UserController.php 27 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767
  1. <?php
  2. namespace App\Http\Controllers;
  3. use App\Http\Models\Article;
  4. use App\Http\Models\Coupon;
  5. use App\Http\Models\CouponLog;
  6. use App\Http\Models\Goods;
  7. use App\Http\Models\Invite;
  8. use App\Http\Models\Order;
  9. use App\Http\Models\OrderGoods;
  10. use App\Http\Models\SsNode;
  11. use App\Http\Models\SsNodeInfo;
  12. use App\Http\Models\SsNodeOnlineLog;
  13. use App\Http\Models\Ticket;
  14. use App\Http\Models\TicketReply;
  15. use App\Http\Models\User;
  16. use App\Http\Models\UserTrafficLog;
  17. use App\Http\Models\Verify;
  18. use App\Mail\activeUser;
  19. use App\Mail\resetPassword;
  20. use Illuminate\Http\Request;
  21. use Redirect;
  22. use Response;
  23. use Cache;
  24. use Mail;
  25. use DB;
  26. use Log;
  27. class UserController extends BaseController
  28. {
  29. protected static $config;
  30. function __construct()
  31. {
  32. self::$config = $this->systemConfig();
  33. }
  34. public function index(Request $request)
  35. {
  36. if (!$request->session()->has('user')) {
  37. return Redirect::to('login');
  38. }
  39. $view['articleList'] = Article::where('is_del', 0)->orderBy('sort', 'desc')->orderBy('id', 'desc')->paginate(5);
  40. $user = $request->session()->get('user');
  41. $user['totalTransfer'] = $this->flowAutoShow($user['transfer_enable'] - $user['u'] - $user['d']);
  42. $user['usedTransfer'] = $this->flowAutoShow($user['u'] - $user['d']);
  43. $view['info'] = $user;
  44. $view['wechat_qrcode'] = static::$config['wechat_qrcode'];
  45. $view['alipay_qrcode'] = static::$config['alipay_qrcode'];
  46. return Response::view('user/index', $view);
  47. }
  48. // 公告详情
  49. public function article(Request $request)
  50. {
  51. $id = $request->get('id');
  52. $view['info'] = Article::where('is_del', 0)->where('id', $id)->first();
  53. if (empty($view['info'])) {
  54. return Redirect::to('user');
  55. }
  56. return Response::view('user/article', $view);
  57. }
  58. // 修改个人资料
  59. public function profile(Request $request)
  60. {
  61. if (!$request->session()->has('user')) {
  62. return Redirect::to('login');
  63. }
  64. $user = $request->session()->get('user');
  65. if ($request->method() == 'POST') {
  66. $old_password = $request->get('old_password');
  67. $new_password = $request->get('new_password');
  68. $port = trim($request->get('port'));
  69. $passwd = trim($request->get('passwd'));
  70. $method = $request->get('method');
  71. $protocol = $request->get('protocol');
  72. $obfs = $request->get('obfs');
  73. // 修改密码
  74. if (!empty($old_password) && !empty($new_password)) {
  75. $old_password = md5(trim($old_password));
  76. $new_password = md5(trim($new_password));
  77. $user = User::where('id', $user['id'])->first();
  78. if ($user->password != $old_password) {
  79. $request->session()->flash('errorMsg', '旧密码错误,请重新输入');
  80. return Redirect::to('user/profile#tab_1');
  81. } else if ($user->password == $new_password) {
  82. $request->session()->flash('errorMsg', '新密码不可与旧密码一样,请重新输入');
  83. return Redirect::to('user/profile#tab_1');
  84. }
  85. $ret = User::where('id', $user['id'])->update(['password' => $new_password]);
  86. if (!$ret) {
  87. $request->session()->flash('errorMsg', '修改失败');
  88. return Redirect::to('user/profile#tab_1');
