ManageController.php 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379
  1. <?php
  2. namespace App\Http\Controllers\Client;
  3. use App\Http\Controllers\Controller;
  4. use App\Http\Requests\Passport\AuthLogin;
  5. use App\Models\Order;
  6. use App\Models\Plan;
  7. use App\Models\User;
  8. use App\Services\ServerService;
  9. use App\Services\UserService;
  10. use App\Utils\ApiResponse;
  11. use App\Utils\CacheKey;
  12. use App\Utils\Helper;
  13. use Facade\FlareClient\Api;
  14. use Illuminate\Contracts\Foundation\Application;
  15. use Illuminate\Http\Request;
  16. use Illuminate\Support\Facades\Cache;
  17. use App\Services\AuthService;
  18. class ManageController extends Controller
  19. {
  20. /**
  21. * 登录接口
  22. * @param AuthLogin $request
  23. * @return false|string
  24. */
  25. function login(Request $request)
  26. {
  27. $email = $request->input('email');
  28. $password = $request->input('password');
  29. if (empty($email)){
  30. return ApiResponse::apiResponse(400,"邮箱不能为空",null);
  31. }
  32. if (empty($password)){
  33. return ApiResponse::apiResponse(400,"密码不能为空",null);
  34. }
  35. $user = User::where('email', $email)->first();
  36. if (!$user) {
  37. //abort(200, __('Incorrect email or password'));
  38. return ApiResponse::apiResponse(400,"账号或者密码错误",null);
  39. }
  40. if (!Helper::multiPasswordVerify(
  41. $user->password_algo,
  42. $user->password_salt,
  43. $password,
  44. $user->password)
  45. ) {
  46. return ApiResponse::apiResponse(400,"账号或者密码错误",null);
  47. }
  48. //判断到期
  49. // $expireTime = $user["expired_at"];
  50. //
  51. // if ($expireTime < date('Y-m-d H:i:s')){
  52. // return response()->json(['ret' => 445, 'msg' => "用户到期,请即使续费"], 200);
  53. // }
  54. if ($user->banned) {
  55. // abort(500, __('Your account has been suspended'));
  56. return ApiResponse::apiResponse(300,"账户已经被禁用",null,447);
  57. }
  58. $data = [
  59. 'token' => $user->token,
  60. 'auth_data' => base64_encode("{$user->email}:{$user->password}")
  61. ];
  62. if ($user->is_admin) $data['is_admin'] = true;
  63. return ApiResponse::apiResponse(0,"",$data);
  64. }
  65. /**
  66. * 注册接口
  67. * @return \Illuminate\Http\JsonResponse
  68. */
  69. function register(Request $request)
  70. {
  71. if ((int)config('v2board.register_limit_by_ip_enable', 0)) {
  72. $registerCountByIP = Cache::get(CacheKey::get('REGISTER_IP_RATE_LIMIT', $request->ip())) ?? 0;
  73. if ((int)$registerCountByIP >= (int)config('v2board.register_limit_count', 3)) {
  74. abort(500, __('Register frequently, please try again after 1 hour'));
  75. }
  76. }
  77. $email = $request->input('email');
  78. $password = $request->input('password');
  79. $exist = User::where('email', $email)->first();
  80. if ($exist) {
  81. return ApiResponse::apiResponse(400,"账号已经存在");
  82. }
  83. $user = new User();
  84. $user->email = $email;
  85. $user->password = password_hash($password, PASSWORD_DEFAULT);
  86. $user->uuid = Helper::guid(true);
  87. $user->token = Helper::guid();
  88. // try out
  89. if ((int)config('v2board.try_out_plan_id', 0)) {
  90. $plan = Plan::find(config('v2board.try_out_plan_id'));
  91. if ($plan) {
  92. $user->transfer_enable = $plan->transfer_enable * 1073741824;
  93. $user->plan_id = $plan->id;
  94. $user->group_id = $plan->group_id;
  95. $user->expired_at = time() + (config('v2board.try_out_hour', 1) * 3600);
  96. }
  97. }
  98. if (!$user->save()) {
  99. return ApiResponse::apiResponse(400,"注册失败");
  100. }
  101. $data = [
  102. 'token' => $user->token,
  103. 'auth_data' => base64_encode("{$user->email}:{$user->password}")
  104. ];
  105. $user->last_login_at = time();
  106. $user->save();
  107. if ((int)config('v2board.register_limit_by_ip_enable', 0)) {
  108. Cache::put(
  109. CacheKey::get('REGISTER_IP_RATE_LIMIT', $request->ip()),
  110. (int)$registerCountByIP + 1,
  111. (int)config('v2board.register_limit_expire', 60) * 60
  112. );
  113. }
  114. return ApiResponse::apiResponse(0,"注册成功",$data);
  115. }
  116. /**
  117. * 获取我的订阅
