ManageController.php 9.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291
  1. <?php
  2. namespace App\Http\Controllers\Client;
  3. use App\Http\Controllers\Controller;
  4. use App\Http\Requests\Passport\AuthLogin;
  5. use App\Models\Plan;
  6. use App\Models\User;
  7. use App\Services\ServerService;
  8. use App\Services\UserService;
  9. use App\Utils\ApiResponse;
  10. use App\Utils\CacheKey;
  11. use App\Utils\Helper;
  12. use Facade\FlareClient\Api;
  13. use Illuminate\Contracts\Foundation\Application;
  14. use Illuminate\Http\Request;
  15. use Illuminate\Support\Facades\Cache;
  16. class ManageController extends Controller
  17. {
  18. /**
  19. * 登录接口
  20. * @param AuthLogin $request
  21. * @return false|string
  22. */
  23. function login(Request $request)
  24. {
  25. $email = $request->input('email');
  26. $password = $request->input('password');
  27. if (empty($email)){
  28. return ApiResponse::apiResponse(400,"邮箱不能为空");
  29. }
  30. if (empty($password)){
  31. return ApiResponse::apiResponse(400,"密码不能为空");
  32. }
  33. $user = User::where('email', $email)->first();
  34. if (!$user) {
  35. //abort(200, __('Incorrect email or password'));
  36. return ApiResponse::apiResponse(400,"账号或者密码错误");
  37. }
  38. if (!Helper::multiPasswordVerify(
  39. $user->password_algo,
  40. $user->password_salt,
  41. $password,
  42. $user->password)
  43. ) {
  44. return ApiResponse::apiResponse(400,"账号或者密码错误");
  45. }
  46. if ($user->banned) {
  47. // abort(500, __('Your account has been suspended'));
  48. return ApiResponse::apiResponse(300,"账户已经被禁用");
  49. }
  50. $data = [
  51. 'token' => $user->token,
  52. 'auth_data' => base64_encode("{$user->email}:{$user->password}")
  53. ];
  54. if ($user->is_admin) $data['is_admin'] = true;
  55. // return response([
  56. // 'data' => $data
  57. // ]);
  58. return ApiResponse::apiResponse(0,"",$data);
  59. }
  60. /**
  61. * 注册接口
  62. * @return \Illuminate\Http\JsonResponse
  63. */
  64. function register(Request $request)
  65. {
  66. if ((int)config('v2board.register_limit_by_ip_enable', 0)) {
  67. $registerCountByIP = Cache::get(CacheKey::get('REGISTER_IP_RATE_LIMIT', $request->ip())) ?? 0;
  68. if ((int)$registerCountByIP >= (int)config('v2board.register_limit_count', 3)) {
  69. abort(500, __('Register frequently, please try again after 1 hour'));
  70. }
  71. }
  72. $email = $request->input('email');
  73. $password = $request->input('password');
  74. $exist = User::where('email', $email)->first();
  75. if ($exist) {
  76. return ApiResponse::apiResponse(400,"账号已经存在");
  77. }
  78. $user = new User();
  79. $user->email = $email;
  80. $user->password = password_hash($password, PASSWORD_DEFAULT);
  81. $user->uuid = Helper::guid(true);
  82. $user->token = Helper::guid();
  83. // try out
  84. if ((int)config('v2board.try_out_plan_id', 0)) {
  85. $plan = Plan::find(config('v2board.try_out_plan_id'));
  86. if ($plan) {
  87. $user->transfer_enable = $plan->transfer_enable * 1073741824;
  88. $user->plan_id = $plan->id;
  89. $user->group_id = $plan->group_id;
  90. $user->expired_at = time() + (config('v2board.try_out_hour', 1) * 3600);
  91. }
  92. }
  93. if (!$user->save()) {
  94. return ApiResponse::apiResponse(400,"注册失败");
  95. }
  96. $data = [
  97. 'token' => $user->token,
  98. 'auth_data' => base64_encode("{$user->email}:{$user->password}")
  99. ];
  100. $user->last_login_at = time();
  101. $user->save();
  102. if ((int)config('v2board.register_limit_by_ip_enable', 0)) {
  103. Cache::put(
  104. CacheKey::get('REGISTER_IP_RATE_LIMIT', $request->ip()),
  105. (int)$registerCountByIP + 1,
  106. (int)config('v2board.register_limit_expire', 60) * 60
  107. );
  108. }
  109. return ApiResponse::apiResponse(0,"注册成功",$data);
  110. }
  111. /**
  112. * 获取我的订阅
  113. * @param Request $request
  114. * @return \Illuminate\Http\JsonResponse
  115. */
  116. public function getSubscribe(Request $request)
  117. {
  118. $user = User::where('id', $request->user['id'])
  119. ->select([
  120. 'plan_id',
  121. 'token',
  122. 'expired_at',
  123. 'u',
  124. 'd',
  125. 'transfer_enable',
  126. 'email',
  127. 'uuid'
  128. ])
  129. ->first();
  130. if (!$user) {
  131. abort(500, __('The user does not exist'));
  132. }
  133. if ($user->plan_id) {
  134. $user['plan'] = Plan::find($user->plan_id);
  135. if (!$user['plan']) {
  136. abort(500, __('Subscription plan does not exist'));
