SysUserController.java 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269
  1. package com.zhongzheng.controller.system;
  2. import cn.hutool.core.bean.BeanUtil;
  3. import cn.hutool.core.lang.Validator;
  4. import com.github.xiaoymin.knife4j.annotations.ApiOperationSupport;
  5. import com.github.xiaoymin.knife4j.annotations.DynamicParameter;
  6. import com.github.xiaoymin.knife4j.annotations.DynamicParameters;
  7. import com.zhongzheng.common.annotation.Log;
  8. import com.zhongzheng.common.constant.Constants;
  9. import com.zhongzheng.common.constant.UserConstants;
  10. import com.zhongzheng.common.core.bo.SysUserEditBo;
  11. import com.zhongzheng.common.core.controller.BaseController;
  12. import com.zhongzheng.common.core.domain.AjaxResult;
  13. import com.zhongzheng.common.core.domain.entity.SysRole;
  14. import com.zhongzheng.common.core.domain.entity.SysUser;
  15. import com.zhongzheng.common.core.domain.model.LoginUser;
  16. import com.zhongzheng.common.core.page.TableDataInfo;
  17. import com.zhongzheng.common.enums.BusinessType;
  18. import com.zhongzheng.common.exception.CustomException;
  19. import com.zhongzheng.common.exception.user.UserPasswordNotMatchException;
  20. import com.zhongzheng.common.utils.MessageUtils;
  21. import com.zhongzheng.common.utils.SecurityUtils;
  22. import com.zhongzheng.common.utils.ServletUtils;
  23. import com.zhongzheng.common.utils.poi.ExcelUtil;
  24. import com.zhongzheng.framework.manager.AsyncManager;
  25. import com.zhongzheng.framework.manager.factory.AsyncFactory;
  26. import com.zhongzheng.framework.web.service.TokenService;
  27. import com.zhongzheng.modules.exam.domain.ExamConfig;
  28. import com.zhongzheng.modules.system.service.ISysPostService;
  29. import com.zhongzheng.modules.system.service.ISysRoleService;
  30. import com.zhongzheng.modules.system.service.ISysUserService;
  31. import io.swagger.annotations.Api;
  32. import io.swagger.annotations.ApiImplicitParam;
  33. import io.swagger.annotations.ApiOperation;
  34. import org.springframework.beans.factory.annotation.Autowired;
  35. import org.springframework.security.access.prepost.PreAuthorize;
  36. import org.springframework.security.authentication.AuthenticationManager;
  37. import org.springframework.security.authentication.BadCredentialsException;
  38. import org.springframework.security.authentication.UsernamePasswordAuthenticationToken;
  39. import org.springframework.security.core.Authentication;
  40. import org.springframework.validation.annotation.Validated;
  41. import org.springframework.web.bind.annotation.*;
  42. import org.springframework.web.multipart.MultipartFile;
  43. import javax.annotation.Resource;
  44. import java.util.List;
  45. import java.util.stream.Collectors;
  46. /**
  47. * 用户信息
  48. *
  49. * @author zhongzheng
  50. */
  51. @Api(tags ="用户信息管理")
  52. @RestController
  53. @RequestMapping("/system/user")
  54. public class SysUserController extends BaseController
  55. {
  56. @Autowired
  57. private ISysUserService userService;
  58. @Autowired
  59. private ISysRoleService roleService;
  60. @Autowired
  61. private ISysPostService postService;
  62. @Autowired
  63. private TokenService tokenService;
  64. @Resource
  65. private AuthenticationManager authenticationManager;
  66. /**
  67. * 获取用户列表
  68. */
  69. @ApiOperation("获取用户列表")
  70. @PreAuthorize("@ss.hasPermi('system:user:list')")
  71. @GetMapping("/list")
  72. public TableDataInfo list(SysUser user)
  73. {
  74. startPage();
