SysUserController.java 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380
  1. package com.ruoyi.system.controller;
  2. import java.io.IOException;
  3. import java.util.Date;
  4. import java.util.List;
  5. import java.util.Set;
  6. import java.util.stream.Collectors;
  7. import javax.servlet.http.HttpServletResponse;
  8. import org.apache.commons.lang3.ArrayUtils;
  9. import org.springframework.beans.factory.annotation.Autowired;
  10. import org.springframework.validation.annotation.Validated;
  11. import org.springframework.web.bind.annotation.DeleteMapping;
  12. import org.springframework.web.bind.annotation.GetMapping;
  13. import org.springframework.web.bind.annotation.PathVariable;
  14. import org.springframework.web.bind.annotation.PostMapping;
  15. import org.springframework.web.bind.annotation.PutMapping;
  16. import org.springframework.web.bind.annotation.RequestBody;
  17. import org.springframework.web.bind.annotation.RequestMapping;
  18. import org.springframework.web.bind.annotation.RestController;
  19. import org.springframework.web.multipart.MultipartFile;
  20. import com.ruoyi.common.core.domain.R;
  21. import com.ruoyi.common.core.text.Convert;
  22. import com.ruoyi.common.core.utils.DateUtils;
  23. import com.ruoyi.common.core.utils.StringUtils;
  24. import com.ruoyi.common.core.utils.poi.ExcelUtil;
  25. import com.ruoyi.common.core.web.controller.BaseController;
  26. import com.ruoyi.common.core.web.domain.AjaxResult;
  27. import com.ruoyi.common.core.web.page.TableDataInfo;
  28. import com.ruoyi.common.log.annotation.Log;
  29. import com.ruoyi.common.log.enums.BusinessType;
  30. import com.ruoyi.common.security.annotation.InnerAuth;
  31. import com.ruoyi.common.security.annotation.RequiresPermissions;
  32. import com.ruoyi.common.security.service.TokenService;
  33. import com.ruoyi.common.security.utils.SecurityUtils;
  34. import com.ruoyi.system.api.domain.SysDept;
  35. import com.ruoyi.system.api.domain.SysRole;
  36. import com.ruoyi.system.api.domain.SysUser;
  37. import com.ruoyi.system.api.model.LoginUser;
  38. import com.ruoyi.system.service.ISysConfigService;
  39. import com.ruoyi.system.service.ISysDeptService;
  40. import com.ruoyi.system.service.ISysPermissionService;
  41. import com.ruoyi.system.service.ISysPostService;
  42. import com.ruoyi.system.service.ISysRoleService;
  43. import com.ruoyi.system.service.ISysUserService;
  44. /**
  45. * 用户信息
  46. *
  47. * @author ruoyi
  48. */
  49. @RestController
  50. @RequestMapping("/user")
  51. public class SysUserController extends BaseController
  52. {
  53. @Autowired
  54. private ISysUserService userService;
  55. @Autowired
  56. private ISysRoleService roleService;
  57. @Autowired
  58. private ISysDeptService deptService;
  59. @Autowired
  60. private ISysPostService postService;
  61. @Autowired
  62. private ISysPermissionService permissionService;
  63. @Autowired
  64. private ISysConfigService configService;
  65. @Autowired
  66. private TokenService tokenService;
  67. /**
  68. * 获取用户列表
  69. */
  70. @RequiresPermissions("system:user:list")
  71. @GetMapping("/list")
  72. public TableDataInfo list(SysUser user)
  73. {
  74. startPage();
  75. List<SysUser> list = userService.selectUserList(user);
  76. return getDataTable(list);
  77. }
  78. @Log(title = "用户管理", businessType = BusinessType.EXPORT)
  79. @RequiresPermissions("system:user:export")
  80. @PostMapping("/export")
  81. public void export(HttpServletResponse response, SysUser user)
  82. {
  83. List<SysUser> list = userService.selectUserList(user);
  84. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  85. util.exportExcel(response, list, "用户数据");
  86. }
  87. @Log(title = "用户管理", businessType = BusinessType.IMPORT)
  88. @RequiresPermissions("system:user:import")
  89. @PostMapping("/importData")
  90. public AjaxResult importData(MultipartFile file, boolean updateSupport) throws Exception
  91. {
  92. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  93. List<SysUser> userList = util.importExcel(file.getInputStream());
  94. String operName = SecurityUtils.getUsername();
  95. String message = userService.importUser(userList, updateSupport, operName);
  96. return success(message);
  97. }
  98. @PostMapping("/importTemplate")
  99. public void importTemplate(HttpServletResponse response) throws IOException
  100. {
  101. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  102. util.importTemplateExcel(response, "用户数据");
  103. }
  104. /**
  105. * 获取当前用户信息