  89. } else {
  90. $request->session()->flash('successMsg', '修改成功');
  91. return Redirect::to('user/profile#tab_1');
  92. }
  93. }
  94. // 修改SS信息
  95. if (empty($port)) {
  96. $request->session()->flash('errorMsg', '端口不能为空');
  97. return Redirect::to('user/profile#tab_2');
  98. }
  99. if (empty($passwd)) {
  100. $request->session()->flash('errorMsg', '密码不能为空');
  101. return Redirect::to('user/profile#tab_2');
  102. }
  103. $data = [
  104. //'port' => $port,
  105. 'passwd' => $passwd,
  106. 'method' => $method,
  107. 'protocol' => $protocol,
  108. 'obfs' => $obfs
  109. ];
  110. $ret = User::where('id', $user['id'])->update($data);
  111. if (!$ret) {
  112. $request->session()->flash('errorMsg', '修改失败');
  113. return Redirect::to('user/profile#tab_2');
  114. } else {
  115. // 更新session
  116. $user = User::where('id', $user['id'])->first()->toArray();
  117. $request->session()->remove('user');
  118. $request->session()->put('user', $user);
  119. $request->session()->flash('successMsg', '修改成功');
  120. return Redirect::to('user/profile#tab_2');
  121. }
  122. } else {
  123. // 加密方式、协议、混淆
  124. $view['method_list'] = $this->methodList();
  125. $view['protocol_list'] = $this->protocolList();
  126. $view['obfs_list'] = $this->obfsList();
  127. $view['info'] = User::where('id', $user['id'])->first();
  128. return Response::view('user/profile', $view);
  129. }
  130. }
  131. // 节点列表
  132. public function nodeList(Request $request)
  133. {
  134. if (!$request->session()->has('user')) {
  135. return Redirect::to('login');
  136. }
  137. $user = $request->session()->get('user');
  138. $nodeList = SsNode::paginate(10);
  139. foreach ($nodeList as &$node) {
  140. // 在线人数
  141. $online_log = SsNodeOnlineLog::where('node_id', $node->id)->orderBy('id', 'desc')->first();
  142. $node->online_users = empty($online_log) ? 0 : $online_log->online_user;
  143. // 已产生流量
  144. $u = UserTrafficLog::where('node_id', $node->id)->sum('u');
  145. $d = UserTrafficLog::where('node_id', $node->id)->sum('d');
  146. $node->transfer = $this->flowAutoShow($u + $d);
  147. // 负载
  148. $node_info = SsNodeInfo::where('node_id', $node->id)->orderBy('id', 'desc')->first();
  149. $node->load = empty($node_info->load) ? 0 : $node_info->load;
  150. // 生成ssr scheme
  151. $ssr_str = '';
  152. $ssr_str .= $node->server . ':' . $user['port'];
  153. $ssr_str .= ':' . $user['protocol'] . ':' . $user['method'];
  154. $ssr_str .= ':' . $user['obfs'] . ':' . base64_encode($user['passwd']);
  155. $ssr_str .= '/?obfsparam=' . $user['obfs_param'];
  156. $ssr_str .= '&=protoparam' . $user['protocol_param'];
  157. $ssr_str .= '&remarks=' . base64_encode($node->name);
  158. $ssr_str = $this->base64url_encode($ssr_str);
  159. $ssr_scheme = 'ssr://' . $ssr_str;
  160. // 生成ss scheme
  161. $ss_str = '';
  162. $ss_str .= $user['method'] . ':' . $user['passwd'] . '@';
  163. $ss_str .= $node->server . ':' . $user['port'];
  164. $ss_str = $this->base64url_encode($ss_str) . '#' . 'VPN';
  165. $ss_scheme = 'ss://' . $ss_str;
  166. // 生成文本配置信息
  167. $txt = <<<TXT
  168. 服务器:{$node->server}
  169. 远程端口:{$user['port']}
  170. 本地端口:1080
  171. 密码:{$user['passwd']}
  172. 加密方法:{$user['method']}
  173. 协议:{$user['protocol']}
  174. 协议参数:{$user['protocol_param']}
  175. 混淆方式:{$user['obfs']}
  176. 混淆参数:{$user['obfs_param']}
