UserController.php 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317
  1. <?php
  2. namespace App\Http\Controllers\Admin;
  3. use App\Components\Helpers;
  4. use App\Components\IP;
  5. use App\Http\Controllers\Controller;
  6. use App\Http\Requests\Admin\UserStoreRequest;
  7. use App\Http\Requests\Admin\UserUpdateRequest;
  8. use App\Jobs\VNet\getUser;
  9. use App\Models\Level;
  10. use App\Models\Node;
  11. use App\Models\Order;
  12. use App\Models\User;
  13. use App\Models\UserGroup;
  14. use App\Models\UserHourlyDataFlow;
  15. use App\Models\UserOauth;
  16. use Arr;
  17. use Auth;
  18. use Exception;
  19. use Illuminate\Http\JsonResponse;
  20. use Illuminate\Http\Request;
  21. use Log;
  22. use Response;
  23. use Session;
  24. use Spatie\Permission\Models\Role;
  25. use Str;
  26. class UserController extends Controller
  27. {
  28. public function index(Request $request)
  29. {
  30. $query = User::with('subscribe');
  31. foreach (['id', 'port', 'status', 'enable', 'user_group_id', 'level'] as $field) {
  32. $request->whenFilled($field, function ($value) use ($query, $field) {
  33. $query->where($field, $value);
  34. });
  35. }
  36. foreach (['username', 'wechat', 'qq'] as $field) {
  37. $request->whenFilled($field, function ($value) use ($query, $field) {
  38. $query->where($field, 'like', "%{$value}%");
  39. });
  40. }
  41. // 流量超过100G的
  42. $request->whenFilled('largeTraffic', function () use ($query) {
  43. $query->whereIn('status', [0, 1])->whereRaw('(u + d)/transfer_enable >= 0.9');
  44. });
  45. // 临近过期提醒
  46. $request->whenFilled('expireWarning', function () use ($query) {
  47. $query->whereBetween('expired_at', [date('Y-m-d'), date('Y-m-d', strtotime(sysConfig('expire_days').' days'))]);
  48. });
  49. // 当前在线
  50. $request->whenFilled('online', function () use ($query) {
  51. $query->where('t', '>=', strtotime('-10 minutes'));
  52. });
  53. // 不活跃用户
  54. $request->whenFilled('unActive', function () use ($query) {
  55. $query->whereBetween('t', [1, strtotime('-'.sysConfig('expire_days').' days')])->whereEnable(1);
  56. });
  57. // 不活跃用户
  58. $request->whenFilled('paying', function () use ($query) {
  59. $payingUser = Order::whereStatus(2)->where('goods_id', '<>', null)->whereIsExpire(0)->where('amount', '>', 0)->pluck('user_id')->unique();
  60. $query->whereIn('id', $payingUser);
  61. });
  62. // 1小时内流量异常用户
  63. $request->whenFilled('flowAbnormal', function () use ($query) {
  64. $query->whereIn('id', (new UserHourlyDataFlow)->trafficAbnormal());
  65. });
  66. return view('admin.user.index', [
  67. 'userList' => $query->sortable(['id' => 'desc'])->paginate(15)->appends($request->except('page')),
  68. 'userGroups' => UserGroup::all()->pluck('name', 'id')->toArray(),
  69. 'levels' => Level::all()->pluck('name', 'level')->toArray(),
  70. ]);
  71. }
  72. public function store(UserStoreRequest $request): JsonResponse
  73. {
  74. $data = $request->validated();
  75. Arr::forget($data, 'roles');
  76. $data['password'] = $data['password'] ?? Str::random();
  77. $data['port'] = $data['port'] ?? Helpers::getPort();
  78. $data['passwd'] = $data['passwd'] ?? Str::random();
  79. $data['vmess_id'] = $data['uuid'] ?? Str::uuid();
  80. Arr::forget($data, 'uuid');
  81. $data['transfer_enable'] *= GB;
  82. $data['expired_at'] = $data['expired_at'] ?? date('Y-m-d', strtotime('365 days'));
  83. $data['remark'] = str_replace(['atob', 'eval'], '', $data['remark']);
  84. $data['reg_ip'] = IP::getClientIp();
  85. $data['reset_time'] = $data['reset_time'] > date('Y-m-d') ? $data['reset_time'] : null;
  86. $user = User::create($data);
  87. $roles = $request->input('roles');
  88. try {
