|
|
@@ -0,0 +1,89 @@
|
|
|
+/*
|
|
|
+ * Copyright (c) 2018-2028, Chill Zhuang All rights reserved.
|
|
|
+ *
|
|
|
+ * Redistribution and use in source and binary forms, with or without
|
|
|
+ * modification, are permitted provided that the following conditions are met:
|
|
|
+ *
|
|
|
+ * Redistributions of source code must retain the above copyright notice,
|
|
|
+ * this list of conditions and the following disclaimer.
|
|
|
+ * Redistributions in binary form must reproduce the above copyright
|
|
|
+ * notice, this list of conditions and the following disclaimer in the
|
|
|
+ * documentation and/or other materials provided with the distribution.
|
|
|
+ * Neither the name of the dreamlu.net developer nor the names of its
|
|
|
+ * contributors may be used to endorse or promote products derived from
|
|
|
+ * this software without specific prior written permission.
|
|
|
+ * Author: Chill 庄骞 (smallchill@163.com)
|
|
|
+ */
|
|
|
+package org.springblade.modules.auth.granter;
|
|
|
+
|
|
|
+import lombok.AllArgsConstructor;
|
|
|
+import org.springblade.common.cache.CacheNames;
|
|
|
+import org.springblade.core.log.exception.ServiceException;
|
|
|
+import org.springblade.core.redis.cache.BladeRedisCache;
|
|
|
+import org.springblade.core.tool.utils.DigestUtil;
|
|
|
+import org.springblade.core.tool.utils.Func;
|
|
|
+import org.springblade.core.tool.utils.StringUtil;
|
|
|
+import org.springblade.core.tool.utils.WebUtil;
|
|
|
+import org.springblade.modules.auth.enums.BladeUserEnum;
|
|
|
+import org.springblade.modules.auth.utils.TokenUtil;
|
|
|
+import org.springblade.modules.system.entity.Tenant;
|
|
|
+import org.springblade.modules.system.entity.UserInfo;
|
|
|
+import org.springblade.modules.system.service.ITenantService;
|
|
|
+import org.springblade.modules.system.service.IUserService;
|
|
|
+import org.springframework.stereotype.Component;
|
|
|
+
|
|
|
+import javax.servlet.http.HttpServletRequest;
|
|
|
+
|
|
|
+/**
|
|
|
+ * 验证码TokenGranter
|
|
|
+ *
|
|
|
+ * @author Chill
|
|
|
+ */
|
|
|
+@Component
|
|
|
+@AllArgsConstructor
|
|
|
+public class CaptchaTokenGranter implements ITokenGranter {
|
|
|
+
|
|
|
+ public static final String GRANT_TYPE = "captcha";
|
|
|
+
|
|
|
+ private IUserService userService;
|
|
|
+ private ITenantService tenantService;
|
|
|
+ private BladeRedisCache redisCache;
|
|
|
+
|
|
|
+ @Override
|
|
|
+ public UserInfo grant(TokenParameter tokenParameter) {
|
|
|
+ HttpServletRequest request = WebUtil.getRequest();
|
|
|
+
|
|
|
+ String key = request.getHeader(TokenUtil.CAPTCHA_HEADER_KEY);
|
|
|
+ String code = request.getHeader(TokenUtil.CAPTCHA_HEADER_CODE);
|
|
|
+ // 获取验证码
|
|
|
+ String redisCode = redisCache.get(CacheNames.CAPTCHA_KEY + key);
|
|
|
+ // 判断验证码
|
|
|
+ if (code == null || !StringUtil.equalsIgnoreCase(redisCode, code)) {
|
|
|
+ throw new ServiceException(TokenUtil.CAPTCHA_NOT_CORRECT);
|
|
|
+ }
|
|
|
+
|
|
|
+ String tenantId = tokenParameter.getArgs().getStr("tenantId");
|
|
|
+ String username = tokenParameter.getArgs().getStr("username");
|
|
|
+ String password = tokenParameter.getArgs().getStr("password");
|
|
|
+ UserInfo userInfo = null;
|
|
|
+ if (Func.isNoneBlank(username, password)) {
|
|
|
+ // 获取租户信息
|
|
|
+ Tenant tenant = tenantService.getByTenantId(tenantId);
|
|
|
+ if (!TokenUtil.judgeTenant(tenant)) {
|
|
|
+ throw new ServiceException(TokenUtil.USER_HAS_NO_TENANT_PERMISSION);
|
|
|
+ }
|
|
|
+ // 获取用户类型
|
|
|
+ String userType = tokenParameter.getArgs().getStr("userType");
|
|
|
+ // 根据不同用户类型调用对应的接口返回数据,用户可自行拓展
|
|
|
+ if (userType.equals(BladeUserEnum.WEB.getName())) {
|
|
|
+ userInfo = userService.userInfo(tenantId, username, DigestUtil.encrypt(password));
|
|
|
+ } else if (userType.equals(BladeUserEnum.APP.getName())) {
|
|
|
+ userInfo = userService.userInfo(tenantId, username, DigestUtil.encrypt(password));
|
|
|
+ } else {
|
|
|
+ userInfo = userService.userInfo(tenantId, username, DigestUtil.encrypt(password));
|
|
|
+ }
|
|
|
+ }
|
|
|
+ return userInfo;
|
|
|
+ }
|
|
|
+
|
|
|
+}
|