TUserController.java 25.2 KB
Newer Older
1 2 3 4
package cn.wisenergy.chnmuseum.party.web.controller;

import cn.wisenergy.chnmuseum.party.auth.SHA256PasswordEncryptionService;
import cn.wisenergy.chnmuseum.party.auth.SecureRandomSaltService;
5 6 7 8
import cn.wisenergy.chnmuseum.party.common.enums.AuditStatusEnum;
import cn.wisenergy.chnmuseum.party.common.log.MethodLog;
import cn.wisenergy.chnmuseum.party.common.log.OperModule;
import cn.wisenergy.chnmuseum.party.common.log.OperType;
9
import cn.wisenergy.chnmuseum.party.common.util.DateUtil80;
wzp's avatar
wzp committed
10
import cn.wisenergy.chnmuseum.party.common.util.RandomUtil;
11
import cn.wisenergy.chnmuseum.party.common.vo.GenericPageParam;
12
import cn.wisenergy.chnmuseum.party.core.annotations.OperationLog;
wzp's avatar
wzp committed
13
import cn.wisenergy.chnmuseum.party.model.*;
14
import cn.wisenergy.chnmuseum.party.service.RoleService;
15
import cn.wisenergy.chnmuseum.party.service.TUserRoleService;
wzp's avatar
wzp committed
16
import cn.wisenergy.chnmuseum.party.service.impl.TBoxOperationServiceImpl;
17 18 19 20 21 22
import com.baomidou.mybatisplus.core.conditions.query.LambdaQueryWrapper;
import com.baomidou.mybatisplus.core.conditions.query.QueryWrapper;
import com.baomidou.mybatisplus.core.conditions.update.UpdateWrapper;
import com.baomidou.mybatisplus.extension.plugins.pagination.Page;
import cn.wisenergy.chnmuseum.party.web.controller.base.BaseController;
import cn.wisenergy.chnmuseum.party.service.TUserService;
23

24 25 26 27 28 29 30 31 32 33 34 35 36

import io.swagger.annotations.Api;
import io.swagger.annotations.ApiImplicitParam;
import io.swagger.annotations.ApiImplicitParams;
import io.swagger.annotations.ApiOperation;

import lombok.extern.slf4j.Slf4j;
import org.apache.commons.lang3.StringUtils;
import org.apache.shiro.authz.annotation.RequiresPermissions;
import org.springframework.data.redis.core.StringRedisTemplate;
import org.springframework.http.HttpStatus;
import org.springframework.http.ResponseEntity;
import org.springframework.web.bind.annotation.*;
37

38 39 40

import javax.annotation.Resource;
import javax.validation.constraints.NotNull;
wzp's avatar
wzp committed
41
import java.time.LocalDateTime;
42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63
import java.util.*;

/**
 * <pre>
 * 用户 前端控制器
 * </pre>
 *
 * @author Danny Lee
 * @since 2021-03-22
 */
@Slf4j
@RestController
@RequestMapping("/tUser")
@Api(tags = {"用户操作接口"})
public class TUserController extends BaseController {

    @Resource
    private TUserService userService;

    @Resource
    private TUserRoleService tUserRoleService;

64
    @Resource
wzp's avatar
wzp committed
65 66
    private RoleService roleService;

wzp's avatar
wzp committed
67 68 69
    @Resource
    private TBoxOperationServiceImpl boxOperationService;

wzp's avatar
wzp committed
70 71 72 73 74 75
    @Resource
    private StringRedisTemplate stringRedisTemplate;
    private static final String SHIRO_JWT_TOKEN = "shiro:jwt:token";
    //用户登录是否被锁定    一小时 redisKey 前缀
    private String SHIRO_IS_LOCK = "shiro_is_lock_";