  89. $adminUser = Auth::getUser();
  90. if ($roles && ($adminUser->can('give roles') || (in_array('Super Admin', $roles, true) && $adminUser->hasRole('Super Admin')))) {
  91. // 编辑用户权限
  92. // 只有超级管理员才有赋予超级管理的权限
  93. $user->assignRole($roles);
  94. }
  95. if ($user) {
  96. // 写入用户流量变动记录
  97. Helpers::addUserTrafficModifyLog($user->id, null, 0, $data['transfer_enable'], '后台手动添加用户');
  98. return Response::json(['status' => 'success', 'message' => '添加成功']);
  99. }
  100. } catch (Exception $e) {
  101. Log::error('添加用户错误:'.$e->getMessage());
  102. return Response::json(['status' => 'fail', 'message' => $e->getMessage()]);
  103. }
  104. return Response::json(['status' => 'fail', 'message' => '添加失败']);
  105. }
  106. public function create()
  107. {
  108. if (Auth::getUser()->hasRole('Super Admin')) { // 超级管理员直接获取全部角色
  109. $roles = Role::all()->pluck('description', 'name');
  110. } elseif (Auth::getUser()->can('give roles')) { // 有权者只能获得已有角色,防止权限泛滥
  111. $roles = Auth::getUser()->roles()->pluck('description', 'name');
  112. }
  113. return view('admin.user.info', [
  114. 'levels' => Level::orderBy('level')->get(),
  115. 'userGroups' => UserGroup::orderBy('id')->get(),
  116. 'roles' => $roles ?? null,
  117. ]);
  118. }
  119. public function edit(User $user)
  120. {
  121. if (Auth::getUser()->hasRole('Super Admin')) { // 超级管理员直接获取全部角色
  122. $roles = Role::all()->pluck('description', 'name');
  123. } elseif (Auth::getUser()->can('give roles')) { // 有权者只能获得已有角色,防止权限泛滥
  124. $roles = Auth::getUser()->roles()->pluck('description', 'name');
  125. }
  126. return view('admin.user.info', [
  127. 'user' => $user->load('inviter:id,username'),
  128. 'levels' => Level::orderBy('level')->get(),
  129. 'userGroups' => UserGroup::orderBy('id')->get(),
  130. 'roles' => $roles ?? null,
  131. ]);
  132. }
  133. public function destroy(User $user)
  134. {
  135. if ($user->id === 1) {
  136. return Response::json(['status' => 'fail', 'message' => '系统管理员不可删除']);
  137. }
  138. try {
  139. if ($user->delete()) {
  140. return Response::json(['status' => 'success', 'message' => '删除成功']);
  141. }
  142. } catch (Exception $e) {
  143. Log::error('删除用户信息异常:'.$e->getMessage());
  144. return Response::json(['status' => 'fail', 'message' => '删除失败'.$e->getMessage()]);
  145. }
  146. return Response::json(['status' => 'fail', 'message' => '删除失败']);
  147. }
  148. public function batchAddUsers()
  149. {
  150. try {
  151. for ($i = 0; $i < (int) request('amount', 1); $i++) {
  152. $user = Helpers::addUser(Str::random(8).'@auto.generate', Str::random(), 1024 * GB, 365);
  153. // 写入用户流量变动记录
  154. Helpers::addUserTrafficModifyLog($user->id, null, 0, 1024 * GB, '后台批量生成用户');
  155. }
  156. return Response::json(['status' => 'success', 'message' => '批量生成账号成功']);
  157. } catch (Exception $e) {
  158. return Response::json(['status' => 'fail', 'message' => '批量生成账号失败:'.$e->getMessage()]);
  159. }
  160. }
  161. public function switchToUser(User $user): JsonResponse
  162. {
  163. // 存储当前管理员ID,并将当前登录信息改成要切换的用户的身份信息
  164. Session::put('admin', Auth::id());
  165. Session::put('user', $user->id);
  166. return Response::json(['status' => 'success', 'message' => '身份切换成功']);
  167. }
  168. public function resetTraffic(User $user): JsonResponse
  169. {
  170. try {
  171. $user->update(['u' => 0, 'd' => 0]);
  172. } catch (Exception $e) {
  173. Log::error('流量重置失败:'.$e->getMessage());
  174. return Response::json(['status' => 'fail', 'message' => '流量重置失败']);
  175. }
  176. return Response::json(['status' => 'success', 'message' => '流量重置成功']);
  177. }
  178. public function update(UserUpdateRequest $request, User $user)
  179. {
  180. $data = $request->validated();
