ManageController.php 9.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289
  1. <?php
  2. namespace App\Http\Controllers\Client;
  3. use App\Http\Controllers\Controller;
  4. use App\Http\Requests\Passport\AuthLogin;
  5. use App\Models\Plan;
  6. use App\Models\User;
  7. use App\Services\ServerService;
  8. use App\Services\UserService;
  9. use App\Utils\ApiResponse;
  10. use App\Utils\CacheKey;
  11. use App\Utils\Helper;
  12. use Facade\FlareClient\Api;
  13. use Illuminate\Contracts\Foundation\Application;
  14. use Illuminate\Http\Request;
  15. use Illuminate\Support\Facades\Cache;
  16. class ManageController extends Controller
  17. {
  18. /**
  19. * 登录接口
  20. * @param AuthLogin $request
  21. * @return false|string
  22. */
  23. function login(Request $request)
  24. {
  25. $email = $request->input('email');
  26. $password = $request->input('password');
  27. if (empty($email)){
  28. return ApiResponse::apiResponse(400,"邮箱不能为空");
  29. }
  30. if (empty($password)){
  31. return ApiResponse::apiResponse(400,"密码不能为空");
  32. }
  33. $user = User::where('email', $email)->first();
  34. if (!$user) {
  35. //abort(200, __('Incorrect email or password'));
  36. return ApiResponse::apiResponse(400,"账号或者密码错误");
  37. }
  38. if (!Helper::multiPasswordVerify(
  39. $user->password_algo,
  40. $user->password_salt,
  41. $password,
  42. $user->password)
  43. ) {
  44. return ApiResponse::apiResponse(400,"账号或者密码错误");
  45. }
  46. if ($user->banned) {
  47. // abort(500, __('Your account has been suspended'));
  48. return ApiResponse::apiResponse(300,"账户已经被禁用");
  49. }
  50. $data = [
  51. 'token' => $user->token,
  52. 'auth_data' => base64_encode("{$user->email}:{$user->password}")
  53. ];
  54. if ($user->is_admin) $data['is_admin'] = true;
  55. // return response([
  56. // 'data' => $data
  57. // ]);
  58. return ApiResponse::apiResponse(0,"",$data);
  59. }
  60. /**
  61. * 注册接口
  62. * @return \Illuminate\Http\JsonResponse
  63. */
  64. function register(Request $request)
  65. {
  66. if ((int)config('v2board.register_limit_by_ip_enable', 0)) {
  67. $registerCountByIP = Cache::get(CacheKey::get('REGISTER_IP_RATE_LIMIT', $request->ip())) ?? 0;
  68. if ((int)$registerCountByIP >= (int)config('v2board.register_limit_count', 3)) {
  69. abort(500, __('Register frequently, please try again after 1 hour'));
  70. }
  71. }
  72. $email = $request->input('email');
  73. $password = $request->input('password');
  74. $exist = User::where('email', $email)->first();
  75. if ($exist) {
  76. return ApiResponse::apiResponse(400,"账号已经存在");
  77. }
  78. $user = new User();
  79. $user->email = $email;
  80. $user->password = password_hash($password, PASSWORD_DEFAULT);
  81. $user->uuid = Helper::guid(true);
  82. $user->token = Helper::guid();
  83. // try out
  84. if ((int)config('v2board.try_out_plan_id', 0)) {
  85. $plan = Plan::find(config('v2board.try_out_plan_id'));
  86. if ($plan) {
  87. $user->transfer_enable = $plan->transfer_enable * 1073741824;
  88. $user->plan_id = $plan->id;
  89. $user->group_id = $plan->group_id;
  90. $user->expired_at = time() + (config('v2board.try_out_hour', 1) * 3600);
  91. }
  92. }
  93. if (!$user->save()) {
  94. return ApiResponse::apiResponse(400,"注册失败");
  95. }
  96. $data = [
  97. 'token' => $user->token,
  98. 'auth_data' => base64_encode("{$user->email}:{$user->password}")
  99. ];
  100. $user->last_login_at = time();
  101. $user->save();
  102. if ((int)config('v2board.register_limit_by_ip_enable', 0)) {
  103. Cache::put(
  104. CacheKey::get('REGISTER_IP_RATE_LIMIT', $request->ip()),
  105. (int)$registerCountByIP + 1,
  106. (int)config('v2board.register_limit_expire', 60) * 60
  107. );
  108. }
  109. return ApiResponse::apiResponse(0,"注册成功",$data);
  110. }
  111. /**
  112. * 获取我的订阅
  113. * @param Request $request
  114. * @return \Illuminate\Http\JsonResponse
  115. */
  116. public function getSubscribe(Request $request)
  117. {
  118. $user = User::where('id', $request->user['id'])
  119. ->select([
  120. 'plan_id',
  121. 'token',
  122. 'expired_at',
  123. 'u',
  124. 'd',
  125. 'transfer_enable',
  126. 'email'
  127. ])
  128. ->first();
  129. if (!$user) {
  130. abort(500, __('The user does not exist'));
  131. }
  132. if ($user->plan_id) {
  133. $user['plan'] = Plan::find($user->plan_id);
  134. if (!$user['plan']) {