wzp's avatar
wzp committed
76 77 78 79 80 81 82 83 84 85 86 87 88 89
    /**
     * 获取用户分页列表
     *
     * @param
     * @return
     */
    @ApiOperation(value = "获取用户分页列表")
    @ApiImplicitParams(value = {
            @ApiImplicitParam(name = "_index", value = "分页起始偏移量", paramType = "query", dataType = "Integer"),
            @ApiImplicitParam(name = "_size", value = "返回条数", paramType = "query", dataType = "Integer")
    })
    @RequestMapping(value = "/getPageList", method = RequestMethod.GET)
    @RequiresPermissions("/user/getPageList")
//    @MethodLog(operModule = OperModule.USER, operType = OperType.SELECT)
wzp's avatar
wzp committed
90
    public Map<String, Object> getUserList(String userName) {
wzp's avatar
wzp committed
91 92 93 94 95 96 97 98
        try {
            Page<TUser> list = userService.getList(getPage(), userName);
            return getResult(list);
        } catch (Exception e) {
            logger.error("查询成员列表出错!", e);
        }
        return getFailResult();
    }
wzp's avatar
wzp committed
99

wzp's avatar
wzp committed
100 101 102
    /**
     * 查询成员列表
     *
wzp's avatar
wzp committed
103
     * @param
wzp's avatar
wzp committed
104 105
     * @return
     */
wzp's avatar
wzp committed
106
    @ApiOperation(value = "获取用户列表")
wzp's avatar
wzp committed
107 108
    @RequestMapping(value = "/getUserList", method = RequestMethod.GET)
    @RequiresPermissions("/user/getUserList")
wzp's avatar
wzp committed
109
//    @MethodLog(operModule = OperModule.USER, operType = OperType.SELECT)
wzp's avatar
wzp committed
110
    public Map<String, Object> getUserList(String type, String status, String auditStatus) {
wzp's avatar
wzp committed
111
        UpdateWrapper<TUser> wrapper = new UpdateWrapper<>();
wzp's avatar
wzp committed
112
        try {
wzp's avatar
wzp committed
113 114
            if (StringUtils.isNotBlank(type)) {
                wrapper.eq("type", type);
wzp's avatar
wzp committed
115
            }
wzp's avatar
wzp committed
116 117
            if (StringUtils.isNotBlank(status)) {
                wrapper.eq("status", status);
wzp's avatar
wzp committed
118
            }
wzp's avatar
wzp committed
119 120
            if (StringUtils.isNotBlank(auditStatus)) {
                wrapper.eq("audit_status", auditStatus);
wzp's avatar
wzp committed
121
            }
wzp's avatar
wzp committed
122
            wrapper.eq("is_deleted", false);
wzp's avatar
wzp committed
123 124 125
            wrapper.orderByDesc("create_time");
            List<TUser> list = userService.list(wrapper);
            return getResult(list);
wzp's avatar
wzp committed
126 127 128
        } catch (Exception e) {
            logger.error("查询成员列表出错!", e);
        }
wzp's avatar
wzp committed
129
        return getFailResult();
wzp's avatar
wzp committed
130 131 132 133 134 135
    }


    @ApiOperation(value = "获取用户详情", notes = "获取用户详情")
    @GetMapping("/getById")
    @RequiresPermissions("/user/getById")
wzp's avatar
wzp committed
136
//    @MethodLog(operModule = OperModule.USER, operType = OperType.SELECT)
wzp's avatar
wzp committed
137
    public Map<String, Object> getById(String id) {
wzp's avatar
wzp committed
138
        TUser tUser = userService.selectById(id);
wzp's avatar
wzp committed
139 140 141 142 143 144 145 146 147 148 149
        List<Role> list = roleService.selectRoleByUserId(id);
        tUser.setRoleList(list);
        return getResult(tUser);
    }

    //新增
    @OperationLog("新增成员")
    @ApiOperation(value = "新增成员")
    @RequestMapping(value = "/add", method = RequestMethod.POST)
    @RequiresPermissions("/user/add")
    @MethodLog(operModule = OperModule.USER, operType = OperType.ADD)
wzp's avatar
wzp committed
150
    public Map<String, Object> add(@RequestBody TUser user) {
wzp's avatar
wzp committed
151 152 153
        Map<String, Object> resultMap = new LinkedHashMap<String, Object>();
        try {
            if (StringUtils.isBlank(user.getUserName())) {
wzp's avatar
wzp committed
154
                resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
155
                resultMap.put("message", "账号不能为空!");
wzp's avatar
wzp committed
156
                return resultMap;
wzp's avatar
wzp committed
157 158 159 160
            } else {
                user.setUserName(StringUtils.trimToNull(user.getUserName()));
            }
            if (StringUtils.isBlank(user.getPassword())) {
wzp's avatar
wzp committed
161
                user.setPassword("123456");
wzp's avatar
wzp committed
162 163 164 165
            } else {
                user.setPassword(StringUtils.trimToNull(user.getPassword()));
            }
            if (StringUtils.isBlank(user.getRealName())) {
wzp's avatar
wzp committed
166
                resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
167
                resultMap.put("message", "姓名不能为空!");
wzp's avatar
wzp committed
168
                return resultMap;
wzp's avatar
wzp committed
169 170 171 172 173
            } else {
                user.setRealName(StringUtils.trimToNull(user.getRealName()));
            }

