx) {
  88. try {
  89. const result = await ctx.service.projectAccount.accountCheck(ctx.request.body);
  90. if (!result) {
  91. throw '用户名或密码错误';
  92. }
  93. if (result === 2) {
  94. // 查找项目数据
  95. const projectData = await this.ctx.service.project.getProjectByCode(ctx.request.body.project.toString().trim());
  96. // 判断是否有设置停用提示,有则展示
  97. const msg = await ctx.service.projectStopmsg.getMsg(projectData.id);
  98. throw msg;
  99. }
  100. const accountData = result;
  101. if (accountData.wx_openid || ctx.session.wechatToken.openid === accountData.wx_openid) {
  102. throw '该账号已经绑定过微信';
  103. }
  104. const wxAccountData = await ctx.service.projectAccount.getDataByCondition({ project_id: accountData.project_id, wx_openid: ctx.session.wechatToken.openid });
  105. if (wxAccountData) {
  106. throw '该微信号已绑定过本项目账号';
  107. }
  108. const user = await app.wechat.api.getUser(ctx.session.wechatToken.openid);
  109. if (user.subscribe === 0) {
  110. throw '先关注公众号才能绑定项目';
  111. }
  112. const result2 = await ctx.service.projectAccount.bindWx(accountData.id, ctx.session.wechatToken.openid, user.nickname, user.unionid);
  113. if (!result2) {
  114. throw '绑定失败';
  115. }
  116. const projectData = await ctx.service.project.getDataById(accountData.project_id);
  117. // 绑定成功通知
  118. const templateId = 'JGJeWU2FT4syWKUE5haEf3iiqaRJ1XrsxY1PKixqLpw';
  119. const url = '';
  120. const msgData = {
  121. first: {
  122. value: '您好,纵横云计量与微信绑定成功。',
  123. },
  124. keyword1: {
  125. value: projectData.code,
  126. },
  127. keyword2: {
  128. value: accountData.account,
  129. },
  130. keyword3: {
  131. value: moment(new Date()).format('YYYY-MM-DD'),
  132. },
  133. remark: {
  134. value: '感谢您的使用。',
  135. },
  136. };
  137. await app.wechat.api.sendTemplate(ctx.session.wechatToken.openid, templateId, url, '', msgData);
  138. const renderData = {
  139. status: 0,
  140. msg: '绑定成功',
  141. };
  142. await ctx.render('wechat/tips.ejs', renderData);
  143. } catch (error) {
  144. this.log(error);
  145. ctx.session.loginError = error;
  146. ctx.redirect('/wx/bind');
  147. }
  148. }
  149. // 设置用户微信登录项目,跳转到对应wap页面
  150. async url2wap(ctx) {
  151. try {
  152. if (!ctx.query.project || !ctx.query.url) {
  153. throw '参数有误';
  154. }
  155. const code = ctx.query.project;
  156. // 查找项目数据
  157. const projectData = await ctx.service.project.getProjectByCode(code.toString().trim());
  158. if (projectData === null) {
  159. throw '不存在项目数据';
  160. }
  161. const pa = await ctx.service.projectAccount.getDataByCondition({ project_id: projectData.id, wx_openid: ctx.session.wechatToken.openid });
  162. if (!pa) {
  163. throw '该微信号未绑定此项目';
  164. }
  165. if (pa.enable !== 1) {
  166. // 判断是否有设置停用提示,有则展示
  167. const msg = await ctx.service.projectStopmsg.getMsg(projectData.id);
  168. throw msg;
  169. }
  170. // 设置项目和用户session记录
  171. const result = await ctx.service.projectAccount.accountLogin({ project: projectData, accountData: pa }, 3);
  172. if (!result) {
  173. throw '登录出错';
  174. }
  175. ctx.redirect(ctx.query.url);
  176. } catch (error) {
  177. const renderData = {
  178. status: 1,
  179. msg: error,
  180. };
  181. await ctx.render('wechat/tips.ejs', renderData);
  182. }
  183. }
  184. async project(ctx) {
  185. try {
  186. // const user = await app.wechat.oauth.getUser(ctx.session.wechatToken.openid);
  187. const openid = ctx.session.wechatToken.openid;
  188. // const openid = 'fasdfklahsdklf';
  189. const paList = await ctx.service.projectAccount.getAllDataByCondition({ where: { wx_openid: openid } });
  190. const pidList = ctx.app._.uniq(ctx.app._.map(paList, 'project_id'));
  191. const pList = [];
  192. const redirect_url = ctx.protocol + '://' + ctx.host + '/wap/dashboard';
  193. for (const p of pidList) {
