Base.php 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585
  1. <?php
  2. namespace Passport\Lib;
  3. use Dever;
  4. use Upload\Src\Lib\Img;
  5. use Dever\Routing\Uri;
  6. use Dever\Session\Oper as Save;
  7. use Dever\String\Encrypt;
  8. class Base
  9. {
  10. const NAME = 'passportv1';
  11. const CODE = 'code';
  12. const MCODE = 'mcode';
  13. protected $save;
  14. public function __construct()
  15. {
  16. $this->save = new Save(false, 'cookie');
  17. }
  18. public function wechat($data, $user = array(), $account, $system, $source_type, $source = false)
  19. {
  20. $uid = false;
  21. if (!$data['openid']) {
  22. Dever::alert('错误的openid');
  23. }
  24. if (!isset($user['username'])) {
  25. Dever::alert('用户名错误');
  26. }
  27. if (isset($user['sex'])) {
  28. if ($user['sex'] == 1) {
  29. $user['sex'] = 1;
  30. } elseif ($user['sex'] == 2) {
  31. $user['sex'] = 2;
  32. } else {
  33. $user['sex'] = 3;
  34. }
  35. }
  36. if (isset($user['country']) && $user['country'] && isset($user['province']) && $user['province'] && isset($user['city']) && $user['city']) {
  37. $user['area'] = $user['country'] .','. $user['province'] .','. $user['city'];
  38. }
  39. $info = Dever::load('passport/wechat-one', array('option_openid' => $data['openid']));
  40. if (!$info) {
  41. if (isset($data['unionid']) && $data['unionid']) {
  42. $info = Dever::load('passport/wechat-one', array('unionid' => $data['unionid']));
  43. if (!$info) {
  44. $uid = false;
  45. } else {
  46. $uid = $info['uid'];
  47. }
  48. $wechat['unionid'] = $data['unionid'];
  49. }
  50. if (!$uid) {
  51. $user['source_type'] = 'service';
  52. if ($system) {
  53. $user['system_id'] = $system;
  54. }
  55. if ($source_type) {
  56. $user['source_type'] = $source_type;
  57. }
  58. $uid = Dever::load('passport/user-insert', $user);
  59. } else {
  60. $user['where_id'] = $uid;
  61. Dever::load('passport/user-update', $user);
  62. }
  63. $wechat['access_token'] = $data['access_token'];
  64. $wechat['openid'] = $data['openid'];
  65. $wechat['expires_in'] = $data['expires_in'];
  66. $wechat['refresh_token'] = $data['refresh_token'];
  67. $wechat['account_id'] = $account;
  68. if ($system) {
  69. $wechat['system_id'] = $system;
  70. }
  71. $wechat['uid'] = $uid;
  72. $wechat['type'] = 2;
  73. if ($source_type == 'applet') {
  74. $wechat['type'] = 1;
  75. } elseif ($source_type == 'ios') {
  76. $wechat['type'] = 3;
  77. } elseif ($source_type == 'android') {
  78. $wechat['type'] = 4;
  79. }
  80. $id = Dever::load('passport/wechat-insert', $wechat);
  81. if (Dever::project('source') && isset($source) && $source && $source > 0) {
  82. Dever::load('source/lib/core')->saveUser($id, $uid, $source, 'oauth', $account);
  83. }
  84. } else {
  85. $uid = $info['uid'];
  86. if (isset($data['unionid']) && $data['unionid']) {
  87. $wechat['unionid'] = $data['unionid'];
  88. # 判断用户是否存在,是否需要合并
  89. $wechat['uid'] = $this->combine($uid, $data['unionid']);
  90. }
  91. $wechat['access_token'] = $data['access_token'];
  92. $wechat['openid'] = $data['openid'];
  93. $wechat['expires_in'] = $data['expires_in'];
  94. $wechat['refresh_token'] = $data['refresh_token'];
  95. $wechat['where_id'] = $info['id'];
  96. $wechat['account_id'] = $account;
  97. if ($system) {
  98. $wechat['system_id'] = $system;
  99. }
  100. $id = $info['id'];
  101. Dever::load('passport/wechat-update', $wechat);
  102. $user['where_id'] = $uid;
  103. //Dever::load('passport/user-update', $user);
  104. }
  105. $this->createUsername($uid, $user['username']);
  106. $user = Dever::load('passport/user-one', $uid);
  107. $this->save($user);
  108. $user['uid'] = $user['id'];
  109. $user['signature'] = Dever::login($user['id']);
  110. return $user;
  111. }
  112. /**
  113. * 更新用户信息 绑定用户手机号
  114. *
  115. * @return mixed
  116. */
  117. public function bind_mobile()
  118. {