  118. * @param Request $request
  119. * @return \Illuminate\Http\JsonResponse
  120. */
  121. public function getSubscribe(Request $request)
  122. {
  123. $authorization = $request->input('auth_data') ?? $request->header('authorization');
  124. if (!$authorization)
  125. return ApiResponse::apiResponse(403,"未登录或者登录已经过期");
  126. $authData = explode(':', base64_decode($authorization));
  127. if (!isset($authData[0]) || !isset($authData[1]))
  128. return ApiResponse::apiResponse(403,"请求异常");
  129. $user = User::where('email', $authData[0])
  130. ->where('password', $authData[1])
  131. ->first();
  132. if (!$user) {
  133. //abort(500, __('Token error'));
  134. return ApiResponse::apiResponse(500,"请求异常");
  135. }
  136. $user = User::where('id', $user['id'])
  137. ->select([
  138. 'plan_id',
  139. 'token',
  140. 'expired_at',
  141. 'u',
  142. 'd',
  143. 'transfer_enable',
  144. 'email',
  145. 'uuid',
  146. 'banned'
  147. ])
  148. ->first();
  149. if (!$user) {
  150. abort(500, __('The user does not exist'));
  151. }
  152. if ($user["plan_id"]) {
  153. $user['plan'] = Plan::find($user["plan_id"]);
  154. if (!$user['plan']) {
  155. abort(500, __('Subscription plan does not exist'));
  156. }
  157. }
  158. $model = Order::where('user_id', $user['id'])->where("status","=",0)
  159. ->orderBy('created_at', 'DESC');
  160. $order = $model->first();
  161. if (empty($order)){
  162. $user["paid"] = 0;
  163. }
  164. else{
  165. $user["paid"] = 1;
  166. }
  167. $user["expiretime"] = date('Y-m-d H:i:s',$user["expired_at"]);
  168. $user["unusedTraffic"] = "您的总流量:" . Helper::trafficConvert($user["transfer_enable"]) ." ". "使用流量:" . Helper::trafficConvert($user["u"] + $user["d"]) ;
  169. $user['subscribe_url'] = Helper::getSubscribeUrl("/api/v1/client/subscribe?token={$user['token']}&flag=clash");
  170. $userService = new UserService();
  171. $user['reset_day'] = $userService->getResetDay($user);
  172. return ApiResponse::apiResponse(0,"",$user);
  173. }
  174. /**
  175. * 获取订阅套餐
  176. * @param Request $request
  177. * @return
  178. */
  179. public function fetch(Request $request)
  180. {
  181. $plan = Plan::where('show', 1)->get();
  182. return ApiResponse::apiResponse(0,"",$plan);
  183. }
  184. /**
  185. * 获取线路
  186. * @param Request $request
  187. * @return \Illuminate\Http\JsonResponse
  188. */
  189. public function server(Request $request){
  190. // $authorization = $request->input('auth_data') ?? $request->header('authorization');
  191. // if (!$authorization) ApiResponse::apiResponse(403,"未登录或者登录已经过期");
  192. // $user = AuthService::decryptAuthData($authorization);
  193. // if (!$user) ApiResponse::apiResponse(403,"未登录或者登录已经过期");
  194. // $request->merge([
  195. // 'user' => $user
  196. // ]);
  197. // return ApiResponse::apiResponse(400,"获取线路失败",$user);
  198. $authorization = $request->input('auth_data') ?? $request->header('authorization');
  199. if (!$authorization)
  200. return ApiResponse::apiResponse(403,"未登录或者登录已经过期");
  201. $authData = explode(':', base64_decode($authorization));
  202. if (!isset($authData[0]) || !isset($authData[1]))
  203. return ApiResponse::apiResponse(403,"请求异常");
  204. $user = User::where('email', $authData[0])
  205. ->where('password', $authData[1])
  206. ->first();
  207. if (!$user) {
  208. //abort(500, __('Token error'));
  209. return ApiResponse::apiResponse(500,"请求异常");
  210. }
  211. $user = User::find($user['id']);
  212. $servers = [];
  213. $userService = new UserService();
  214. if ($userService->isAvailable($user)) {
  215. $serverService = new ServerService();
  216. $servers = $serverService->getAvailableServers($user);
  217. }
  218. if (empty($servers)){
  219. return ApiResponse::apiResponse(400,"获取线路失败");
  220. }
  221. return ApiResponse::apiResponse(0,"",$servers);
  222. }
  223. public function getQuickLoginUrl(Request $request)
  224. {
  225. $authorization = $request->input('auth_data') ?? $request->header('authorization');
  226. if (!$authorization)