  194. const pro = await ctx.service.project.getDataById(p);
  195. pList.push(pro);
  196. }
  197. if (pList.length === 0) {
  198. throw '该微信号未绑定任何项目';
  199. }
  200. // 获取系统维护信息
  201. const maintainData = await ctx.service.maintain.getDataById(1);
  202. const renderData = {
  203. maintainData,
  204. maintainConst,
  205. // user,
  206. pList,
  207. redirect_url,
  208. };
  209. // ctx.body = renderData;
  210. await ctx.render('wechat/project.ejs', renderData);
  211. } catch (e) {
  212. const renderData = {
  213. status: 1,
  214. msg: e,
  215. };
  216. await ctx.render('wechat/tips.ejs', renderData);
  217. }
  218. }
  219. async oauthTxt(ctx) {
  220. ctx.body = 't3MkWAMqplVxPjmr';
  221. }
  222. async testwx(ctx) {
  223. try {
  224. const sck = 'https://scn.ink/';
  225. // 微信模板通知
  226. const tender = {
  227. data: {
  228. name: 'XXX标段',
  229. },
  230. info: {
  231. deal_info: {
  232. buildName: 'XX项目',
  233. },
  234. },
  235. };
  236. ctx.tender = tender;
  237. const stageInfo = await ctx.service.stage.getDataById(1704);
  238. const shenpiUrl = await ctx.helper.urlToShort(ctx.protocol + '://' + ctx.host + '/wap/tender/1998/stage/' + stageInfo.order);
  239. const wechatData = {
  240. wap_url: sck + shenpiUrl,
  241. qi: stageInfo.order,
  242. status: wxConst.status.success,
  243. tips: wxConst.tips.success,
  244. code: 'P1002',
  245. };
  246. // ctx.body = { tender, wechatData };
  247. await ctx.helper.sendWechat(133, smsTypeConst.const.JL, smsTypeConst.judge.result.toString(), wxConst.template.stage, wechatData);
  248. ctx.body = 'success';
  249. } catch (error) {
  250. console.log(error);
  251. ctx.body = error;
  252. }
  253. }
  254. // 企业微信功能
  255. // 回调方法
  256. async command(ctx) {
  257. try {
  258. const msg_signature = ctx.query.msg_signature;
  259. const timestamp = ctx.query.timestamp;
  260. const nonce = ctx.query.nonce;
  261. const echostr = ctx.query.echostr;
  262. const signature = qywxCrypto.getSignature(ctx.app.config.qywx.token, timestamp, nonce, echostr);
  263. if (signature === msg_signature) {
  264. const aeskey = ctx.app.config.qywx.encodingAESKey;
  265. const { message } = qywxCrypto.decrypt(aeskey, echostr);
  266. ctx.body = message;
  267. // res.send(message);
  268. } else {
  269. throw '验证失败';
  270. }
  271. } catch (e) {
  272. console.log(e);
  273. }
  274. }
  275. // 获取suite_ticket方法
  276. async postCommand(ctx) {
  277. try {
  278. // ctx.req才能获取到rawbody
  279. const wholeXML = await getRawBody(ctx.req, {
  280. length: ctx.headers['content-length'],
  281. limit: '1mb',
  282. encoding: 'utf-8',
  283. });
  284. const formatJson = await ctx.helper.parseXML(wholeXML);
  285. const messageXML = qywxCrypto.decrypt(ctx.app.config.qywx.encodingAESKey, formatJson.Encrypt);
  286. const callbackDataBody = await ctx.helper.parseXML(messageXML.message);
  287. console.log('CallbackData', callbackDataBody);
  288. const qywx = new wxWork(ctx);
  289. switch (callbackDataBody.InfoType) {
  290. case 'suite_ticket':
  291. // 刷新
  292. console.log('SuiteTicket', callbackDataBody.SuiteTicket);
  293. await qywx.setSuiteTicket(callbackDataBody.SuiteTicket);
  294. // await app.redis.set('suite_ticket', callbackDataBody.SuiteTicket, 'EX', 1500);
  295. break;
  296. case 'reset_permanent_code':
  297. case 'create_auth':
  298. console.log('AuthCode', callbackDataBody.AuthCode);
  299. await qywx.savePermanentCode(callbackDataBody.AuthCode);
  300. qywx.setPermanentCode();// 不用马上执行,有执行就行
  301. break;
  302. case 'cancel_auth':
  303. // 企业管理员删除应用
  304. await ctx.service.wxWork.delCorp(callbackDataBody.AuthCorpId);
  305. break;
  306. default:
  307. break;
  308. }
  309. // 很重要,一定要返回 success 字符串
  310. ctx.body = 'success';
  311. } catch (e) {
  312. console.log(e);
  313. }
  314. }