  119. $uid = $this->check();
  120. //$code = Dever::input('mcode');
  121. $mobile = Dever::load('passport/reg')->checkMobileExists();
  122. //$mobile = Dever::input('mobile');
  123. if ($mobile && $uid) {
  124. $info = Dever::load('passport/user-one', array('mobile' => $mobile));
  125. if ($info && $info['bind'] == 1) {
  126. Dever::alert('该手机号已绑定');
  127. }
  128. $uid = $this->combine($uid, $mobile, 'mobile');
  129. $info = Dever::load('passport/user-one', $uid);
  130. $result['mobile'] = $mobile;
  131. if ($info) {
  132. $update['set_mobile'] = $mobile;
  133. $update['set_bind'] = 1;
  134. $update['where_id'] = $uid;
  135. Dever::load('passport/user-update', $update);
  136. $state = Dever::config('base', 'project')->regSendSms;
  137. if ($state) {
  138. Dever::setInput('skin', $state);
  139. $this->send($mobile, $uid);
  140. }
  141. } else {
  142. Dever::alert('无效的用户id,请重新登录');
  143. }
  144. }
  145. if (!$info['mobile']) {
  146. Dever::score($uid, 'bind_mobile', '绑定手机号');
  147. }
  148. $result['uid'] = $uid;
  149. $result['signature'] = Dever::login($uid);
  150. return $result;
  151. }
  152. public function createUsername($uid, $username, $update = false)
  153. {
  154. if (!$username || $username == '临时用户') {
  155. $username = $uid + 100000;
  156. $username = 'JM' . $username;
  157. if ($update) {
  158. Dever::db('passport/user')->update(array('where_id' => $uid, 'username' => $username));
  159. }
  160. }
  161. return $username;
  162. }
  163. # 合并用户
  164. public function combine($uid, $unionid, $col = 'unionid')
  165. {
  166. $cur = $uid;
  167. if ($col == 'mobile' || $col == 'id') {
  168. $user_wechat = Dever::load('passport/user-all', array($col => $unionid));
  169. } else {
  170. $user_wechat = Dever::load('passport/wechat-state', array($col => $unionid));
  171. }
  172. if ($user_wechat) {
  173. # 合并去
  174. $drop = array();
  175. $total = count($user_wechat);
  176. if ($total <= 1) {
  177. return $cur;
  178. }
  179. $new = false;
  180. foreach ($user_wechat as $k => $v) {
  181. if (!isset($v['uid'])) {
  182. $v['uid'] = $v['id'];
  183. $user = $v;
  184. } else {
  185. $user = Dever::db('passport/user')->one($v['uid']);
  186. }
  187. if (!$new) {
  188. if ($user['bind'] == 1 && !strstr($user['username'], '****')) {
  189. $new = $v['uid'];
  190. } elseif ($user['temp'] == 2 && $user['source_type'] == 'applet') {
  191. $new = $v['uid'];
  192. } elseif ($user['avatar']) {
  193. $new = $v['uid'];
  194. } elseif ($user['mobile']) {
  195. $new = $v['uid'];
  196. } elseif ($user['temp'] == 2) {
  197. $new = $v['uid'];
  198. } elseif ($v['uid'] < $cur) {
  199. $cur = $new = $v['uid'];
  200. } else {
  201. $drop[$v['uid']] = $v['uid'];
  202. }
  203. } else {
  204. $drop[$v['uid']] = $v['uid'];
  205. }
  206. }
  207. $cur = $new;
  208. if (Dever::input('test') == 1) {
  209. print_r($cur);
  210. print_r($drop);die;
  211. }
  212. if ($drop) {
  213. ksort($drop);
  214. $combine = array();
  215. $combine['status'] = 1;
  216. $combine['new_uid'] = $cur;
  217. $combine['old_uid'] = implode(',', $drop);
  218. $info = Dever::db('passport/combine')->one($combine);
  219. if (!$info) {
  220. Dever::db('passport/combine')->insert($combine);
  221. }
  222. Dever::load('passport/user-updates', array('set_state' => 2, 'where_id' => $combine['old_uid']));
  223. $update = array();
  224. foreach ($drop as $k => $v) {
  225. if ($cur == $v) {
  226. unset($drop[$k]);
  227. continue;
  228. }
  229. $new = Dever::db('passport/user')->one($cur);
  230. $old = Dever::db('passport/user')->one($v);
  231. $update = array();
  232. if ($new['temp'] == 1) {
  233. $update['username'] = $old['username'];
  234. }
  235. if (strstr($new['username'], '****')) {
  236. $update['username'] = $old['username'];
  237. }
  238. if (!$new['avatar']) {
  239. $update['avatar'] = $old['avatar'];
  240. }