            if (user.getRoleList() == null || user.getRoleList().size() < 1) {
wzp's avatar
wzp committed
174
                resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
175
                resultMap.put("message", "请选择角色!");
wzp's avatar
wzp committed
176
                return resultMap;
wzp's avatar
wzp committed
177 178
            }
            if (StringUtils.isBlank(user.getOrgId())) {
wzp's avatar
wzp committed
179
                resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
180
                resultMap.put("message", "请选择机构!");
wzp's avatar
wzp committed
181
                return resultMap;
wzp's avatar
wzp committed
182 183 184 185 186 187 188 189 190
            }

            QueryWrapper<TUser> ew = new QueryWrapper<>();
            if (StringUtils.isNoneBlank(user.getUserName())) {
                user.setUserName(user.getUserName().trim());
                ew.eq("is_deleted", 0);
                ew.eq("user_name", user.getUserName());
                TUser one = this.userService.getOne(ew);
                if (one != null) {
wzp's avatar
wzp committed
191
                    resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
192
                    resultMap.put("message", "账号已存在!");
wzp's avatar
wzp committed
193
                    return resultMap;
wzp's avatar
wzp committed
194 195 196 197 198 199 200 201 202 203
                }
            }

            byte[] passwordSalt = SecureRandomSaltService.generateSalt();
            byte[] passwordHash = SHA256PasswordEncryptionService
                    .createPasswordHash(user.getPassword(), passwordSalt);
            user.setPasswordSalt(passwordSalt);
            user.setPasswordHash(passwordHash);
            user.setCreateTime(DateUtil80.getDateTimeOfTimestamp(System.currentTimeMillis()));
            user.setUpdateTime(user.getCreateTime());
wzp's avatar
wzp committed
204 205
            user.setStatus("1");
            user.setAuditStatus("4");
wzp's avatar
wzp committed
206 207 208
            user.setIsDeleted(false);

            boolean ret = this.userService.save(user);
209 210 211 212 213 214 215 216 217 218 219

            List<Role> list = user.getRoleList();
            List<TUserRole> list1 = new ArrayList<>();
            for (Role role : list) {
                TUserRole entity = new TUserRole();
                entity.setUserId(user.getId());
                entity.setRoleId(role.getId());
                entity.setIsDeleted(false);
                list1.add(entity);
            }

wzp's avatar
wzp committed
220 221 222 223
            this.tUserRoleService.saveBatch(list1);

            if (!ret) {
                // 新增失败, 500
wzp's avatar
wzp committed
224
                resultMap.put("resultCode", 500);
wzp's avatar
wzp committed
225
                resultMap.put("message", "服务器忙");
wzp's avatar
wzp committed
226
                return resultMap;
wzp's avatar
wzp committed
227
            }
wzp's avatar
wzp committed
228
            resultMap.put("resultCode", 200);
wzp's avatar
wzp committed
229 230
            resultMap.put("message", "添加成功");
            // 201
wzp's avatar
wzp committed
231
            return resultMap;
wzp's avatar
wzp committed
232
        } catch (Exception e) {
wzp's avatar
wzp committed
233
            resultMap.put("resultCode", 500);
wzp's avatar
wzp committed
234 235 236
            resultMap.put("message", "服务器忙");
            logger.error("新增成员错误!", e);
        }
wzp's avatar
wzp committed
237
        return resultMap;
wzp's avatar
wzp committed
238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283
    }