  177. 路由:绕过局域网及中国大陆地址
  178. TXT;
  179. $node->txt = $txt;
  180. $node->ssr_scheme = $ssr_scheme;
  181. $node->ss_scheme = $ss_scheme;
  182. }
  183. $view['nodeList'] = $nodeList;
  184. return Response::view('user/nodeList', $view);
  185. }
  186. // 流量日志
  187. public function trafficLog(Request $request)
  188. {
  189. if (!$request->session()->has('user')) {
  190. return Redirect::to('login');
  191. }
  192. $user = $request->session()->get('user');
  193. // 30天内的流量
  194. $trafficList = \DB::select("SELECT date(from_unixtime(log_time)) AS dd, SUM(u) AS u, SUM(d) AS d FROM `user_traffic_log` WHERE `user_id` = {$user['id']} GROUP BY `dd`");
  195. foreach ($trafficList as $key => &$val) {
  196. $val->total = ($val->u + $val->d) / (1024 * 1024); // 以M为单位
  197. }
  198. $view['trafficList'] = $trafficList;
  199. return Response::view('user/trafficLog', $view);
  200. }
  201. // 商品列表
  202. public function goodsList(Request $request)
  203. {
  204. $view['goodsList'] = Goods::where('is_del', 0)->paginate(10);
  205. return Response::view('user/goodsList', $view);
  206. }
  207. // 工单
  208. public function ticketList(Request $request)
  209. {
  210. $user = $request->session()->get('user');
  211. $view['ticketList'] = Ticket::where('user_id', $user['id'])->paginate(10);
  212. return Response::view('user/ticketList', $view);
  213. }
  214. // 订单
  215. public function orderList(Request $request)
  216. {
  217. $user = $request->session()->get('user');
  218. $orderList = Order::where('user_id', $user['id'])->orderBy('oid', 'desc')->with('goodsList')->paginate(10);
  219. foreach ($orderList as &$order) {
  220. foreach ($order->goodsList as &$goods) {
  221. $g = Goods::where('id', $goods->goods_id)->first();
  222. $goods->goods_name = $g->name;
  223. }
  224. }
  225. $view['orderList'] = $orderList;
  226. return Response::view('user/orderList', $view);
  227. }
  228. // 添加工单
  229. public function addTicket(Request $request)
  230. {
  231. $title = $request->get('title');
  232. $content = $request->get('content');
  233. $user = $request->session()->get('user');
  234. $obj = new Ticket();
  235. $obj->user_id = $user['id'];
  236. $obj->title = $title;
  237. $obj->content = $content;
  238. $obj->status = 0;
  239. $obj->created_at = date('Y-m-d H:i:s');
  240. $obj->save();
  241. if ($obj->id) {
  242. return Response::json(['status' => 'success', 'data' => '', 'message' => '提交成功']);
  243. } else {
  244. return Response::json(['status' => 'fail', 'data' => '', 'message' => '提交失败']);
  245. }
  246. }
  247. // 回复工单
  248. public function replyTicket(Request $request)
  249. {
  250. $id = $request->get('id');
  251. $user = $request->session()->get('user');
  252. if ($request->method() == 'POST') {
  253. $content = $request->get('content');
  254. $obj = new TicketReply();
  255. $obj->ticket_id = $id;
  256. $obj->user_id = $user['id'];
  257. $obj->content = $content;
  258. $obj->created_at = date('Y-m-d H:i:s');
  259. $obj->save();
  260. if ($obj->id) {
  261. return Response::json(['status' => 'success', 'data' => '', 'message' => '回复成功']);
  262. } else {
  263. return Response::json(['status' => 'fail', 'data' => '', 'message' => '回复失败']);
  264. }
  265. } else {
  266. $ticket = Ticket::where('id', $id)->with('user')->first();
  267. if (empty($ticket) || $ticket->user_id != $user['id']) {