  135. abort(500, __('Subscription plan does not exist'));
  136. }
  137. }
  138. $user['subscribe_url'] = Helper::getSubscribeUrl("/api/v1/client/subscribe?token={$user['token']}");
  139. $userService = new UserService();
  140. $user['reset_day'] = $userService->getResetDay($user);
  141. return ApiResponse::apiResponse(0,"",$user);
  142. }
  143. /**
  144. * 获取订阅套餐
  145. * @param Request $request
  146. * @return
  147. */
  148. public function fetch(Request $request)
  149. {
  150. $plan = Plan::where('show', 1)->get();
  151. return ApiResponse::apiResponse(0,"",$plan);
  152. }
  153. /**
  154. * 获取线路
  155. * @param Request $request
  156. * @return \Illuminate\Http\JsonResponse
  157. */
  158. public function server(Request $request){
  159. $user = User::find($request->user['id']);
  160. $servers = [];
  161. $userService = new UserService();
  162. if ($userService->isAvailable($user)) {
  163. $serverService = new ServerService();
  164. $servers = $serverService->getAvailableServers($user);
  165. }
  166. if (empty($servers)){
  167. return ApiResponse::apiResponse(400,"获取线路失败");
  168. }
  169. return ApiResponse::apiResponse(0,"",$servers);
  170. }
  171. public function getQuickLoginUrl(Request $request)
  172. {
  173. $authorization = $request->input('auth_data') ?? $request->header('authorization');
  174. if (!$authorization)
  175. return ApiResponse::apiResponse(403,"未登录或者登录已经过期");
  176. $authData = explode(':', base64_decode($authorization));
  177. if (!isset($authData[0]) || !isset($authData[1]))
  178. return ApiResponse::apiResponse(403,"请求异常");
  179. $user = User::where('email', $authData[0])
  180. ->where('password', $authData[1])
  181. ->first();
  182. if (!$user) {
  183. //abort(500, __('Token error'));
  184. return ApiResponse::apiResponse(500,"请求异常");
  185. }
  186. $code = Helper::guid();
  187. $key = CacheKey::get('TEMP_TOKEN', $code);
  188. Cache::put($key, $user->id, 60);
  189. $redirect = '/#/login?verify=' . $code . '&redirect=' . ($request->input('redirect') ? $request->input('redirect') : 'dashboard');
  190. if (config('v2board.app_url')) {
  191. $url = config('v2board.app_url') . $redirect;
  192. } else {
  193. $url = url($redirect);
  194. }
  195. return ApiResponse::apiResponse(0,"",$url);
  196. }
  197. public function getVersion(Request $request)
  198. {
  199. $from = $request->input("from");
  200. $version = $request->input("version");
  201. $versionData = [
  202. 'windows_version' => config('v2board.windows_version'),
  203. 'windows_download_url' => config('v2board.windows_download_url'),
  204. 'macos_version' => config('v2board.macos_version'),
  205. 'macos_download_url' => config('v2board.macos_download_url'),
  206. 'android_version' => config('v2board.android_version'),
  207. 'android_download_url' => config('v2board.android_download_url')
  208. ];
  209. $sVersion = "";
  210. $sDownloadUrl = "";
  211. if ($from == "android")
  212. {
  213. $sVersion = $versionData["android_version"];
  214. $sDownloadUrl = $versionData["android_download_url"];
  215. } else if ($from == "win"){
  216. $sVersion = $versionData["windows_version"];
  217. $sDownloadUrl = $versionData["windows_download_url"];
  218. }
  219. else if ($from == "macos")
  220. {
  221. $sVersion = $versionData["macos_version"];
  222. $sDownloadUrl = $versionData["macos_download_url"];
  223. }
  224. $data = [
  225. 'version' => $sVersion,
  226. 'download_url' => $sDownloadUrl,
  227. ];
  228. if (version_compare($sVersion,$version,">")){
  229. //服务器大于客户端
  230. $data["isUpdate"] = 1;
  231. return ApiResponse::apiResponse(0,"服务器有更新",$data);
  232. }
  233. $data["isUpdate"] = 0;
  234. return ApiResponse::apiResponse(0,"服务器没有更新",$data);
  235. }
  236. // private function Token(Request $request){
  237. // $authorization = $request->input('auth_data') ?? $request->header('authorization');
  238. // if (!$authorization)
  239. // return 402;
  240. //
  241. // $authData = explode(':', base64_decode($authorization));
  242. // if (!isset($authData[0]) || !isset($authData[1]))
  243. // return 403;
  244. // $user = User::where('email', $authData[0])
  245. // ->where('password', $authData[1])
  246. // ->first();
  247. // if (!$user) {
  248. // //abort(500, __('Token error'));
  249. // //return ApiResponse::apiResponse(500,"请求异常");
  250. // return 404;
  251. // }
  252. //
  253. // return $user;
  254. // }
  255. }