  315. async oauthWxWorkTxt(ctx) {
  316. ctx.body = 'CZwGPbI7BRGOBUX1';
  317. }
  318. /**
  319. * 企业微信登录验证
  320. *
  321. * @param {Object} ctx - egg全局页面
  322. * @return {void}
  323. */
  324. async workOauth(ctx) {
  325. const corpid = ctx.params.corpid;
  326. const redirect_uri = encodeURIComponent(ctx.query.redirect_uri);
  327. const corpInfo = await ctx.service.wxWork.getDataByCondition({ corpid });
  328. const url = `https://open.weixin.qq.com/connect/oauth2/authorize?appid=${corpid}&redirect_uri=${redirect_uri}&response_type=code&scope=snsapi_privateinfo&state=STATE&agentid=${corpInfo.agentid}#wechat_redirect`;
  329. ctx.redirect(url);
  330. }
  331. async workBind(ctx) {
  332. try {
  333. const qywx = new wxWork(ctx);
  334. const token = await qywx.getCorpAccessToken(ctx.params.corpid);
  335. const user = await qywx.getCorpUser(token, ctx.query.code);
  336. if (!user) {
  337. throw '获取企业用户信息失败';
  338. }
  339. const errorMessage = ctx.session.loginError;
  340. // 显示完删除
  341. ctx.session.loginError = null;
  342. // 获取系统维护信息
  343. const maintainData = await ctx.service.maintain.getDataById(1);
  344. const renderData = {
  345. maintainData,
  346. maintainConst,
  347. errorMessage,
  348. user,
  349. corpid: ctx.params.corpid,
  350. };
  351. await ctx.render('wechat/work_bind.ejs', renderData);
  352. } catch (error) {
  353. console.log(error);
  354. const renderData = {
  355. status: 1,
  356. msg: error,
  357. };
  358. await ctx.render('wechat/tips.ejs', renderData);
  359. }
  360. }
  361. async workBindwx(ctx) {
  362. const corpid = ctx.request.body.corpid ? ctx.request.body.corpid : null;
  363. try {
  364. const result = await ctx.service.projectAccount.accountCheck(ctx.request.body);
  365. if (!result) {
  366. throw '用户名或密码错误';
  367. }
  368. if (result === 2) {
  369. // 查找项目数据
  370. const projectData = await this.ctx.service.project.getProjectByCode(ctx.request.body.project.toString().trim());
  371. // 判断是否有设置停用提示,有则展示
  372. const msg = await ctx.service.projectStopmsg.getMsg(projectData.id);
  373. throw msg;
  374. }
  375. const accountData = result;
  376. const qywx_userid = ctx.request.body.userid;
  377. if (!qywx_userid || !corpid) {
  378. throw '参数有误';
  379. }
  380. if (accountData.qywx_userid || qywx_userid === accountData.qywx_userid) {
  381. throw '该账号已经绑定过企业微信';
  382. }
  383. const wxAccountData = await ctx.service.projectAccount.getDataByCondition({ project_id: accountData.project_id, qywx_userid });
  384. if (wxAccountData) {
  385. throw '该企业微信号已绑定过本项目其它账号';
  386. }
  387. const qywx = new wxWork(ctx);
  388. const token = await qywx.getCorpAccessToken(corpid);
  389. const user = await qywx.getCorpUserCommonData(token, qywx_userid, corpid);
  390. if (!user) {
  391. throw '获取企业用户信息失败';
  392. }
  393. user.avatar = ctx.request.body.avatar !== undefined ? ctx.request.body.avatar : null;
  394. user.gender = ctx.request.body.gender !== undefined ? ctx.request.body.gender : null;
  395. const result2 = await ctx.service.projectAccount.bindWx4Work(accountData.id, corpid, qywx_userid, user);
  396. if (!result2) {
  397. throw '绑定失败';
  398. }
  399. const projectData = await ctx.service.project.getDataById(accountData.project_id);
  400. const desc = '您好,纵横云计量与企业微信绑定成功。';
  401. const content = [
  402. {
  403. keyname: '项目编号',
  404. value: projectData.code,
  405. },
  406. {
  407. keyname: '账号',
  408. value: accountData.account,
  409. },
  410. {
  411. keyname: '绑定时间',
  412. value: moment(new Date()).format('YYYY-MM-DD'),
  413. },
  414. {
  415. keyname: '备注',
  416. value: '感谢您的使用。',
  417. },
  418. ];
  419. const url = ctx.protocol + '://' + ctx.host + `/wx/work/${corpid}/project`;
  420. await qywx.sendTemplateCard([qywx_userid], corpid, '账号绑定成功通知', desc, content, url, '登录项目');