  268. return Redirect::to('user/ticketList');
  269. }
  270. $view['ticket'] = $ticket;
  271. $view['replyList'] = TicketReply::where('ticket_id', $id)->with('user')->orderBy('id', 'asc')->get();
  272. return Response::view('user/replyTicket', $view);
  273. }
  274. }
  275. // 关闭工单
  276. public function closeTicket(Request $request)
  277. {
  278. $id = $request->get('id');
  279. $user = $request->session()->get('user');
  280. $ret = Ticket::where('id', $id)->where('user_id', $user['id'])->update(['status' => 2]);
  281. if ($ret) {
  282. return Response::json(['status' => 'success', 'data' => '', 'message' => '关闭成功']);
  283. } else {
  284. return Response::json(['status' => 'fail', 'data' => '', 'message' => '关闭失败']);
  285. }
  286. }
  287. // 邀请码
  288. public function invite(Request $request)
  289. {
  290. if (!$request->session()->has('user')) {
  291. return Redirect::to('login');
  292. }
  293. $user = $request->session()->get('user');
  294. // 已生成的邀请码数量
  295. $num = Invite::where('uid', $user['id'])->count();
  296. $view['num'] = self::$config['invite_num'] - $num <= 0 ? 0 : self::$config['invite_num'] - $num; // 还可以生成的邀请码数量
  297. $view['inviteList'] = Invite::where('uid', $user['id'])->with(['generator', 'user'])->paginate(10); // 邀请码列表
  298. return Response::view('user/invite', $view);
  299. }
  300. // 生成邀请码
  301. public function makeInvite(Request $request)
  302. {
  303. if (!$request->session()->has('user')) {
  304. return Redirect::to('login');
  305. }
  306. $user = $request->session()->get('user');
  307. // 已生成的邀请码数量
  308. $num = Invite::where('uid', $user['id'])->count();
  309. if ($num >= self::$config['invite_num']) {
  310. return Response::json(['status' => 'fail', 'data' => '', 'message' => '生成失败:最多只能生成' . self::$config['invite_num'] . '个邀请码']);
  311. }
  312. $obj = new Invite();
  313. $obj->uid = $user['id'];
  314. $obj->fuid = 0;
  315. $obj->code = strtoupper(mb_substr(md5(microtime() . $this->makeRandStr(6)), 8, 16));
  316. $obj->status = 0;
  317. $obj->dateline = date('Y-m-d H:i:s', strtotime("+7 days"));
  318. $obj->save();
  319. return Response::json(['status' => 'success', 'data' => '', 'message' => '生成成功']);
  320. }
  321. // 激活账号页
  322. public function activeUser(Request $request)
  323. {
  324. if ($request->method() == 'POST') {
  325. $username = trim($request->get('username'));
  326. // 是否开启账号激活
  327. if (!self::$config['is_active_register']) {
  328. $request->session()->flash('errorMsg', '系统未开启账号激活功能,请联系管理员');
  329. return Redirect::back()->withInput();
  330. }
  331. // 查找账号
  332. $user = User::where('username', $username)->first();
  333. if (!$user) {
  334. $request->session()->flash('errorMsg', '账号不存在,请重试');
  335. return Redirect::back();
  336. } else if ($user->status < 0) {
  337. $request->session()->flash('errorMsg', '账号已禁止登陆,无需激活');
  338. return Redirect::back();
  339. } else if ($user->status > 0) {
  340. $request->session()->flash('errorMsg', '账号无需激活');
  341. return Redirect::back();
  342. }
  343. // 24小时内激活次数限制
  344. $activeTimes = 0;
  345. if (Cache::has('activeUser_' . md5($username))) {
  346. $activeTimes = Cache::get('activeUser_' . md5($username));
  347. if ($activeTimes >= self::$config['active_times']) {
  348. $request->session()->flash('errorMsg', '同一个账号24小时内只能请求激活' . self::$config['active_times'] . '次,请勿频繁操作');