  75. List<SysUser> list = userService.selectUserList(user);
  76. return getDataTable(list);
  77. }
  78. @Log(title = "用户管理", businessType = BusinessType.EXPORT)
  79. @PreAuthorize("@ss.hasPermi('system:user:export')")
  80. @GetMapping("/export")
  81. public AjaxResult export(SysUser user)
  82. {
  83. List<SysUser> list = userService.selectUserList(user);
  84. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  85. return util.exportExcel(list, "用户数据");
  86. }
  87. @Log(title = "用户管理", businessType = BusinessType.IMPORT)
  88. @PreAuthorize("@ss.hasPermi('system:user:import')")
  89. @PostMapping("/importData")
  90. /* public AjaxResult importData(MultipartFile file, boolean updateSupport) throws Exception
  91. {
  92. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  93. List<SysUser> userList = util.importExcel(file.getInputStream());
  94. LoginUser loginUser = tokenService.getLoginUser(ServletUtils.getRequest());
  95. String operName = loginUser.getUsername();
  96. String message = userService.importUser(userList, updateSupport, operName);
  97. return AjaxResult.success(message);
  98. }*/
  99. @GetMapping("/importTemplate")
  100. public AjaxResult importTemplate()
  101. {
  102. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  103. return util.importTemplateExcel("用户数据");
  104. }
  105. /**
  106. * 根据用户编号获取详细信息
  107. */
  108. @ApiOperation("获取用户详细")
  109. @ApiImplicitParam(name = "userId", value = "用户ID", required = true, dataType = "int", paramType = "path")
  110. @PreAuthorize("@ss.hasPermi('system:user:query')")
  111. @GetMapping(value = { "/{userId}" })
  112. public AjaxResult getInfo(@PathVariable(value = "userId", required = false) Long userId)
  113. {
  114. AjaxResult ajax = AjaxResult.success();
  115. List<SysRole> roles = roleService.selectRoleAll();
  116. SysUser sysUser = userService.selectUserById(userId);
  117. ajax.put("roles", SysUser.isAdmin(sysUser.getUserName()) ? roles : roles.stream().filter(r -> !r.isAdmin()).collect(Collectors.toList()));
  118. ajax.put("posts", postService.selectPostAll());
  119. if (Validator.isNotNull(userId))
  120. {
  121. ajax.put(AjaxResult.DATA_TAG, userService.selectUserById(userId));
  122. ajax.put("postIds", postService.selectPostListByUserId(userId));
  123. ajax.put("roleIds", roleService.selectRoleListByUserId(userId));
  124. }
  125. return ajax;
  126. }
  127. /**
  128. * 新增用户
  129. */
  130. @ApiOperation("新增用户")
  131. @ApiOperationSupport(ignoreParameters = {"id","orderDate.id"})
  132. @PreAuthorize("@ss.hasPermi('system:user:add')")
  133. @Log(title = "用户管理", businessType = BusinessType.INSERT)
  134. @PostMapping
  135. public AjaxResult add(@Validated @RequestBody SysUser user)
  136. {
  137. if (UserConstants.NOT_UNIQUE.equals(userService.checkUserNameUnique(user.getUserName())))
  138. {
  139. return AjaxResult.error("新增用户'" + user.getUserName() + "'失败,登录账号已存在");
  140. }
  141. else if (Validator.isNotEmpty(user.getPhonenumber())
  142. && UserConstants.NOT_UNIQUE.equals(userService.checkPhoneUnique(user)))
  143. {
  144. return AjaxResult.error("新增用户'" + user.getUserName() + "'失败,手机号码已存在");
  145. }
  146. else if (Validator.isNotEmpty(user.getEmail())
  147. && UserConstants.NOT_UNIQUE.equals(userService.checkEmailUnique(user)))
  148. {
  149. return AjaxResult.error("新增用户'" + user.getUserName() + "'失败,邮箱账号已存在");
  150. }
  151. user.setCreateBy(SecurityUtils.getUsername());
  152. user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
  153. return toAjax(userService.insertUser(user));
  154. }
