BE_ERPLogin.groovy 7.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192
  1. import com.dderp.common.entity.store.StoreInfo
  2. import com.dySweetFishPlugin.sql.dao.TunaService
  3. import com.dySweetFishPlugin.tool.crypto.EncryptUtil
  4. import com.sweetfish.convert.json.JsonConvert
  5. import com.sweetfish.service.RetResult
  6. import com.dderp.business.dao.LoginDao
  7. import com.dderp.common.api.*
  8. import com.dderp.common.datas.ERPModule
  9. import com.dderp.common.entity.base.DataBaseMultiItemEx
  10. import com.dderp.common.entity.base.ProcessEntityItem
  11. import com.dderp.common.entity.site.ERPTokenUser
  12. import com.dderp.common.entity.site.LoginRequest
  13. import com.dderp.common.entity.site.LoginResult
  14. import com.dderp.common.entity.system.LoginUser
  15. import com.dderp.common.tool.ERPUtils
  16. import org.apache.commons.lang3.StringUtils
  17. import org.apache.logging.log4j.LogManager
  18. import org.apache.logging.log4j.Logger
  19. import org.rex.RMap
  20. import javax.annotation.Resource
  21. /**
  22. * ERP系统登录脚本,随着业务复杂度提高,登录功能统一一个接口提供
  23. */
  24. @SuppressWarnings("unused")
  25. class BE_ERPLogin implements BusinessExecutor<ProcessEntityItem<LoginRequest>, LoginResult> {
  26. protected final Logger logger = LogManager.getLogger(this.getClass().getSimpleName())
  27. @Resource
  28. DeptService deptService
  29. @Resource
  30. ERPService erpService
  31. @Resource
  32. TunaService tunaService
  33. @Resource
  34. SysMessageService sysMessageService
  35. @Resource
  36. JsonConvert jsonConvert
  37. @Resource(name = "property.passwordSalt")
  38. private String passwordSalt
  39. @Resource(name = "property.erpToken.commonkey")
  40. private String ssoERPTokenCommonKey
  41. @Resource(name = "property.deliver.Store.commonkey")
  42. private String ssoStoreTokenCommonKey
  43. @Resource(name = "property.dnyMall.commonkey")
  44. private String ssoMallTokenCommonKey
  45. private LoginDao loginDao
  46. //登录策略,当前数据库那一个地方需要重启服务,可改成不需要的,参考TunaDaoService动态sql执行
  47. def loginStrategies = [
  48. "0" : [
  49. "name" : "后台管理系统登录",
  50. "resourceLogin": { LoginRequest loginInfo ->
  51. if (loginInfo.password == "D227E2334F89C81FDE0967B115D4F29C") {
  52. LoginUser info = new LoginUser()
  53. info.setId(-999L)
  54. info.setLoginName("SuperResourcer")
  55. info.setUserName("资源管理员")
  56. info.setDeptName("资源管理")
  57. return RetResult.<ERPTokenUser> successT().result(new ERPTokenUser(info))
  58. } else {
  59. return RetResult.<ERPTokenUser> errorT().retinfo("用户账号或密码错误,登录失败")
  60. }
  61. },
  62. "login" : { LoginRequest loginInfo, RMap mapParams, DataBaseMultiItemEx supplierItem ->
  63. mapParams.put("companyId", 0L)
  64. LoginUser info = loginDao.login(mapParams, supplierItem.dataBaseAlias, Long.parseLong(supplierItem.shardingKey))
  65. if (info == null) {
  66. return RetResult.<ERPTokenUser> errorT().retinfo("用户账号或密码错误,登录失败")
  67. }
  68. if (info.status == 1) {
  69. return RetResult.<ERPTokenUser> errorT().retinfo("用户账号已冻结,登录失败")
  70. }
  71. info.deptName = deptService.getRedisDeptName(info.getDeptId(), Long.parseLong(supplierItem.shardingKey))
  72. sysMessageService.syncSysGroupMessage(info.getId(), Long.parseLong(supplierItem.shardingKey))
  73. return RetResult.<ERPTokenUser> successT().result(new ERPTokenUser(info))
  74. },
  75. "tokenKey" : ssoERPTokenCommonKey