  349. return Redirect::back();
  350. }
  351. }
  352. // 生成激活账号的地址
  353. $token = md5(self::$config['website_name'] . $username . microtime());
  354. $verify = new Verify();
  355. $verify->user_id = $user->id;
  356. $verify->username = $username;
  357. $verify->token = $token;
  358. $verify->status = 0;
  359. $verify->save();
  360. // 发送邮件
  361. $activeUserUrl = self::$config['website_url'] . '/active/' . $token;
  362. Mail::to($user->username)->send(new activeUser(self::$config['website_name'], $activeUserUrl));
  363. Cache::put('activeUser_' . md5($username), $activeTimes + 1, 1440);
  364. $request->session()->flash('successMsg', '邮件已发送,请查看邮箱');
  365. return Redirect::back();
  366. } else {
  367. $view['is_active_register'] = self::$config['is_active_register'];
  368. return Response::view('user/activeUser', $view);
  369. }
  370. }
  371. // 激活账号
  372. public function active(Request $request, $token)
  373. {
  374. if (empty($token)) {
  375. return Redirect::to('login');
  376. }
  377. $verify = Verify::where('token', $token)->with('user')->first();
  378. if (empty($verify)) {
  379. return Redirect::to('login');
  380. } else if ($verify->status == 1) {
  381. $request->session()->flash('errorMsg', '该链接已失效');
  382. return Response::view('user/active');
  383. } else if ($verify->user->status != 0) {
  384. $request->session()->flash('errorMsg', '该账号无需激活.');
  385. return Response::view('user/active');
  386. } else if (time() - strtotime($verify->created_at) >= 1800) {
  387. $request->session()->flash('errorMsg', '该链接已过期');
  388. // 置为已失效
  389. $verify->status = 2;
  390. $verify->save();
  391. return Response::view('user/active');
  392. }
  393. // 更新账号状态
  394. $ret = User::where('id', $verify->user_id)->update(['status' => 1]);
  395. if (!$ret) {
  396. $request->session()->flash('errorMsg', '账号激活失败');
  397. return Redirect::back();
  398. }
  399. // 置为已使用
  400. $verify->status = 1;
  401. $verify->save();
  402. $request->session()->flash('successMsg', '账号激活成功');
  403. return Response::view('user/active');
  404. }
  405. // 重设密码页
  406. public function resetPassword(Request $request)
  407. {
  408. if ($request->method() == 'POST') {
  409. $username = trim($request->get('username'));
  410. // 是否开启重设密码
  411. if (!self::$config['is_reset_password']) {
  412. $request->session()->flash('errorMsg', '系统未开启重置密码功能,请联系管理员');
  413. return Redirect::back()->withInput();
  414. }
  415. // 查找账号
  416. $user = User::where('username', $username)->first();
  417. if (!$user) {
  418. $request->session()->flash('errorMsg', '账号不存在,请重试');
  419. return Redirect::back();
  420. }
  421. // 24小时内重设密码次数限制
  422. $resetTimes = 0;
  423. if (Cache::has('resetPassword_' . md5($username))) {
  424. $resetTimes = Cache::get('resetPassword_' . md5($username));
  425. if ($resetTimes >= self::$config['reset_password_times']) {
  426. $request->session()->flash('errorMsg', '同一个账号24小时内只能重设密码' . self::$config['reset_password_times'] . '次,请勿频繁操作');
  427. return Redirect::back();
  428. }
  429. }
  430. // 生成取回密码的地址
  431. $token = md5(self::$config['website_name'] . $username . microtime());
  432. $verify = new Verify();
  433. $verify->user_id = $user->id;
  434. $verify->username = $username;
  435. $verify->token = $token;
  436. $verify->status = 0;
  437. $verify->save();
  438. // 发送邮件