    // 编辑用户信息
    @OperationLog("修改成员信息")
    @ApiOperation(value = "编辑用户信息(必须传 1username 2name 3roleId)")
    @PutMapping(value = "/update")
    @RequiresPermissions("/user/update")
    @MethodLog(operModule = OperModule.USER, operType = OperType.UPDATE)
    public ResponseEntity<Map<String, Object>> edit(@RequestBody TUser user) {
        Map<String, Object> resultMap = new HashMap<>();
        try {
            boolean ret = false;
            if (user.getId() != null) {
                if ("1".equals(user.getId()) && user.getStatus() == "2") {
                    resultMap.put("status", 400);
                    resultMap.put("message", "该账号不能被禁用");
                    return ResponseEntity.status(HttpStatus.BAD_REQUEST).body(resultMap);
                }

                user.setUserName(StringUtils.trimToNull(user.getUserName()));
                user.setPassword(StringUtils.trimToNull(user.getPassword()));
                user.setRealName(StringUtils.trimToNull(user.getRealName()));
                user.setUpdateTime(DateUtil80.getDateTimeOfTimestamp(System.currentTimeMillis()));
                ret = userService.updateById(user);
                //查询当前用户拥有的角色
                QueryWrapper<TUserRole> userRoleWrapper = new QueryWrapper<>();
                userRoleWrapper.eq("user_id", user.getId());
                boolean remove = tUserRoleService.remove(userRoleWrapper);


                List<Role> list = user.getRoleList();
                if (list != null && list.size() > 0) {
                    ArrayList<TUserRole> list1 = new ArrayList<>();
                    for (Role r : list) {
                        TUserRole userRole = new TUserRole();
                        userRole.setUserId(user.getId());
                        userRole.setRoleId(r.getId());
                        userRole.setIsDeleted(false);
                        list1.add(userRole);
                    }

                    ret = this.tUserRoleService.saveBatch(list1);
                }
            } else {
                // 更新失败, 400
wzp's avatar
wzp committed
284
                resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
285 286 287 288 289 290
                resultMap.put("message", "请选择用户");
                return ResponseEntity.status(HttpStatus.BAD_REQUEST).body(resultMap);
            }

            if (!ret) {
                // 更新失败, 500
wzp's avatar
wzp committed
291
                resultMap.put("resultCode", 500);
wzp's avatar
wzp committed
292 293 294 295
                resultMap.put("message", "服务器忙");
                return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(resultMap);
            }
            // 204
wzp's avatar
wzp committed
296
            resultMap.put("resultCode", 201);
wzp's avatar
wzp committed
297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335
            resultMap.put("message", "更新成功");
            return ResponseEntity.status(HttpStatus.CREATED).body(resultMap);
        } catch (Exception e) {
            logger.error("更新错误!", e);
        }
        // 500
        return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).build();
    }

    /**
     * 删除
     *
     * @param userId
     * @return
     */
    @OperationLog("删除成员")
    @ApiOperation(value = "删除成员")
    @DeleteMapping(value = "/delete")
    @RequiresPermissions("/user/delete")
    @MethodLog(operModule = OperModule.USER, operType = OperType.DELETE)
    public ResponseEntity<Map<String, Object>> delete(String userId) {
        Map<String, Object> resultMap = new HashMap<>();
        try {
            if ("1".equals(userId)) {
                resultMap.put("status", 400);
                resultMap.put("message", "该账号不能被删除");
                return ResponseEntity.status(HttpStatus.BAD_REQUEST).body(resultMap);
            }
            TUser entity = new TUser();
            entity.setId(userId);
            entity.setUpdateTime(DateUtil80.getDateTimeOfTimestamp(System.currentTimeMillis()));
            entity.setIsDeleted(true);
            boolean ret1 = this.userService.updateById(entity);

            QueryWrapper<TUserRole> userRoleWrapper = new QueryWrapper<>();
            userRoleWrapper.eq("user_id", userId);
            boolean ret2 = this.tUserRoleService.remove(userRoleWrapper);

            if (!ret1 || !ret2) {
wzp's avatar
wzp committed
336
                resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
337 338 339
                resultMap.put("message", "删除失败");
                return ResponseEntity.status(HttpStatus.BAD_REQUEST).body(resultMap);
            }
wzp's avatar
wzp committed
340
            resultMap.put("resultCode", 201);
wzp's avatar
wzp committed
341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365
            resultMap.put("message", "删除成功");
            return ResponseEntity.status(HttpStatus.CREATED).body(resultMap);
        } catch (Exception e) {
            logger.error("删除用户出错!", e);
        }
        return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(null);
    }