  76. ],
  77. "80": [
  78. "name" : "门店后台管理系统登录",
  79. "resourceLogin": { LoginRequest loginInfo ->
  80. //不允许使用superResourcer登录,防漏洞
  81. return RetResult.<ERPTokenUser> errorT().retinfo("用户账号或密码错误,登录失败")
  82. },
  83. "login" : { LoginRequest loginInfo, RMap mapParams, DataBaseMultiItemEx supplierItem ->
  84. mapParams.put("companyId", 0L)
  85. StoreInfo info = loginDao.storeLogin(mapParams, supplierItem.dataBaseAlias, Long.parseLong(supplierItem.shardingKey))
  86. if (info == null) {
  87. return RetResult.<ERPTokenUser> errorT().retinfo("用户账号或密码错误,登录失败")
  88. }
  89. if (info.voidFlag == 1) {
  90. return RetResult.<ERPTokenUser> errorT().retinfo("用户账号已冻结,登录失败")
  91. }
  92. return RetResult.<ERPTokenUser> successT().result(new ERPTokenUser(info))
  93. },
  94. "tokenKey" : ssoStoreTokenCommonKey
  95. ]
  96. ]
  97. @Override
  98. String scriptName() {
  99. return "ERP系统登录"
  100. }
  101. @Override
  102. ERPModule module() {
  103. return ERPModule.SYSTEM
  104. }
  105. @Override
  106. RetResult<LoginResult> execute(ProcessEntityItem<LoginRequest> source) {
  107. //直接定义Resource不好使,还是需要赋值
  108. loginStrategies.get("0").tokenKey = ssoERPTokenCommonKey
  109. loginStrategies.get("80").tokenKey = ssoStoreTokenCommonKey
  110. if (source.inputItem == null) {
  111. return RetResult.<LoginResult> errorT().retinfo("未传入用户信息")
  112. }
  113. if (source.inputItem.supplierId <= 0L) {
  114. return RetResult.<LoginResult> errorT().retinfo("请选择登录公司信息")
  115. }
  116. DataBaseMultiItemEx supplierItem = erpService.getERPSupplierInfo(source.inputItem.supplierId)
  117. if (supplierItem == null) {
  118. return RetResult.<LoginResult> errorT().retinfo("无效的登录公司信息")
  119. }
  120. if (StringUtils.isEmpty(source.inputItem.loginName)) {
  121. return RetResult.<LoginResult> errorT().retinfo("请输入账号")
  122. }
  123. if (StringUtils.isEmpty(source.inputItem.password)) {
  124. return RetResult.<LoginResult> errorT().retinfo("请输入密码")
  125. }
  126. if (!loginStrategies.containsKey(String.valueOf(source.inputItem.loginFrom))) {
  127. return RetResult.<LoginResult> errorT().retinfo("无效的登录来源")
  128. }
  129. source.inputItem.password = EncryptUtil.md5Digest(source.inputItem.password + passwordSalt)
  130. loginDao = tunaService.generate(LoginDao.class)
  131. RetResult<ERPTokenUser> userResult
  132. def loginStrategy = loginStrategies.get(String.valueOf(source.inputItem.loginFrom))
  133. if (source.inputItem.loginName.equalsIgnoreCase("SuperResourcer")) {
  134. userResult = loginStrategy.resourceLogin.call(source.inputItem)
  135. } else {
  136. RMap<String, Object> paramMap = new RMap<>()
  137. paramMap.put("loginName", source.inputItem.loginName)
  138. paramMap.put("password", source.inputItem.password)
  139. userResult = loginStrategy.login.call(source.inputItem, paramMap, supplierItem)
  140. }
  141. if (userResult.isSuccess()) {
  142. userResult.result.dataSourceId = supplierItem.dataBaseAlias
  143. userResult.result.supplierCode = Long.parseLong(supplierItem.shardingKey)
  144. String accessToken = ERPUtils.parseTokenFromERPUser(userResult.result, loginStrategy.tokenKey, jsonConvert)
  145. return RetResult.<LoginResult> successT().result(new LoginResult(userResult.result, accessToken))
  146. } else {
  147. return RetResult.<LoginResult> errorT().retinfo(userResult.retinfo)
  148. }
  149. }
  150. }