  439. $resetPasswordUrl = self::$config['website_url'] . '/reset/' . $token;
  440. Mail::to($user->username)->send(new resetPassword(self::$config['website_name'], $resetPasswordUrl));
  441. Cache::put('resetPassword_' . md5($username), $resetTimes + 1, 1440);
  442. $request->session()->flash('successMsg', '重置成功,请查看邮箱');
  443. return Redirect::back();
  444. } else {
  445. $view['is_reset_password'] = self::$config['is_reset_password'];
  446. return Response::view('user/resetPassword', $view);
  447. }
  448. }
  449. // 重设密码
  450. public function reset(Request $request, $token)
  451. {
  452. if ($request->method() == 'POST') {
  453. $password = trim($request->get('password'));
  454. $repassword = trim($request->get('repassword'));
  455. if (empty($token)) {
  456. return Redirect::to('login');
  457. } else if (empty($password) || empty($repassword)) {
  458. $request->session()->flash('errorMsg', '密码不能为空');
  459. return Redirect::back();
  460. } else if (md5($password) != md5($repassword)) {
  461. $request->session()->flash('errorMsg', '两次输入密码不一致,请重新输入');
  462. return Redirect::back();
  463. }
  464. // 校验账号
  465. $verify = Verify::where('token', $token)->with('User')->first();
  466. if (empty($verify)) {
  467. return Redirect::to('login');
  468. } else if ($verify->status == 1) {
  469. $request->session()->flash('errorMsg', '该链接已失效');
  470. return Redirect::back();
  471. } else if ($verify->user->status < 0) {
  472. $request->session()->flash('errorMsg', '账号已被禁用');
  473. return Redirect::back();
  474. } else if (md5($password) == $verify->user->password) {
  475. $request->session()->flash('errorMsg', '新旧密码一样,请重新输入');
  476. return Redirect::back();
  477. }
  478. // 更新密码
  479. $ret = User::where('id', $verify->user_id)->update(['password' => md5($password)]);
  480. if (!$ret) {
  481. $request->session()->flash('errorMsg', '重设密码失败');
  482. return Redirect::back();
  483. }
  484. // 置为已使用
  485. $verify->status = 1;
  486. $verify->save();
  487. $request->session()->flash('successMsg', '新密码设置成功,请自行登录');
  488. return Redirect::back();
  489. } else {
  490. if (empty($token)) {
  491. return Redirect::to('login');
  492. }
  493. $verify = Verify::where('token', $token)->with('user')->first();
  494. if (empty($verify)) {
  495. return Redirect::to('login');
  496. } else if (time() - strtotime($verify->created_at) >= 1800) {
  497. $request->session()->flash('errorMsg', '该链接已过期');
  498. // 置为已失效
  499. $verify->status = 2;
  500. $verify->save();
  501. return Response::view('user/reset');
  502. }
  503. $view['verify'] = $verify;
  504. return Response::view('user/reset', $view);
  505. }
  506. }
  507. // 使用优惠券
  508. public function redeemCoupon(Request $request)
  509. {
  510. $coupon_sn = $request->get('coupon_sn');
  511. if (empty($coupon_sn)) {
  512. return Response::json(['status' => 'fail', 'data' => '', 'message' => '优惠券不能为空']);
  513. }
  514. $coupon = Coupon::where('sn', $coupon_sn)->where('is_del', 0)->first();
  515. if (empty($coupon)) {
  516. return Response::json(['status' => 'fail', 'data' => '', 'message' => '该优惠券不存在']);
  517. } else if ($coupon->status == 1) {
  518. return Response::json(['status' => 'fail', 'data' => '', 'message' => '该优惠券已使用,请换一个试试']);
  519. } else if ($coupon->status == 2) {
  520. return Response::json(['status' => 'fail', 'data' => '', 'message' => '该优惠券已失效,请换一个试试']);