  241. if (!$new['mobile']) {
  242. $update['mobile'] = $old['mobile'];
  243. }
  244. if (!$new['area']) {
  245. $update['area'] = $old['area'];
  246. }
  247. if (isset($update) && $update) {
  248. $update['where_id'] = $cur;
  249. Dever::load('passport/user-update', $update);
  250. }
  251. }
  252. }
  253. }
  254. return $cur;
  255. }
  256. /**
  257. * 检测用户有效性
  258. *
  259. * @return mixed
  260. */
  261. public function check($state = true)
  262. {
  263. $signature = Dever::input('signature');
  264. $user = Dever::checkLogin($signature, $state);
  265. if ($state && !isset($user['uid'])) {
  266. Dever::alert('user error');
  267. }
  268. if (isset($user['uid']) && $user['uid']) {
  269. return $user['uid'];
  270. }
  271. return -1;
  272. }
  273. public function getToken($request = array())
  274. {
  275. return http_build_query(Dever::token($request));
  276. }
  277. public function getUrl($method, $request = array())
  278. {
  279. return Dever::proxy($method, $this->getToken($request));
  280. }
  281. protected function info()
  282. {
  283. $data = $this->save->get(self::NAME);
  284. return $data;
  285. }
  286. protected function code($code = false)
  287. {
  288. if ($code) {
  289. $save = $this->save->get(self::CODE);
  290. return $code == $save;
  291. }
  292. $code = new Code();
  293. $code->create();
  294. $this->save->add(self::CODE, $code->code, 600);
  295. }
  296. protected function mcode($mobile, $code = false)
  297. {
  298. if ($code) {
  299. $save = $this->save->get(self::MCODE);
  300. return $mobile . '_' . $code == $save;
  301. }
  302. $day = date('Ymd', time());
  303. # 检测当前手机号最新一次发送时间,不允许一分钟之内发送
  304. $param['option_day'] = $day;
  305. $param['option_mobile'] = $mobile;
  306. # 检测当前手机号今天已经发送多少验证码了
  307. $info = Dever::load('passport/code-total', $param);
  308. if ($info >= 1) {
  309. $check = Dever::load('passport/code-one', $param);
  310. if ($check) {
  311. if (time() - $check['cdate'] < Dever::config('base', 'project')->mobileCode['time']) {
  312. Dever::alert('请不要在一分钟之内申请多次验证码,请您稍后再试');
  313. }
  314. }
  315. }
  316. $total = Dever::config('base', 'project')->mobileCode['total'];
  317. if ($info >= $total) {
  318. Dever::alert('很抱歉,您已经申请获取验证码超过' . $total . '次,今天您已经无法获取验证码了,请您明天再来');
  319. }
  320. $code = new Code();
  321. $code->createM();
  322. # 记录当前的验证码
  323. $insert['add_mobile'] = $mobile;
  324. $insert['add_day'] = $day;
  325. $insert['add_code'] = $code->mcode;
  326. $id = Dever::load('passport/code-insert', $insert);
  327. # 启动发送
  328. $this->send($mobile, $insert['add_code'], $id);
  329. $this->save->add(self::MCODE, $mobile . '_' . $code->mcode, Dever::config('base', 'project')->mobileCode['timeout']);
  330. return $code->mcode;
  331. }
  332. public function send($mobile, $code, $id = false)
  333. {
  334. if (Dever::project('sms')) {
  335. $send['skin'] = 'code';
  336. $send['mobile'] = $mobile;
  337. $send['param'] = array
  338. (
  339. 'code' => $code
  340. );
  341. $send['param'] = Dever::json_encode($send['param']);
  342. return Dever::load('sms/api.send', $send);
  343. }
  344. $url = Dever::config('base', 'project')->mobileCode['url'];
  345. if (!$url) {
  346. return;
  347. }
  348. $content = Dever::config('base', 'project')->mobileCode['body'];
  349. $content = $this->replace($content, $mobile, $code);
  350. parse_str($content, $param);
  351. $type = Dever::config('base', 'project')->mobileCode['method'];
  352. $json = Dever::config('base', 'project')->mobileCode['json'];
  353. $header = Dever::config('base', 'project')->mobileCode['header'];
  354. return Dever::curl($url, $param, $type, $json, $header);
  355. }
  356. private function replace($content, $mobile = '', $code = '')
  357. {
  358. $skin = Dever::config('base', 'project')->mobileCode['skin'];
  359. $skin_key = Dever::input('skin', 'code');
  360. if (isset($skin[$skin_key])) {