  106. */
  107. @InnerAuth
  108. @GetMapping("/info/{username}")
  109. public R<LoginUser> info(@PathVariable("username") String username)
  110. {
  111. SysUser sysUser = userService.selectUserByUserName(username);
  112. if (StringUtils.isNull(sysUser))
  113. {
  114. return R.fail("用户名或密码错误");
  115. }
  116. // 角色集合
  117. Set<String> roles = permissionService.getRolePermission(sysUser);
  118. // 权限集合
  119. Set<String> permissions = permissionService.getMenuPermission(sysUser);
  120. LoginUser sysUserVo = new LoginUser();
  121. sysUserVo.setSysUser(sysUser);
  122. sysUserVo.setRoles(roles);
  123. sysUserVo.setPermissions(permissions);
  124. return R.ok(sysUserVo);
  125. }
  126. /**
  127. * 注册用户信息
  128. */
  129. @InnerAuth
  130. @PostMapping("/register")
  131. public R<Boolean> register(@RequestBody SysUser sysUser)
  132. {
  133. String username = sysUser.getUserName();
  134. if (!("true".equals(configService.selectConfigByKey("sys.account.registerUser"))))
  135. {
  136. return R.fail("当前系统没有开启注册功能!");
  137. }
  138. if (!userService.checkUserNameUnique(sysUser))
  139. {
  140. return R.fail("保存用户'" + username + "'失败,注册账号已存在");
  141. }
  142. return R.ok(userService.registerUser(sysUser));
  143. }
  144. /**
  145. *记录用户登录IP地址和登录时间
  146. */
  147. @InnerAuth
  148. @PutMapping("/recordlogin")
  149. public R<Boolean> recordlogin(@RequestBody SysUser sysUser)
  150. {
  151. return R.ok(userService.updateUserProfile(sysUser));
  152. }
  153. /**
  154. * 获取用户信息
  155. *
  156. * @return 用户信息
  157. */
  158. @GetMapping("getInfo")
  159. public AjaxResult getInfo()
  160. {
  161. LoginUser loginUser = SecurityUtils.getLoginUser();
  162. SysUser user = loginUser.getSysUser();
  163. // 角色集合
  164. Set<String> roles = permissionService.getRolePermission(user);
  165. // 权限集合
  166. Set<String> permissions = permissionService.getMenuPermission(user);
  167. if (!loginUser.getPermissions().equals(permissions))
  168. {
  169. loginUser.setPermissions(permissions);
  170. tokenService.refreshToken(loginUser);
  171. }
  172. AjaxResult ajax = AjaxResult.success();
  173. ajax.put("user", user);
  174. ajax.put("roles", roles);
  175. ajax.put("permissions", permissions);
  176. ajax.put("isDefaultModifyPwd", initPasswordIsModify(user.getPwdUpdateDate()));
  177. ajax.put("isPasswordExpired", passwordIsExpiration(user.getPwdUpdateDate()));
  178. return ajax;
  179. }
  180. // 检查初始密码是否提醒修改
  181. public boolean initPasswordIsModify(Date pwdUpdateDate)
  182. {
  183. Integer initPasswordModify = Convert.toInt(configService.selectConfigByKey("sys.account.initPasswordModify"));
  184. return initPasswordModify != null && initPasswordModify == 1 && pwdUpdateDate == null;
  185. }
  186. // 检查密码是否过期
  187. public boolean passwordIsExpiration(Date pwdUpdateDate)
  188. {
  189. Integer passwordValidateDays = Convert.toInt(configService.selectConfigByKey("sys.account.passwordValidateDays"));
  190. if (passwordValidateDays != null && passwordValidateDays > 0)
  191. {
  192. if (StringUtils.isNull(pwdUpdateDate))
  193. {
  194. // 如果从未修改过初始密码,直接提醒过期
  195. return true;
  196. }
  197. Date nowDate = DateUtils.getNowDate();
  198. return DateUtils.differentDaysByMillisecond(nowDate, pwdUpdateDate) > passwordValidateDays;
  199. }
  200. return false;
  201. }
  202. /**
  203. * 根据用户编号获取详细信息
  204. */
  205. @RequiresPermissions("system:user:query")
  206. @GetMapping(value = { "/", "/{userId}" })
  207. public AjaxResult getInfo(@PathVariable(value = "userId", required = false) Long userId)
  208. {
  209. AjaxResult ajax = AjaxResult.success();
  210. if (StringUtils.isNotNull(userId))
  211. {
  212. userService.checkUserDataScope(userId);
  213. SysUser sysUser = userService.selectUserById(userId);
  214. ajax.put(AjaxResult.DATA_TAG, sysUser);
  215. ajax.put("postIds", postService.selectPostListByUserId(userId));
  216. ajax.put("roleIds", sysUser.getRoles().stream().map(SysRole::getRoleId).collect(Collectors.toList()));
  217. }
  218. List<SysRole> roles = roleService.selectRoleAll();
  219. ajax.put("roles", SysUser.isAdmin(userId) ? roles : roles.stream().filter(r -> !r.isAdmin()).collect(Collectors.toList()));
  220. ajax.put("posts", postService.selectPostAll());
  221. return ajax;
  222. }
  223. /**
  224. * 新增用户
  225. */
  226. @RequiresPermissions("system:user:add")
  227. @Log(title = "用户管理", businessType = BusinessType.INSERT)
  228. @PostMapping
  229. public AjaxResult add(@Validated @RequestBody SysUser user)
  230. {