  521. } else if ($coupon->available_start > time() || $coupon->available_end < time()) {
  522. $coupon->status = 2;
  523. $coupon->save();
  524. return Response::json(['status' => 'fail', 'data' => '', 'message' => '该优惠券已失效,请换一个试试']);
  525. }
  526. $data = [
  527. 'type' => $coupon->type,
  528. 'amount' => $coupon->amount,
  529. 'discount' => $coupon->discount
  530. ];
  531. return Response::json(['status' => 'success', 'data' => $data, 'message' => '该优惠券有效']);
  532. }
  533. // 添加订单
  534. public function addOrder(Request $request)
  535. {
  536. $goods_id = intval($request->get('goods_id'));
  537. $coupon_sn = $request->get('coupon_sn');
  538. $user = $request->session()->get('user');
  539. if ($request->method() == 'POST') {
  540. $goods = Goods::where('id', $goods_id)->first();
  541. if (empty($goods)) {
  542. return Response::json(['status' => 'fail', 'data' => '', 'message' => '支付失败:商品不存在']);
  543. }
  544. // 使用优惠券
  545. if (!empty($coupon_sn)) {
  546. $coupon = Coupon::where('sn', $coupon_sn)->where('is_del', 0)->where('status', 0)->first();
  547. if (empty($coupon)) {
  548. return Response::json(['status' => 'fail', 'data' => '', 'message' => '支付失败:优惠券不存在']);
  549. }
  550. // 计算实际应支付总价
  551. $totalPrice = $coupon->type == 2 ? $goods->price * $coupon->discount : $goods->price - $coupon->amount;
  552. $totalPrice = $totalPrice > 0 ? $totalPrice : 0;
  553. } else {
  554. $totalPrice = $goods->price;
  555. }
  556. // 扣减账号余额
  557. $user = User::where('id', $user['id'])->first();
  558. if ($user->balance < $totalPrice) {
  559. return Response::json(['status' => 'fail', 'data' => '', 'message' => '支付失败:您的余额不足,请先充值']);
  560. } else {
  561. User::where('id', $user['id'])->decrement('balance', $totalPrice);
  562. // TODO:记录日志
  563. }
  564. // 订单长ID
  565. $orderId = date('YmdHis') . mt_rand(100000, 999999);
  566. DB::beginTransaction();
  567. try {
  568. $order = new Order();
  569. $order->orderId = $orderId;
  570. $order->user_id = $user['id'];
  571. $order->coupon_id = !empty($coupon) ? $coupon->id : 0;
  572. $order->totalOriginalPrice = $goods->price;
  573. $order->totalPrice = $totalPrice;
  574. $order->status = 2;
  575. $order->save();
  576. if ($order->oid) {
  577. $orderGoods = new OrderGoods();
  578. $orderGoods->oid = $order->oid;
  579. $orderGoods->orderId = $orderId;
  580. $orderGoods->user_id = $user['id'];
  581. $orderGoods->goods_id = $goods_id;
  582. $orderGoods->num = 1;
  583. $orderGoods->original_price = $goods->price;
  584. $orderGoods->price = $totalPrice;
  585. $orderGoods->save();
  586. }
  587. // 优惠券置为已使用
  588. if (!empty($coupon)) {
  589. if ($coupon->usage == 1) {
  590. $coupon->status = 1;
  591. $coupon->save();
  592. }
  593. // 写入日志
  594. $couponLogObj = new CouponLog();
  595. $couponLogObj->coupon_id = $coupon->id;
  596. $couponLogObj->order_id = $order->id;
  597. $couponLogObj->save();
  598. }
  599. DB::commit();
  600. return Response::json(['status' => 'success', 'data' => '', 'message' => '支付成功']);
  601. } catch (\Exception $e) {
  602. DB::rollBack();
  603. Log::error('支付订单失败:' . $e);
  604. return Response::json(['status' => 'fail', 'data' => '', 'message' => '支付失败']);
  605. }
  606. } else {
  607. $view['goods'] = Goods::where('id', $goods_id)->first();
  608. return Response::view('user/addOrder', $view);
  609. }
  610. }
  611. }