  421. const renderData = {
  422. status: 0,
  423. msg: '绑定成功',
  424. };
  425. await ctx.render('wechat/tips.ejs', renderData);
  426. } catch (error) {
  427. this.log(error);
  428. ctx.session.loginError = error;
  429. const returnUrl = corpid ? `/wx/work/${corpid}/bind` : '/';
  430. ctx.redirect(returnUrl);
  431. }
  432. }
  433. // 设置用户企业微信登录项目,跳转到对应wap页面
  434. async url2wap4work(ctx) {
  435. try {
  436. if (!ctx.query.project || !ctx.query.url) {
  437. throw '参数有误';
  438. }
  439. const code = ctx.query.project;
  440. // 查找项目数据
  441. const projectData = await ctx.service.project.getProjectByCode(code.toString().trim());
  442. if (projectData === null) {
  443. throw '不存在项目数据';
  444. }
  445. const qywx = new wxWork(ctx);
  446. const token = await qywx.getCorpAccessToken(ctx.params.corpid);
  447. const user = await qywx.getCorpUser(token, ctx.query.code);
  448. if (!user) {
  449. throw '获取企业用户信息失败';
  450. }
  451. const pa = await ctx.service.projectAccount.getDataByCondition({ project_id: projectData.id, qywx_userid: user.userid });
  452. if (!pa) {
  453. throw '该企业微信号未绑定此项目';
  454. }
  455. if (pa.enable !== 1) {
  456. // 判断是否有设置停用提示,有则展示
  457. const msg = await ctx.service.projectStopmsg.getMsg(projectData.id);
  458. throw msg;
  459. }
  460. // 设置项目和用户session记录
  461. const result = await ctx.service.projectAccount.accountLogin({ project: projectData, accountData: pa }, 3);
  462. if (!result) {
  463. throw '登录出错';
  464. }
  465. ctx.redirect(ctx.query.url);
  466. } catch (error) {
  467. const renderData = {
  468. status: 1,
  469. msg: error,
  470. };
  471. await ctx.render('wechat/tips.ejs', renderData);
  472. }
  473. }
  474. async workProject(ctx) {
  475. try {
  476. // const user = await app.wechat.oauth.getUser(ctx.session.wechatToken.openid);
  477. const qywx = new wxWork(ctx);
  478. const token = await qywx.getCorpAccessToken(ctx.params.corpid);
  479. const user = await qywx.getCorpUser(token, ctx.query.code);
  480. if (!user) {
  481. throw '获取企业用户信息失败';
  482. }
  483. const paList = await ctx.service.projectAccount.getAllDataByCondition({ where: { qywx_userid: user.userid } });
  484. const pidList = ctx.app._.uniq(ctx.app._.map(paList, 'project_id'));
  485. const pList = [];
  486. const isWap = ctx.helper.isMobile(ctx.request.header['user-agent']) ? '/wap' : '';
  487. const redirect_url = ctx.protocol + '://' + ctx.host + isWap + '/dashboard';
  488. for (const p of pidList) {
  489. const pro = await ctx.service.project.getDataById(p);
  490. pList.push(pro);
  491. }
  492. if (pList.length === 0) {
  493. throw '该企业微信号未绑定任何项目';
  494. }
  495. // 获取系统维护信息
  496. const maintainData = await ctx.service.maintain.getDataById(1);
  497. const renderData = {
  498. maintainData,
  499. maintainConst,
  500. // user,
  501. pList,
  502. redirect_url,
  503. corpid: ctx.params.corpid,
  504. };
  505. // ctx.body = renderData;
  506. await ctx.render('wechat/work_project.ejs', renderData);
  507. } catch (e) {
  508. const renderData = {
  509. status: 1,
  510. msg: e,
  511. };
  512. await ctx.render('wechat/tips.ejs', renderData);
  513. }
  514. }
  515. async workTest(ctx) {
  516. try {
  517. // const user = await app.wechat.oauth.getUser(ctx.session.wechatToken.openid);
  518. const qywx = new wxWork(ctx);
  519. const result = await qywx.getUserList(ctx.params.corpid);
  520. ctx.body = result;
  521. } catch (e) {
  522. const renderData = {
  523. status: 1,
  524. msg: e,
  525. };
  526. await ctx.render('wechat/tips.ejs', renderData);
  527. }
  528. }
  529. async tips(ctx) {
  530. const renderData = {
  531. status: 0,
  532. msg: ctx.query.msg,
  533. };
  534. await ctx.render('wechat/tips.ejs', renderData);
  535. }
  536. }
  537. return WechatController;
  538. };