    /**
     * 禁用
     *
     * @param userId
     * @return
     */
    @OperationLog("禁用成员")
    @ApiOperation(value = "禁用")
    @RequestMapping(value = "/disable", method = RequestMethod.PUT)
    @RequiresPermissions("/user/disable")
    @MethodLog(operModule = OperModule.USER, operType = OperType.DISABLE)
    public ResponseEntity<Map<String, Object>> disableTUser(String userId) {
        Map<String, Object> resultMap = new HashMap<>();
        try {
            TUser entity = new TUser();
            entity.setId(userId);
wzp's avatar
wzp committed
366 367
            //提交禁用审核,没有真正禁用
            entity.setAuditStatus("1");
wzp's avatar
wzp committed
368 369 370 371 372 373 374 375 376 377 378 379
            Integer code = AuditStatusEnum.TBC.getCode();
            entity.setAuditStatus(code.toString());
            entity.setUpdateTime(DateUtil80.getDateTimeOfTimestamp(System.currentTimeMillis()));
            boolean ret = this.userService.updateById(entity);

            //获取该用户的登陆token
            String userToken = stringRedisTemplate.opsForValue().get(SHIRO_JWT_TOKEN + userId);
            if (null != userToken) {
                stringRedisTemplate.delete(userToken);
                stringRedisTemplate.delete(SHIRO_JWT_TOKEN + userId);
            }
            if (!ret) {
wzp's avatar
wzp committed
380
                resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
381 382 383
                resultMap.put("message", "禁用失败");
                return ResponseEntity.status(HttpStatus.BAD_REQUEST).body(resultMap);
            }
wzp's avatar
wzp committed
384
            resultMap.put("resultCode", 201);
wzp's avatar
wzp committed
385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409
            resultMap.put("message", "禁用成功");
            return ResponseEntity.status(HttpStatus.CREATED).body(resultMap);
        } catch (Exception e) {
            logger.error("禁用用户出错!", e);
        }
        return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(null);
    }


    // 启动
    @OperationLog("启用成员")
    @ApiOperation(value = "启用")
    @RequestMapping(value = "/enable", method = RequestMethod.PUT)
    @RequiresPermissions("/user/enable")
    @MethodLog(operModule = OperModule.USER, operType = OperType.UNABLE)
    public ResponseEntity<Map<String, Object>> enableUser(String userId) {
        try {
            Map<String, Object> map = new HashMap<>();

            TUser entity = new TUser();
            entity.setId(userId);
            entity.setStatus("1");
            entity.setUpdateTime(DateUtil80.getDateTimeOfTimestamp(System.currentTimeMillis()));
            boolean ret = this.userService.updateById(entity);
            if (!ret) {
wzp's avatar
wzp committed
410
                map.put("resultCode", "500");
wzp's avatar
wzp committed
411 412 413
                map.put("message", "服务器错误");
                return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(map);
            }
wzp's avatar
wzp committed
414
            map.put("resultCode", "201");
wzp's avatar
wzp committed
415 416 417 418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445
            map.put("message", "启用成功");
            return ResponseEntity.status(HttpStatus.CREATED).body(map);
        } catch (Exception e) {
            logger.error("用户启用出错!", e);
        }
        return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(
                null);
    }