  181. $data['passwd'] = $request->input('passwd') ?? Str::random();
  182. $data['vmess_id'] = $data['uuid'] ?? Str::uuid();
  183. Arr::forget($data, ['roles', 'uuid', 'password']);
  184. $data['transfer_enable'] *= GB;
  185. $data['enable'] = $data['status'] < 0 ? 0 : $data['enable'];
  186. $data['expired_at'] = $data['expired_at'] ?? date('Y-m-d', strtotime('365 days'));
  187. $data['remark'] = str_replace(['atob', 'eval'], '', $data['remark']);
  188. // 只有超级管理员才能赋予超级管理员
  189. $roles = $request->input('roles');
  190. try {
  191. if (isset($roles)) {
  192. $adminUser = Auth::getUser();
  193. if ($adminUser->can('give roles') || $adminUser->hasRole('Super Admin')
  194. || (in_array('Super Admin', $roles, true) && Auth::getUser()->hasRole('Super Admin'))) {
  195. $user->syncRoles($roles);
  196. }
  197. } else {
  198. $user->roles()->detach();
  199. }
  200. // Input checking for dummy
  201. if ($data['enable'] === '1') {
  202. if ($data['status'] === '-1' || $data['transfer_enable'] === 0 || $data['expired_at'] < date('Y-m-d')) {
  203. $data['enable'] = 0;
  204. }
  205. }
  206. // 非演示环境才可以修改管理员密码
  207. $password = $request->input('password');
  208. if (! empty($password) && ! (config('app.demo') && $user->id === 1)) {
  209. $data['password'] = $password;
  210. }
  211. // 写入用户流量变动记录
  212. if ($user->transfer_enable !== $data['transfer_enable']) {
  213. Helpers::addUserTrafficModifyLog($user->id, null, $user->transfer_enable, $data['transfer_enable'], '后台手动编辑用户');
  214. }
  215. if ($user->update($data)) {
  216. return Response::json(['status' => 'success', 'message' => '编辑成功']);
  217. }
  218. } catch (Exception $e) {
  219. Log::error('编辑用户信息异常:'.$e->getMessage());
  220. return Response::json(['status' => 'fail', 'message' => '编辑用户信息错误:'.$e->getMessage()]);
  221. }
  222. return Response::json(['status' => 'fail', 'message' => '编辑失败']);
  223. }
  224. public function handleUserCredit(Request $request, User $user): JsonResponse
  225. {
  226. $amount = $request->input('amount');
  227. if (empty($amount)) {
  228. return Response::json(['status' => 'fail', 'message' => '充值异常']);
  229. }
  230. // 加减余额
  231. if ($user->updateCredit($amount)) {
  232. Helpers::addUserCreditLog($user->id, null, $user->credit - $amount, $user->credit, $amount, $request->input('description') ?? '后台手动充值'); // 写入余额变动日志
  233. return Response::json(['status' => 'success', 'message' => '充值成功']);
  234. }
  235. return Response::json(['status' => 'fail', 'message' => '充值失败']);
  236. }
  237. public function export(User $user)
  238. {
  239. return view('admin.user.export', [
  240. 'user' => $user,
  241. 'nodeList' => Node::whereStatus(1)->orderByDesc('sort')->orderBy('id')->paginate(15)->appends(\request('page')),
  242. ]);
  243. }
  244. public function exportProxyConfig(Request $request, User $user): JsonResponse
  245. {
  246. $server = Node::findOrFail($request->input('id'))->getConfig($user); // 提取节点信息
  247. return Response::json(['status' => 'success', 'data' => $this->getUserNodeInfo($server, $request->input('type') !== 'text'), 'title' => $server['type']]);
  248. }
  249. public function oauth()
  250. {
  251. $list = UserOauth::with('user:id,username')->paginate(15)->appends(\request('page'));
  252. return view('admin.user.oauth', compact('list'));
  253. }
  254. public function VNetInfo(User $user)
  255. {
  256. $nodes = $user->nodes()->whereType(4)->get(['node.id', 'node.name']);
  257. $nodeList = (new getUser())->existsinVNet($user);
  258. foreach ($nodes as $node) {
  259. $node->avaliable = in_array($node->id, $nodeList, true) ? '✔️' : '❌';
  260. }
  261. return Response::json(['status' => 'success', 'data' => $nodes]);
  262. }
  263. }