  231. deptService.checkDeptDataScope(user.getDeptId());
  232. roleService.checkRoleDataScope(user.getRoleIds());
  233. if (!userService.checkUserNameUnique(user))
  234. {
  235. return error("新增用户'" + user.getUserName() + "'失败,登录账号已存在");
  236. }
  237. else if (StringUtils.isNotEmpty(user.getPhonenumber()) && !userService.checkPhoneUnique(user))
  238. {
  239. return error("新增用户'" + user.getUserName() + "'失败,手机号码已存在");
  240. }
  241. else if (StringUtils.isNotEmpty(user.getEmail()) && !userService.checkEmailUnique(user))
  242. {
  243. return error("新增用户'" + user.getUserName() + "'失败,邮箱账号已存在");
  244. }
  245. user.setCreateBy(SecurityUtils.getUsername());
  246. user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
  247. return toAjax(userService.insertUser(user));
  248. }
  249. /**
  250. * 修改用户
  251. */
  252. @RequiresPermissions("system:user:edit")
  253. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  254. @PutMapping
  255. public AjaxResult edit(@Validated @RequestBody SysUser user)
  256. {
  257. userService.checkUserAllowed(user);
  258. userService.checkUserDataScope(user.getUserId());
  259. deptService.checkDeptDataScope(user.getDeptId());
  260. roleService.checkRoleDataScope(user.getRoleIds());
  261. if (!userService.checkUserNameUnique(user))
  262. {
  263. return error("修改用户'" + user.getUserName() + "'失败,登录账号已存在");
  264. }
  265. else if (StringUtils.isNotEmpty(user.getPhonenumber()) && !userService.checkPhoneUnique(user))
  266. {
  267. return error("修改用户'" + user.getUserName() + "'失败,手机号码已存在");
  268. }
  269. else if (StringUtils.isNotEmpty(user.getEmail()) && !userService.checkEmailUnique(user))
  270. {
  271. return error("修改用户'" + user.getUserName() + "'失败,邮箱账号已存在");
  272. }
  273. user.setUpdateBy(SecurityUtils.getUsername());
  274. return toAjax(userService.updateUser(user));
  275. }
  276. /**
  277. * 删除用户
  278. */
  279. @RequiresPermissions("system:user:remove")
  280. @Log(title = "用户管理", businessType = BusinessType.DELETE)
  281. @DeleteMapping("/{userIds}")
  282. public AjaxResult remove(@PathVariable Long[] userIds)
  283. {
  284. if (ArrayUtils.contains(userIds, SecurityUtils.getUserId()))
  285. {
  286. return error("当前用户不能删除");
  287. }
  288. return toAjax(userService.deleteUserByIds(userIds));
  289. }
  290. /**
  291. * 重置密码
  292. */
  293. @RequiresPermissions("system:user:edit")
  294. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  295. @PutMapping("/resetPwd")
  296. public AjaxResult resetPwd(@RequestBody SysUser user)
  297. {
  298. userService.checkUserAllowed(user);
  299. userService.checkUserDataScope(user.getUserId());
  300. user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
  301. user.setUpdateBy(SecurityUtils.getUsername());
  302. return toAjax(userService.resetPwd(user));
  303. }
  304. /**
  305. * 状态修改
  306. */
  307. @RequiresPermissions("system:user:edit")
  308. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  309. @PutMapping("/changeStatus")
  310. public AjaxResult changeStatus(@RequestBody SysUser user)
  311. {
  312. userService.checkUserAllowed(user);
  313. userService.checkUserDataScope(user.getUserId());
  314. user.setUpdateBy(SecurityUtils.getUsername());
  315. return toAjax(userService.updateUserStatus(user));
  316. }
  317. /**
  318. * 根据用户编号获取授权角色
  319. */
  320. @RequiresPermissions("system:user:query")
  321. @GetMapping("/authRole/{userId}")
  322. public AjaxResult authRole(@PathVariable("userId") Long userId)
  323. {
  324. AjaxResult ajax = AjaxResult.success();
  325. SysUser user = userService.selectUserById(userId);
  326. List<SysRole> roles = roleService.selectRolesByUserId(userId);
  327. ajax.put("user", user);
  328. ajax.put("roles", SysUser.isAdmin(userId) ? roles : roles.stream().filter(r -> !r.isAdmin()).collect(Collectors.toList()));
  329. return ajax;
  330. }
  331. /**
  332. * 用户授权角色
  333. */
  334. @RequiresPermissions("system:user:edit")
  335. @Log(title = "用户管理", businessType = BusinessType.GRANT)
  336. @PutMapping("/authRole")
  337. public AjaxResult insertAuthRole(Long userId, Long[] roleIds)
  338. {
  339. userService.checkUserDataScope(userId);
  340. roleService.checkRoleDataScope(roleIds);
  341. userService.insertUserAuth(userId, roleIds);
  342. return success();
  343. }
  344. /**
  345. * 获取部门树列表
  346. */
  347. @RequiresPermissions("system:user:list")
  348. @GetMapping("/deptTree")
  349. public AjaxResult deptTree(SysDept dept)
  350. {
  351. return success(deptService.selectDeptTreeList(dept));
  352. }
  353. }