    @OperationLog("修改密码")
    @ApiOperation(value = "管理员更改自己的登录密码", notes = "管理员更改自己的登录密码")
    @RequestMapping(value = "/editPwd", method = RequestMethod.PUT)
    @RequiresPermissions("/user/editPwd")
    @MethodLog(operModule = OperModule.USER, operType = OperType.UPDATE)
    public ResponseEntity<Map<String, Object>> editPwd(@RequestParam(value = "oldPassWord", required = true) String oldPassWord,
                                                       @RequestParam(value = "password", required = true) String password) {
        Map<String, Object> resultMap = new LinkedHashMap<String, Object>();
        try {
            boolean ret = false;
            TUser user = this.userService.getById(this.getUserId());
            byte[] salt = user.getPasswordSalt();
            if (new String(SHA256PasswordEncryptionService.createPasswordHash(oldPassWord, salt))
                    .equals(new String(user.getPasswordHash()))) {
                salt = SecureRandomSaltService.generateSalt();
                user.setPasswordSalt(salt);
                user.setPasswordHash((SHA256PasswordEncryptionService.createPasswordHash(password, salt)));
                user.setUpdateTime(DateUtil80.getDateTimeOfTimestamp(System.currentTimeMillis()));
                ret = this.userService.updateById(user);
            } else {
                logger.error("旧密码不正确");
wzp's avatar
wzp committed
446
                resultMap.put("resultCode", 400);
wzp's avatar
wzp committed
447 448 449 450
                resultMap.put("message", "旧密码不正确");
                return ResponseEntity.status(HttpStatus.BAD_REQUEST).body(resultMap);
            }
            if (!ret) {
wzp's avatar
wzp committed
451
                resultMap.put("resultCode", 500);
wzp's avatar
wzp committed
452 453 454 455
                resultMap.put("message", "修改失败");
                // 更新失败, 500
                return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(resultMap);
            }
wzp's avatar
wzp committed
456
            resultMap.put("resultCode", 200);
wzp's avatar
wzp committed
457 458 459 460 461 462
            resultMap.put("message", "修改成功");
            return ResponseEntity.status(HttpStatus.OK).body(resultMap);
        } catch (Exception e) {
            logger.error("更新密码错误!", e);
        }
        // 500
wzp's avatar
wzp committed
463
        resultMap.put("resultCode", 500);
wzp's avatar
wzp committed
464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490
        resultMap.put("message", "修改失败");
        return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(resultMap);
    }


    // 管理员重置密码
    @OperationLog("重置密码")
    @ApiOperation(value = "管理员重置密码", notes = "管理员重置密码")
    @RequestMapping(value = "/resetPassword", method = RequestMethod.PUT)
    @RequiresPermissions("/user/resetPassword")
    @MethodLog(operModule = OperModule.USER, operType = OperType.UPDATE)
    public ResponseEntity<Map<Object, String>> resetPassword(String userId) {
        try {
            Map<Object, String> map = new LinkedHashMap<>();
            TUser user = new TUser();
            user.setId(userId);
            String newPassword = "123456";
            byte[] passwordSalt = SecureRandomSaltService.generateSalt();
            byte[] passwordHash = SHA256PasswordEncryptionService.createPasswordHash(newPassword, passwordSalt);
            user.setPasswordSalt(passwordSalt);
            user.setPasswordHash(passwordHash);
            user.setUpdateTime(DateUtil80.getDateTimeOfTimestamp(System.currentTimeMillis()));
            boolean ret = userService.updateById(user);
            if (!ret) {
                return ResponseEntity.status(HttpStatus.BAD_REQUEST).build();
            }
            stringRedisTemplate.delete(SHIRO_IS_LOCK + userService.getById(userId).getUserName());
wzp's avatar
wzp committed
491
            map.put("resultCode", "201");
wzp's avatar
wzp committed
492
            map.put("message", "重置密码成功");
wzp's avatar
wzp committed
493
            map.put("data", newPassword);
wzp's avatar
wzp committed
494 495 496 497 498 499 500 501 502 503 504 505 506 507 508 509 510 511 512
            return ResponseEntity.status(HttpStatus.CREATED).body(map);
        } catch (Exception e) {
            logger.error("重置密码出错!", e);
        }
        return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(null);
    }


    @PutMapping("/updateAuditStatus")
    @RequiresPermissions("/user/updateAuditStatus")
    @ApiOperation(value = "更新用户审核状态", notes = "更新用户审核状态")
    @ApiImplicitParams(value = {
            @ApiImplicitParam(name = "id", value = "标识ID", dataType = "String", paramType = "path"),
            @ApiImplicitParam(name = "status", value = "状态", paramType = "query", dataType = "String")
    })
    @MethodLog(operModule = OperModule.USER, operType = OperType.UPDATE)
    public Map<String, Object> updateStatus(@NotNull(message = "机构用户不能为空") @PathVariable("id") String id, @RequestParam("status") AuditStatusEnum status) {
        UpdateWrapper<TUser> updateWrapper = new UpdateWrapper<>();
        updateWrapper.eq("id", id);
wzp's avatar
wzp committed
513 514 515 516 517 518
        updateWrapper.eq("audit_status", status.getCode());
        //当禁用审核通过后,真正禁用
        if ("4".equals(status.getCode().toString())) {
            updateWrapper.eq("status", "2");
        }