  137. }
  138. }
  139. $user['subscribe_url'] = Helper::getSubscribeUrl("/api/v1/client/subscribe?token={$user['token']}");
  140. $userService = new UserService();
  141. $user['reset_day'] = $userService->getResetDay($user);
  142. return ApiResponse::apiResponse(0,"",$user);
  143. }
  144. /**
  145. * 获取订阅套餐
  146. * @param Request $request
  147. * @return
  148. */
  149. public function fetch(Request $request)
  150. {
  151. $plan = Plan::where('show', 1)->get();
  152. return ApiResponse::apiResponse(0,"",$plan);
  153. }
  154. /**
  155. * 获取线路
  156. * @param Request $request
  157. * @return \Illuminate\Http\JsonResponse
  158. */
  159. public function server(Request $request){
  160. $user = User::find($request->user['id']);
  161. $servers = [];
  162. $userService = new UserService();
  163. if ($userService->isAvailable($user)) {
  164. $serverService = new ServerService();
  165. $servers = $serverService->getAvailableServers($user);
  166. }
  167. if (empty($servers)){
  168. return ApiResponse::apiResponse(400,"获取线路失败");
  169. }
  170. return ApiResponse::apiResponse(0,"",$servers);
  171. }
  172. public function getQuickLoginUrl(Request $request)
  173. {
  174. $authorization = $request->input('auth_data') ?? $request->header('authorization');
  175. if (!$authorization)
  176. return ApiResponse::apiResponse(403,"未登录或者登录已经过期");
  177. $authData = explode(':', base64_decode($authorization));
  178. if (!isset($authData[0]) || !isset($authData[1]))
  179. return ApiResponse::apiResponse(403,"请求异常");
  180. $user = User::where('email', $authData[0])
  181. ->where('password', $authData[1])
  182. ->first();
  183. if (!$user) {
  184. //abort(500, __('Token error'));
  185. return ApiResponse::apiResponse(500,"请求异常");
  186. }
  187. $code = Helper::guid();
  188. $key = CacheKey::get('TEMP_TOKEN', $code);
  189. Cache::put($key, $user->id, 60);
  190. $redirect = '/#/login?verify=' . $code . '&redirect=' . ($request->input('redirect') ? $request->input('redirect') : 'dashboard');
  191. if (config('v2board.app_url')) {
  192. $url = config('v2board.app_url') . $redirect;
  193. } else {
  194. $url = url($redirect);
  195. }
  196. return ApiResponse::apiResponse(0,"",$url);
  197. }
  198. public function getVersion(Request $request)
  199. {
  200. $from = $request->input("from");
  201. $version = $request->input("version");
  202. $versionData = [
  203. 'windows_version' => config('v2board.windows_version'),
  204. 'windows_download_url' => config('v2board.windows_download_url'),
  205. 'macos_version' => config('v2board.macos_version'),
  206. 'macos_download_url' => config('v2board.macos_download_url'),
  207. 'android_version' => config('v2board.android_version'),
  208. 'android_download_url' => config('v2board.android_download_url')
  209. ];
  210. $sVersion = "";
  211. $sDownloadUrl = "";
  212. if ($from == "android")
  213. {
  214. $sVersion = $versionData["android_version"];
  215. $sDownloadUrl = $versionData["android_download_url"];
  216. } else if ($from == "win"){
  217. $sVersion = $versionData["windows_version"];
  218. $sDownloadUrl = $versionData["windows_download_url"];
  219. }
  220. else if ($from == "macos")
  221. {
  222. $sVersion = $versionData["macos_version"];
  223. $sDownloadUrl = $versionData["macos_download_url"];
  224. }
  225. $data = [
  226. 'version' => $sVersion,
  227. 'appmsg' => "修复一些bug",
  228. 'download_url' => $sDownloadUrl,
  229. ];
  230. if (version_compare($sVersion,$version,">")){
  231. //服务器大于客户端
  232. $data["isUpdate"] = 1;
  233. return ApiResponse::apiResponse(0,"有更新",$data);
  234. }
  235. $data["isUpdate"] = 0;
  236. return ApiResponse::apiResponse(0,"没有更新",$data);
  237. }
  238. // private function Token(Request $request){
  239. // $authorization = $request->input('auth_data') ?? $request->header('authorization');
  240. // if (!$authorization)
  241. // return 402;
  242. //
  243. // $authData = explode(':', base64_decode($authorization));
  244. // if (!isset($authData[0]) || !isset($authData[1]))
  245. // return 403;
  246. // $user = User::where('email', $authData[0])
  247. // ->where('password', $authData[1])
  248. // ->first();
  249. // if (!$user) {
  250. // //abort(500, __('Token error'));
  251. // //return ApiResponse::apiResponse(500,"请求异常");
  252. // return 404;
  253. // }
  254. //
  255. // return $user;
  256. // }
  257. }