User.php 4.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150
  1. <?php
  2. // +----------------------------------------------------------------------
  3. // | 海豚PHP框架 [ DolphinPHP ]
  4. // +----------------------------------------------------------------------
  5. // | 版权所有 2016~2019 广东卓锐软件有限公司 [ http://www.zrthink.com ]
  6. // +----------------------------------------------------------------------
  7. // | 官方网站: http://dolphinphp.com
  8. // +----------------------------------------------------------------------
  9. namespace app\user\model;
  10. use think\Model;
  11. use think\helper\Hash;
  12. use app\user\model\Role as RoleModel;
  13. use think\Db;
  14. /**
  15. * 后台用户模型
  16. * @package app\admin\model
  17. */
  18. class User extends Model
  19. {
  20. // 设置当前模型对应的完整数据表名称
  21. protected $name = 'admin_user';
  22. // 自动写入时间戳
  23. protected $autoWriteTimestamp = true;
  24. // 对密码进行加密
  25. public function setPasswordAttr($value)
  26. {
  27. return Hash::make((string)$value);
  28. }
  29. // 获取注册ip
  30. public function setSignupIpAttr()
  31. {
  32. return get_client_ip(1);
  33. }
  34. /**
  35. * 用户登录
  36. * @param string $username 用户名
  37. * @param string $password 密码
  38. * @param bool $rememberme 记住登录
  39. * @author 蔡伟明 <314013107@qq.com>
  40. * @return bool|mixed
  41. */
  42. public function login($username = '', $password = '', $rememberme = false)
  43. {
  44. $username = trim($username);
  45. $password = trim($password);
  46. // 匹配登录方式
  47. if (preg_match("/^([a-zA-Z0-9_\.\-])+\@(([a-zA-Z0-9\-])+\.)+([a-zA-Z0-9]{2,4})+$/", $username)) {
  48. // 邮箱登录
  49. $map['email'] = $username;
  50. } elseif (preg_match("/^1\d{10}$/", $username)) {
  51. // 手机号登录
  52. $map['mobile'] = $username;
  53. } else {
  54. // 用户名登录
  55. $map['username'] = $username;
  56. }
  57. $map['status'] = 1;
  58. // 查找用户
  59. $user = $this::get($map);
  60. if (!$user) {
  61. $this->error = '用户不存在或被禁用!';
  62. } else {
  63. // 检查是否分配用户组
  64. if ($user['role'] == 0) {
  65. $this->error = '禁止访问,原因:未分配角色!';
  66. return false;
  67. }
  68. // 检查是可登录后台
  69. if (!RoleModel::where(['id' => $user['role'], 'status' => 1])->value('access')) {
  70. $this->error = '禁止访问,用户所在角色未启用或禁止访问后台!';
  71. return false;
  72. }
  73. if (!Hash::check((string)$password, $user['password'])) {
  74. $this->error = '账号或者密码错误!';
  75. } else {
  76. $uid = $user['id'];
  77. // 更新登录信息
  78. $user['last_login_time'] = request()->time();
  79. $user['last_login_ip'] = request()->ip(1);
  80. if ($user->save()) {
  81. // 自动登录
  82. return $this->autoLogin($this::get($uid), $rememberme);
  83. } else {
  84. // 更新登录信息失败
  85. $this->error = '登录信息更新失败,请重新登录!';
  86. return false;
  87. }
  88. }
  89. }
  90. return false;
  91. }
  92. /**
  93. * 自动登录
  94. * @param object $user 用户对象
  95. * @param bool $rememberme 是否记住登录,默认7天
  96. * @author 蔡伟明 <314013107@qq.com>
  97. * @return bool|int
  98. */
  99. public function autoLogin($user, $rememberme = false)
  100. {
  101. // 记录登录SESSION和COOKIES
  102. $auth = array(
  103. 'uid' => $user->id,
  104. 'group' => $user->group,
  105. 'role' => $user->role,
  106. 'role_name' => Db::name('admin_role')->where('id', $user->role)->value('name'),
  107. 'avatar' => $user->avatar,
  108. 'username' => $user->username,
  109. 'nickname' => $user->nickname,
  110. 'last_login_time' => $user->last_login_time,
  111. 'last_login_ip' => get_client_ip(1),
  112. );
  113. session('user_auth', $auth);
  114. session('user_auth_sign', data_auth_sign($auth));
  115. // 保存用户节点权限
  116. if ($user->role != 1) {
  117. $menu_auth = Db::name('admin_role')->where('id', session('user_auth.role'))->value('menu_auth');
  118. $menu_auth = json_decode($menu_auth, true);
  119. if (!$menu_auth) {
  120. session('user_auth', null);
  121. session('user_auth_sign', null);
  122. $this->error = '未分配任何节点权限!';
  123. return false;
  124. }
  125. }
  126. // 记住登录
  127. if ($rememberme) {
  128. $signin_token = $user->username.$user->id.$user->last_login_time;
  129. cookie('uid', $user->id, 24 * 3600 * 7);
  130. cookie('signin_token', data_auth_sign($signin_token), 24 * 3600 * 7);
  131. }
  132. return $user->id;
  133. }
  134. }