LoginController.php 3.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use App\Components\Helpers;
  4. use App\Http\Controllers\Controller;
  5. use App\Http\Models\User;
  6. use App\Http\Models\UserSubscribe;
  7. use App\Http\Models\UserSubscribeLog;
  8. use Illuminate\Http\Request;
  9. use Response;
  10. use Cache;
  11. use DB;
  12. /**
  13. * 登录接口
  14. *
  15. * Class LoginController
  16. *
  17. * @package App\Http\Controllers
  18. */
  19. class LoginController extends Controller
  20. {
  21. protected static $systemConfig;
  22. function __construct()
  23. {
  24. self::$systemConfig = Helpers::systemConfig();
  25. }
  26. // 登录返回订阅信息
  27. public function login(Request $request)
  28. {
  29. $username = trim($request->get('username'));
  30. $password = trim($request->get('password'));
  31. $cacheKey = 'request_times_' . md5(getClientIp());
  32. // 连续请求失败15次,则封IP一小时
  33. if (Cache::has($cacheKey)) {
  34. if (Cache::get($cacheKey) >= 15) {
  35. return Response::json(['status' => 'fail', 'data' => [], 'message' => '请求失败超限,禁止访问1小时']);
  36. }
  37. } else {
  38. Cache::put($cacheKey, 1, 60);
  39. }
  40. if (!$username || !$password) {
  41. Cache::increment($cacheKey);
  42. return Response::json(['status' => 'fail', 'data' => [], 'message' => '账号或密码错误']);
  43. }
  44. $user = User::query()->where('username', $username)->where('password', md5($password))->where('status', '>=', 0)->first();
  45. if (!$user) {
  46. Cache::increment($cacheKey);
  47. return Response::json(['status' => 'fail', 'data' => [], 'message' => '账号不存在或已被禁用']);
  48. }
  49. DB::beginTransaction();
  50. try {
  51. // 如果未生成过订阅链接则生成一个
  52. $subscribe = UserSubscribe::query()->where('user_id', $user->id)->first();
  53. if (!$subscribe) {
  54. $code = $this->makeSubscribeCode();
  55. $subscribe = new UserSubscribe();
  56. $subscribe->user_id = $user->id;
  57. $subscribe->code = $code;
  58. $subscribe->times = 0;
  59. $subscribe->save();
  60. } else {
  61. $code = $subscribe->code;
  62. }
  63. // 更新订阅链接访问次数
  64. $subscribe->increment('times', 1);
  65. // 记录每次请求
  66. $this->log($subscribe->id, getClientIp(), 'API访问');
  67. // 处理用户信息
  68. unset($user->password, $user->reg_ip, $user->remark, $user->usage, $user->remember_token, $user->created_at, $user->updated_at);
  69. $data['user'] = $user;
  70. // 订阅链接
  71. $data['link'] = self::$systemConfig['subscribe_domain'] ? self::$systemConfig['subscribe_domain'] . '/s/' . $code : self::$systemConfig['website_url'] . '/s/' . $code;
  72. DB::commit();
  73. return Response::json(['status' => 'success', 'data' => $data, 'message' => '登录成功']);
  74. } catch (\Exception $e) {
  75. DB::rollBack();
  76. return Response::json(['status' => 'success', 'data' => [], 'message' => '登录失败']);
  77. }
  78. }
  79. // 写入订阅访问日志
  80. private function log($subscribeId, $ip, $headers)
  81. {
  82. $log = new UserSubscribeLog();
  83. $log->sid = $subscribeId;
  84. $log->request_ip = $ip;
  85. $log->request_time = date('Y-m-d H:i:s');
  86. $log->request_header = $headers;
  87. $log->save();
  88. }
  89. }