  227. return ApiResponse::apiResponse(403,"未登录或者登录已经过期");
  228. $authData = explode(':', base64_decode($authorization));
  229. if (!isset($authData[0]) || !isset($authData[1]))
  230. return ApiResponse::apiResponse(403,"请求异常");
  231. $user = User::where('email', $authData[0])
  232. ->where('password', $authData[1])
  233. ->first();
  234. if (!$user) {
  235. //abort(500, __('Token error'));
  236. return ApiResponse::apiResponse(500,"请求异常");
  237. }
  238. $code = Helper::guid();
  239. $key = CacheKey::get('TEMP_TOKEN', $code);
  240. Cache::put($key, $user["id"], 60);
  241. $redirect = '/#/login?verify=' . $code . '&redirect=' . ($request->input('redirect') ? $request->input('redirect') : 'dashboard');
  242. if (config('v2board.app_url')) {
  243. $url = config('v2board.app_url') . $redirect;
  244. } else {
  245. $url = url($redirect);
  246. }
  247. return ApiResponse::apiResponse(0,"",$url);
  248. }
  249. public function getVersion(Request $request)
  250. {
  251. $authorization = $request->input('auth_data') ?? $request->header('authorization');
  252. if (!$authorization)
  253. return ApiResponse::apiResponse(403,"未登录或者登录已经过期");
  254. $authData = explode(':', base64_decode($authorization));
  255. if (!isset($authData[0]) || !isset($authData[1]))
  256. return ApiResponse::apiResponse(403,"请求异常");
  257. $user = User::where('email', $authData[0])
  258. ->where('password', $authData[1])
  259. ->first();
  260. if (!$user) {
  261. //abort(500, __('Token error'));
  262. return ApiResponse::apiResponse(500,"请求异常");
  263. }
  264. $from = $request->input("from");
  265. $version = $request->input("version");
  266. $versionData = [
  267. 'windows_version' => config('v2board.windows_version'),
  268. 'windows_download_url' => config('v2board.windows_download_url'),
  269. 'macos_version' => config('v2board.macos_version'),
  270. 'macos_download_url' => config('v2board.macos_download_url'),
  271. 'android_version' => config('v2board.android_version'),
  272. 'android_download_url' => config('v2board.android_download_url')
  273. ];
  274. $sVersion = "";
  275. $sDownloadUrl = "";
  276. if ($from == "android")
  277. {
  278. $sVersion = $versionData["android_version"];
  279. $sDownloadUrl = $versionData["android_download_url"];
  280. } else if ($from == "win"){
  281. $sVersion = $versionData["windows_version"];
  282. $sDownloadUrl = $versionData["windows_download_url"];
  283. }
  284. else if ($from == "macos")
  285. {
  286. $sVersion = $versionData["macos_version"];
  287. $sDownloadUrl = $versionData["macos_download_url"];
  288. }
  289. $data = [
  290. 'version' => $sVersion,
  291. 'appmsg' => "修复一些bug",
  292. 'download_url' => $sDownloadUrl,
  293. ];
  294. if (version_compare($sVersion,$version,">")){
  295. //服务器大于客户端
  296. $data["isUpdate"] = 1;
  297. return ApiResponse::apiResponse(0,"有更新",$data);
  298. }
  299. $data["isUpdate"] = 0;
  300. return ApiResponse::apiResponse(0,"没有更新",$data);
  301. }
  302. public function getUrl(){
  303. // if (config('v2board.app_url')) {
  304. $base_url = config('v2board.app_url');
  305. $path = "/#/";
  306. $base_url = $base_url . $path;
  307. $data = [
  308. "register" => $base_url . "register",
  309. "user_reset" => $base_url ."forgetpassword",
  310. "home" => $base_url
  311. ];
  312. return ApiResponse::apiResponse(0,"",$data);
  313. }
  314. // private function Token(Request $request){
  315. // $authorization = $request->input('auth_data') ?? $request->header('authorization');
  316. // if (!$authorization)
  317. // return 402;
  318. //
  319. // $authData = explode(':', base64_decode($authorization));
  320. // if (!isset($authData[0]) || !isset($authData[1]))
  321. // return 403;
  322. // $user = User::where('email', $authData[0])
  323. // ->where('password', $authData[1])
  324. // ->first();
  325. // if (!$user) {
  326. // //abort(500, __('Token error'));
  327. // //return ApiResponse::apiResponse(500,"请求异常");
  328. // return 404;
  329. // }
  330. //
  331. // return $user;
  332. // }
  333. }