UserController.php 6.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239
  1. <?php
  2. namespace App\Http\Controllers\User;
  3. use App\Http\Controllers\Controller;
  4. use App\Http\Requests\User\UserTransfer;
  5. use App\Http\Requests\User\UserUpdate;
  6. use App\Http\Requests\User\UserChangePassword;
  7. use App\Services\AuthService;
  8. use App\Services\UserService;
  9. use App\Utils\CacheKey;
  10. use Illuminate\Http\Request;
  11. use App\Models\User;
  12. use App\Models\Plan;
  13. use App\Models\Ticket;
  14. use App\Utils\Helper;
  15. use App\Models\Order;
  16. use Illuminate\Support\Facades\Cache;
  17. class UserController extends Controller
  18. {
  19. public function getActiveSession(Request $request)
  20. {
  21. $user = User::find($request->user['id']);
  22. if (!$user) {
  23. abort(500, __('The user does not exist'));
  24. }
  25. $authService = new AuthService($user);
  26. return response([
  27. 'data' => $authService->getSessions()
  28. ]);
  29. }
  30. public function removeActiveSession(Request $request)
  31. {
  32. $user = User::find($request->user['id']);
  33. if (!$user) {
  34. abort(500, __('The user does not exist'));
  35. }
  36. $authService = new AuthService($user);
  37. return response([
  38. 'data' => $authService->removeSession($request->input('session_id'))
  39. ]);
  40. }
  41. public function checkLogin(Request $request)
  42. {
  43. $data = [
  44. 'is_login' => $request->user['id'] ? true : false
  45. ];
  46. if ($request->user['is_admin']) {
  47. $data['is_admin'] = true;
  48. }
  49. return response([
  50. 'data' => $data
  51. ]);
  52. }
  53. public function changePassword(UserChangePassword $request)
  54. {
  55. $user = User::find($request->user['id']);
  56. if (!$user) {
  57. abort(500, __('The user does not exist'));
  58. }
  59. if (!Helper::multiPasswordVerify(
  60. $user->password_algo,
  61. $user->password_salt,
  62. $request->input('old_password'),
  63. $user->password)
  64. ) {
  65. abort(500, __('The old password is wrong'));
  66. }
  67. $user->password = password_hash($request->input('new_password'), PASSWORD_DEFAULT);
  68. $user->password_algo = NULL;
  69. $user->password_salt = NULL;
  70. if (!$user->save()) {
  71. abort(500, __('Save failed'));
  72. }
  73. return response([
  74. 'data' => true
  75. ]);
  76. }
  77. public function info(Request $request)
  78. {
  79. $user = User::where('id', $request->user['id'])
  80. ->select([
  81. 'email',
  82. 'transfer_enable',
  83. 'last_login_at',
  84. 'created_at',
  85. 'banned',
  86. 'remind_expire',
  87. 'remind_traffic',
  88. 'expired_at',
  89. 'balance',
  90. 'commission_balance',
  91. 'plan_id',
  92. 'discount',
  93. 'commission_rate',
  94. 'telegram_id',
  95. 'uuid'
  96. ])
  97. ->first();
  98. if (!$user) {
  99. abort(500, __('The user does not exist'));
  100. }
  101. $user['avatar_url'] = 'https://cdn.v2ex.com/gravatar/' . md5($user->email) . '?s=64&d=identicon';
  102. return response([
  103. 'data' => $user
  104. ]);
  105. }
  106. public function getStat(Request $request)
  107. {
  108. $stat = [
  109. Order::where('status', 0)
  110. ->where('user_id', $request->user['id'])
  111. ->count(),
  112. Ticket::where('status', 0)
  113. ->where('user_id', $request->user['id'])
  114. ->count(),
  115. User::where('invite_user_id', $request->user['id'])
  116. ->count()
  117. ];
  118. return response([
  119. 'data' => $stat
  120. ]);
  121. }
  122. public function getSubscribe(Request $request)
  123. {
  124. $user = User::where('id', $request->user['id'])
  125. ->select([
  126. 'plan_id',
  127. 'token',
  128. 'expired_at',
  129. 'u',
  130. 'd',
  131. 'transfer_enable',
  132. 'email',
  133. 'uuid'
  134. ])
  135. ->first();
  136. if (!$user) {
  137. abort(500, __('The user does not exist'));
  138. }
  139. if ($user->plan_id) {
  140. $user['plan'] = Plan::find($user->plan_id);
  141. if (!$user['plan']) {
  142. abort(500, __('Subscription plan does not exist'));
  143. }
  144. }
  145. $user['subscribe_url'] = Helper::getSubscribeUrl("/api/v1/client/subscribe?token={$user['token']}");
  146. $userService = new UserService();
  147. $user['reset_day'] = $userService->getResetDay($user);
  148. return response([
  149. 'data' => $user
  150. ]);
  151. }
  152. public function resetSecurity(Request $request)
  153. {
  154. $user = User::find($request->user['id']);
  155. if (!$user) {
  156. abort(500, __('The user does not exist'));
  157. }
  158. $user->uuid = Helper::guid(true);
  159. $user->token = Helper::guid();
  160. if (!$user->save()) {
  161. abort(500, __('Reset failed'));
  162. }
  163. return response([
  164. 'data' => Helper::getSubscribeUrl('/api/v1/client/subscribe?token=' . $user->token)
  165. ]);
  166. }
  167. public function update(UserUpdate $request)
  168. {
  169. $updateData = $request->only([
  170. 'remind_expire',
  171. 'remind_traffic'
  172. ]);
  173. $user = User::find($request->user['id']);
  174. if (!$user) {
  175. abort(500, __('The user does not exist'));
  176. }
  177. try {
  178. $user->update($updateData);
  179. } catch (\Exception $e) {
  180. abort(500, __('Save failed'));
  181. }
  182. return response([
  183. 'data' => true
  184. ]);
  185. }
  186. public function transfer(UserTransfer $request)
  187. {
  188. $user = User::find($request->user['id']);
  189. if (!$user) {
  190. abort(500, __('The user does not exist'));
  191. }
  192. if ($request->input('transfer_amount') > $user->commission_balance) {
  193. abort(500, __('Insufficient commission balance'));
  194. }
  195. $user->commission_balance = $user->commission_balance - $request->input('transfer_amount');
  196. $user->balance = $user->balance + $request->input('transfer_amount');
  197. if (!$user->save()) {
  198. abort(500, __('Transfer failed'));
  199. }
  200. return response([
  201. 'data' => true
  202. ]);
  203. }
  204. public function getQuickLoginUrl(Request $request)
  205. {
  206. $user = User::find($request->user['id']);
  207. if (!$user) {
  208. abort(500, __('The user does not exist'));
  209. }
  210. $code = Helper::guid();
  211. $key = CacheKey::get('TEMP_TOKEN', $code);
  212. Cache::put($key, $user->id, 60);
  213. $redirect = '/#/login?verify=' . $code . '&redirect=' . ($request->input('redirect') ? $request->input('redirect') : 'dashboard');
  214. if (config('v2board.app_url')) {
  215. $url = config('v2board.app_url') . $redirect;
  216. } else {
  217. $url = url($redirect);
  218. }
  219. return response([
  220. 'data' => $url
  221. ]);
  222. }
  223. }