  155. /**
  156. * 修改用户
  157. */
  158. @ApiOperation("更新用户")
  159. @PreAuthorize("@ss.hasPermi('system:user:edit')")
  160. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  161. @PostMapping("/edit")
  162. public AjaxResult edit(@Validated @RequestBody SysUserEditBo bo)
  163. {
  164. SysUser user = BeanUtil.toBean(bo, SysUser.class);
  165. userService.checkUserAllowed(user);
  166. LoginUser loginUser = tokenService.getLoginUser(ServletUtils.getRequest());
  167. if(!loginUser.getUser().isAdmin()&&loginUser.getUser().getUserId()!=user.getUserId()){
  168. return AjaxResult.error("您无权限修改本信息");
  169. }
  170. if (Validator.isNotEmpty(user.getPhonenumber())
  171. && UserConstants.NOT_UNIQUE.equals(userService.checkPhoneUnique(user)))
  172. {
  173. return AjaxResult.error("修改用户'" + user.getUserName() + "'失败,手机号码已存在");
  174. }
  175. else if (Validator.isNotEmpty(user.getEmail())
  176. && UserConstants.NOT_UNIQUE.equals(userService.checkEmailUnique(user)))
  177. {
  178. return AjaxResult.error("修改用户'" + user.getUserName() + "'失败,邮箱账号已存在");
  179. }
  180. if(Validator.isNotEmpty(user.getPassword())){
  181. //重置密码
  182. if(!loginUser.getUser().isAdmin()){
  183. //普通用户需传入旧密码修改
  184. // 旧密码用户验证
  185. Authentication authentication = null;
  186. try
  187. {
  188. // 该方法会去调用UserDetailsServiceImpl.loadUserByUsername
  189. authentication = authenticationManager
  190. .authenticate(new UsernamePasswordAuthenticationToken(loginUser.getUser().getUserName(), bo.getOldPassword()));
  191. }
  192. catch (Exception e)
  193. {
  194. return AjaxResult.error("旧密码错误");
  195. }
  196. }
  197. user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
  198. }
  199. user.setUpdateBy(SecurityUtils.getUsername());
  200. int result = userService.updateUser(user);
  201. if(result>0){
  202. SysUser newUser = userService.selectUserByUserName(loginUser.getUser().getUserName());
  203. //同个用户ID则更新用户信息,admin操作则不更新
  204. if(newUser.getUserId()==loginUser.getUser().getUserId()){
  205. // 更新缓存用户
  206. loginUser.setUser(newUser);
  207. }
  208. tokenService.setLoginUser(loginUser);
  209. }
  210. return toAjax(result);
  211. }
  212. /**
  213. * 删除用户
  214. */
  215. /* @ApiOperation("删除用户信息")
  216. @ApiImplicitParam(name = "userId", value = "用户ID", required = true, dataType = "int", paramType = "path")
  217. @PreAuthorize("@ss.hasPermi('system:user:remove')")
  218. @Log(title = "用户管理", businessType = BusinessType.DELETE)
  219. @DeleteMapping("/{userIds}")
  220. public AjaxResult remove(@PathVariable Long[] userIds)
  221. {
  222. return toAjax(userService.deleteUserByIds(userIds));
  223. }*/
  224. /**
  225. * 重置密码
  226. */
  227. /* @PreAuthorize("@ss.hasPermi('system:user:resetPwd')")
  228. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  229. @PostMapping("/resetPwd")
  230. public AjaxResult resetPwd(@RequestBody SysUser user)
  231. {
  232. userService.checkUserAllowed(user);
  233. user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
  234. user.setUpdateBy(SecurityUtils.getUsername());
  235. return toAjax(userService.resetPwd(user));
  236. }*/
  237. /**
  238. * 状态修改
  239. */
  240. @PreAuthorize("@ss.hasPermi('system:user:edit')")
  241. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  242. @PutMapping("/changeStatus")
  243. public AjaxResult changeStatus(@RequestBody SysUser user)
  244. {
  245. userService.checkUserAllowed(user);
  246. user.setUpdateBy(SecurityUtils.getUsername());
  247. return toAjax(userService.updateUserStatus(user));
  248. }
  249. }