wzp's avatar
wzp committed
519 520 521 522 523
        boolean flag = userService.update(updateWrapper);
        if (flag) {
            return getSuccessResult();
        }
        return getFailResult();
524 525
    }

wzp's avatar
wzp committed
526 527 528 529 530 531 532 533 534 535 536 537 538 539 540 541 542
    //新增
    @OperationLog("新增机顶盒账号")
    @ApiOperation(value = "新增机顶盒账号")
    @RequestMapping(value = "/BoxAdd", method = RequestMethod.POST)
    @RequiresPermissions("/user/BoxAdd")
//    @MethodLog(operModule = OperModule.USER, operType = OperType.ADD)
    public ResponseEntity<Map<String, Object>> BoxAdd(TUser user) {
        Map<String, Object> resultMap = new LinkedHashMap<String, Object>();
        try {
            if (StringUtils.isBlank(user.getUserName())) {
                resultMap.put("resultCode", 400);
                resultMap.put("message", "账号不能为空!");
                return ResponseEntity.status(HttpStatus.BAD_REQUEST).body(resultMap);
            } else {
                user.setUserName(StringUtils.trimToNull(user.getUserName()));
            }

wzp's avatar
wzp committed
543
            user.setPassword(RandomUtil.createLetterRandom(6));
wzp's avatar
wzp committed
544 545 546 547 548 549 550 551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572

            QueryWrapper<TUser> ew = new QueryWrapper<>();
            if (StringUtils.isNoneBlank(user.getUserName())) {
                user.setUserName(user.getUserName().trim());
                ew.eq("is_deleted", 0);
                ew.eq("user_name", user.getUserName());
                TUser one = this.userService.getOne(ew);
                if (one != null) {
                    resultMap.put("resultCode", 400);
                    resultMap.put("message", "账号已存在!");
                    return ResponseEntity.status(HttpStatus.BAD_REQUEST).body(resultMap);
                }
            }

            byte[] passwordSalt = SecureRandomSaltService.generateSalt();
            byte[] passwordHash = SHA256PasswordEncryptionService
                    .createPasswordHash(user.getPassword(), passwordSalt);
            user.setPasswordSalt(passwordSalt);
            user.setPasswordHash(passwordHash);
            user.setCreateTime(DateUtil80.getDateTimeOfTimestamp(System.currentTimeMillis()));
            user.setUpdateTime(user.getCreateTime());
            user.setIsDeleted(false);
            user.setPermanent(true);
            user.setStatus("1");
            user.setAuditStatus("4");
            user.setType("3");

            boolean ret = this.userService.save(user);

wzp's avatar
wzp committed
573 574 575 576 577 578 579
            TBoxOperation tBoxOperation = new TBoxOperation();
            tBoxOperation.setOrganId(user.getOrgId());
            tBoxOperation.setAreaId(user.getAreaId());
            tBoxOperation.setStatus(1);
            tBoxOperation.setCreateTime(LocalDateTime.now());
            tBoxOperation.setUpdateTime(LocalDateTime.now());
            ret = boxOperationService.save(tBoxOperation);
wzp's avatar
wzp committed
580 581 582 583 584 585 586 587 588 589 590 591 592 593 594 595 596 597 598 599 600

            if (!ret) {
                // 新增失败, 500
                resultMap.put("resultCode", 500);
                resultMap.put("message", "服务器忙");
                return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR)
                        .body(resultMap);
            }
            resultMap.put("resultCode", 200);
            resultMap.put("message", "添加成功");
            resultMap.put("data", user.getPassword());
            // 201
            return ResponseEntity.status(HttpStatus.CREATED).body(resultMap);
        } catch (Exception e) {
            resultMap.put("resultCode", 500);
            resultMap.put("message", "服务器忙");
            logger.error("新增成员错误!", e);
        }
        return ResponseEntity.status(HttpStatus.INTERNAL_SERVER_ERROR).body(resultMap);
    }

601 602
}