  361. $skin = $skin[$skin_key];
  362. } else {
  363. $skin = array_shift($skin);
  364. }
  365. $config = array('{code}', '{mobile}', '{sign}', '{skin}', '{param}');
  366. $replace = array($code, $mobile, Dever::config('base', 'project')->mobileCode['sign'], $skin);
  367. return str_replace($config, $replace, $content);
  368. }
  369. protected function refer($state = false)
  370. {
  371. $refer = Dever::input('refer');
  372. $project = 'main';
  373. if ($refer) {
  374. $refer = Encrypt::decode($refer);
  375. /*
  376. $url = parse_url(Encrypt::decode($refer));
  377. $url['path'] = preg_replace('/^\//', '', $url['path']);
  378. if (!isset($url['query'])) {
  379. $url['query'] = '';
  380. }
  381. if (Uri::$type == '?') {
  382. $refer = Dever::url(str_replace($url['path'] . Uri::$type, '', $url['query']), $project);
  383. } else {
  384. $refer = Dever::url($url['path'] . '?' . $url['query'], $project);
  385. }
  386. */
  387. } else {
  388. $refer = Dever::url('home', $project);
  389. }
  390. $param = Dever::input('param');
  391. if ($param) {
  392. $refer .= '&' . $param;
  393. }
  394. if ($state) {
  395. return $refer;
  396. }
  397. Dever::out($refer);
  398. }
  399. protected function save($user)
  400. {
  401. if (is_numeric($user)) {
  402. $user = Dever::load('passport/user-one', $user);
  403. }
  404. if ($user && is_array($user)) {
  405. if (Dever::mobile()) {
  406. $time = 30;
  407. } else {
  408. $time = 7;
  409. }
  410. $this->save->add(self::NAME, $user, 3600 * 24 * $time);
  411. $user['signature'] = Dever::login($user['id']);
  412. if (Dever::config('base', 'project')->regAction) {
  413. Dever::load(Dever::config('base', 'project')->regAction, $user);
  414. }
  415. return $user;
  416. }
  417. }
  418. public function createRefer()
  419. {
  420. return 'refer=' . Encrypt::encode(Dever::url(false, 'main'));
  421. }
  422. protected function saveSex($sex)
  423. {
  424. if ($sex || $sex == 0) {
  425. $config_sex = Dever::config('base', 'project')->sex;
  426. if (isset($config_sex[$sex])) {
  427. $sex = $config_sex[$sex];
  428. } else {
  429. if ($sex == '男') {
  430. $sex = 1;
  431. } elseif ($sex == '女') {
  432. $sex = 2;
  433. } elseif ($sex == '未知') {
  434. $sex = 3;
  435. }
  436. }
  437. }
  438. return $sex;
  439. }
  440. protected function saveAvatar($value)
  441. {
  442. if (!$value) {
  443. return '';
  444. }
  445. $value = Dever::pic($value);
  446. $base = Dever::data();
  447. $date = explode('-', date("Y-m-d"));
  448. if (is_array($value)) {
  449. $user = $value[1];
  450. $value = $value[0];
  451. if (is_array($value)) {
  452. $name = md5($value['tmp_name'] . rand(0, 100) . microtime());
  453. $path = 'avatar/' . $date[0] . '/' . $date[1] . '/' . $date[2] . '/';
  454. $ext = '.jpg';
  455. $temp = Dever::path($base, $path . $name . $ext);
  456. move_uploaded_file($value['tmp_name'], $temp);
  457. $value = $temp;
  458. }
  459. }
  460. //$result = Dever::$global['host']['img'] . 'chead.jpg';
  461. if ($value) {
  462. # 裁图
  463. $handle = new Img();
  464. $size = '200_200_2';
  465. $user = isset($user) && $user ? $user : $this->init();
  466. if ($user && isset($user['id']) && $user['id']) {
  467. $name = md5($user['id']);
  468. } else {
  469. $name = md5($value . rand(0, 100) . microtime());
  470. }
  471. $path = 'avatar/' . $date[0] . '/' . $date[1] . '/' . $date[2] . '/';
  472. $ext = '.jpg';
  473. $file = Dever::path($base, $path . $name . $ext);
  474. $temp = $file . '.temp.jpg';
  475. //$value = Dever::curl($value);
  476. //file_put_contents($temp, file_get_contents($value));
  477. $file = $handle->thumb($value, $size, true, $file);
  478. if ($file) {
  479. $result = str_replace('/upload/', '/', Dever::config('host')->uploadRes . $path . $name . $ext);
  480. } else {
  481. $result = $value;
  482. }
  483. }
  484. return $result;
  485. }
  486. }