SetUser.class.php 5.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213
  1. <?php
  2. namespace Cas\Controller\API;
  3. use KIF\Core\Controller;
  4. use KIF\Core\Request;
  5. use Cas\Module\User;
  6. use Cas\Dao\UserInfo;
  7. use KIF\Math\Math;
  8. use KIF\Cookie;
  9. /**
  10. * 关于用户和passport接口
  11. *
  12. * @author lihuanchun
  13. *
  14. */
  15. class SetUser extends Controller {
  16. private $key;
  17. private $params;
  18. private $objMUser;
  19. public function __construct() {
  20. $this->key = 'rD5carfCGbHAhF';
  21. $this->params = $this->getRequestParams ();
  22. /*
  23. if (! $this->checkSign ( $params ['sign'], $params )) {
  24. //exit ( 'Sign error' );
  25. }
  26. */
  27. $this->objMUser = new User ();
  28. }
  29. /**
  30. * 用户登录caozuo
  31. */
  32. public function doRepLogin(){
  33. }
  34. /**
  35. * 设置用户
  36. * 请求地址:http://cas.lishuy.com/index.php?c=API_Req&a=Page&sign=51CE47C9A3681845D5ACCF3728DABD6A
  37. * http://cas.lishuy.com/API_SetUser_Req/?sign=51CE47C9A3681845D5ACCF3728DABD6A
  38. * 参数:
  39. * passport_uid 对方UID
  40. * cas_uid 本平台UID
  41. * nickname 用户昵称
  42. * headimgurl 用户头像地址
  43. * sign 加密串
  44. *
  45. * 返回
  46. */
  47. public function doReq() {
  48. // 1.获取传递来的相关信息
  49. $info ['nickname'] = urlencode($this->params ['nickname']);
  50. $info ['headimgurl'] = urlencode($this->params ['headimgurl']);
  51. $info ['passport_uid'] = $this->params ['passport_uid'];
  52. $cas_uid = $this->params ['cas_uid'];
  53. // 2.绑定用户信息
  54. if ($this->objMUser->bindingUser ( $info, $cas_uid )) {
  55. exit ( 'success' );
  56. }
  57. ;
  58. exit ( 'fail' );
  59. }
  60. /**
  61. * 统一着陆页面
  62. * 页面地址:http://cas.lishuy.com/index.php?c=API_SetUser&a=Page&sign=51CE47C9A3681845D5ACCF3728DABD6A
  63. * http://cas.lishuy.com/API_SetUser_Page/?sign=51CE47C9A3681845D5ACCF3728DABD6A
  64. * 参数:
  65. * passport_uid 对方UID
  66. * cas_uid 本平台UID
  67. * nickname 用户昵称
  68. * headimgurl 用户头像地址
  69. * return_url 原跳转地址
  70. * sign 加密串
  71. */
  72. public function doPage() {
  73. // 1.获取传递来的相关信息
  74. $info ['nickname'] = urldecode($this->params ['nickname']);
  75. $info ['nickname'] = preg_replace('/[\x{10000}-\x{10FFFF}]/u', '', $info ['nickname']);
  76. $info ['headimgurl'] = urldecode($this->params ['headimgurl']);
  77. $info ['passport_uid'] = $this->params ['uid'];
  78. $cas_uid = $this->params['cas_uid'];
  79. $back_url = urldecode($this->params['cas_return_url']);
  80. if(isset($this->params ['return_url'])){
  81. $this_return_url = urldecode($this->params ['return_url']);
  82. $arr = $this->convertUrlQuery($this_return_url);
  83. $back_url = urldecode($arr['cas_return_url']);
  84. $cas_uid = $arr['cas_uid'];
  85. }
  86. // 2.绑定用户信息
  87. if($info ['passport_uid']){
  88. $userData = $this->objMUser->getUserDataPasspord($info ['passport_uid']);
  89. if(!$userData){
  90. $this->objMUser->bindingUser ( $info, $cas_uid );
  91. $userData = $this->objMUser->get($cas_uid);
  92. }
  93. }else{
  94. $userData = $this->objMUser->get($cas_uid);
  95. }
  96. $userData ['key'] = Math::md5_16 ( $cas_uid );
  97. $userData = json_encode ( $userData );
  98. Cookie::set ( 'USER_INFO_4', $userData, 60 * 60 * 24 * 20 ,'.'.$_SERVER['HTTP_HOST']);
  99. header ( "Location: " . $back_url );
  100. exit ();
  101. }
  102. /**
  103. * 校验请求的合法性
  104. *
  105. * @param array $request_params
  106. * @param string $sign
  107. * @return Boolean
  108. */
  109. public function verifySign(array $request_params, $sign) {
  110. if (empty ( $sign )) {
  111. return false;
  112. }
  113. $new_sign = $this->createSign ( $request_params );
  114. if (strtolower ( $new_sign ) != strtolower ( $sign )) {
  115. return false;
  116. }
  117. return true;
  118. }
  119. /**
  120. * 获取请求的参数集。依赖 REQUEST_METHOD 做判断
  121. *
  122. * @return array
  123. */
  124. public function getRequestParams() {
  125. $params = array ();
  126. if ($_SERVER ['REQUEST_METHOD'] == 'POST') {
  127. $params = $_POST;
  128. if (! $params) {
  129. $params = $_GET;
  130. }
  131. } else if ($_SERVER ['REQUEST_METHOD'] == 'GET') {
  132. $params = $_GET;
  133. } else {
  134. throw new Exception ( 'NOT_SUPPORT_REQUEST_METHOD' );
  135. }
  136. return $params;
  137. }
  138. /**
  139. * 生成请求参数的sign
  140. *
  141. * @param array $params
  142. * @return String
  143. */
  144. public function createSign(array $params) {
  145. if ($params && is_array ( $params )) {
  146. ksort ( $params );
  147. $str = $this->key;
  148. foreach ( $params as $key => $value ) {
  149. if ($key != 'sign') {
  150. $str .= $key . $value;
  151. }
  152. }
  153. return strtoupper ( md5 ( $str ) );
  154. }
  155. return '';
  156. }
  157. public function convertUrlQuery($url)
  158. {
  159. $arr = parse_url($url);
  160. $query = $arr['query'];
  161. $queryParts = explode('&', $query);
  162. $params = array();
  163. foreach ($queryParts as $param)
  164. {
  165. $item = explode('=', $param);
  166. $params[$item[0]] = $item[1];
  167. }
  168. return $params;
  169. }
  170. /**
  171. * 指定的sign值是否正确
  172. *
  173. * @param String $sign
  174. * 给定需要验证的sign值
  175. * @param Array $params
  176. * 用来计算sign值的参数集合
  177. * @return Boolean
  178. */
  179. public function checkSign($sign, $params = null) {
  180. $sign2 = $this->createSign ( $params );
  181. return ($sign2 == $sign);
  182. }
  183. public function run() {
  184. $action = $this->action;
  185. $this->$action ();
  186. }
  187. public function display() {
  188. $this->render ();
  189. }
  190. }