CheckLogin.php 2.7 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980
  1. <?php
  2. namespace App\Http\Middleware;
  3. use App\Model\Depart;
  4. use App\Model\ProductInventorySet;
  5. use App\Service\EmployeeService;
  6. use Closure;
  7. use App\Service\TokenService;
  8. /**
  9. * 用户登陆中间件
  10. */
  11. class CheckLogin
  12. {
  13. /**
  14. * Handle an incoming request.
  15. *
  16. * @param \Illuminate\Http\Request $request
  17. * @param \Closure $next
  18. * @return mixed
  19. */
  20. public function handle($request, Closure $next)
  21. {
  22. $token=$request->header('Authorization');
  23. if (empty($token)) return response()->json(['code'=>1,'msg'=>'缺少登录凭证','data'=>null]);
  24. //校验token
  25. $return = TokenService::verifyToken($token);
  26. $user_id = $return['user_id'] ?? 0;
  27. if ($user_id <= 0) return response()->json(['code'=>1,'msg'=>TokenService::error[$user_id],'data'=>null]);
  28. //密码
  29. $psd = $return['psd'] ?? "";
  30. if(empty($psd)) return response()->json(['code'=>1,'msg'=>'账号密码失效,请重新登录','data'=>null]);
  31. //校验用户
  32. $checkResult = EmployeeService::checkUser($user_id, $psd);
  33. list($state, $data) = $checkResult;
  34. if(! $state) return response()->json(['code'=>1,'msg'=>$data,'data'=>null]);
  35. //人员角色
  36. $data['role'] = EmployeeService::getPersonRole($user_id);
  37. //角色里所有菜单权限
  38. $data['role_authority'] = EmployeeService::getPersonRoleQx($data['role']);
  39. //角色里特殊的按钮
  40. // $data['special_button'] = EmployeeService::getSpecialButton($data['role'],$user_id);
  41. //我的部门
  42. $data['depart_range'] = EmployeeService::getLoginDepart($user_id);
  43. //部门下的人
  44. $data['man_range'] = EmployeeService::getLoginDepartOfMan($data['depart_range']);
  45. $is_authority = $menu_id = 0;
  46. $query = config('morequery');
  47. $url = $request->path();
  48. $menu = $query['menu_auth'] ?? [];
  49. if(isset($menu[$url])) {
  50. if(is_array($menu[$url])) {
  51. if(isset($menu[$url][$request->get('type')])) {
  52. $is_authority = 1;
  53. $menu_id = $menu[$url][$request->get('type')];
  54. }
  55. }else{
  56. $is_authority = 1;
  57. $menu_id = $menu[$url];
  58. }
  59. }
  60. //该接口是否需要个人部门所有的权限区分
  61. $request->merge(['is_authority' => $is_authority, 'menu_authority_id' => $menu_id]);
  62. //操作记录传输菜单ID与指向接口
  63. $menu = $query['menu_option'] ?? [];
  64. if(isset($menu[$url])) $request->merge(['menu_id' => $menu[$url]['menu_id'], 'opt_api_url' => $menu[$url]['url']]);
  65. //写入user信息
  66. $request->userData = $data;
  67. return $next($request);
  68. }
  69. }