CheckLogin.php 2.5 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273
  1. <?php
  2. namespace App\Http\Middleware;
  3. use App\Model\Depart;
  4. use App\Model\ProductInventorySet;
  5. use App\Service\EmployeeService;
  6. use Closure;
  7. use App\Service\TokenService;
  8. /**
  9. * 用户登陆中间件
  10. */
  11. class CheckLogin
  12. {
  13. /**
  14. * Handle an incoming request.
  15. *
  16. * @param \Illuminate\Http\Request $request
  17. * @param \Closure $next
  18. * @return mixed
  19. */
  20. public function handle($request, Closure $next)
  21. {
  22. $token=$request->header('Authorization');
  23. if (empty($token)) return response()->json(['code'=>1,'msg'=>'缺少登录凭证','data'=>null]);
  24. //校验token
  25. $return = TokenService::verifyToken($token);
  26. $user_id = $return['user_id'] ?? 0;
  27. if ($user_id <= 0) return response()->json(['code'=>1,'msg'=>TokenService::error[$user_id],'data'=>null]);
  28. //密码
  29. $psd = $return['psd'] ?? "";
  30. if(empty($psd)) return response()->json(['code'=>1,'msg'=>'账号密码失效,请重新登录','data'=>null]);
  31. //校验用户
  32. $checkResult = EmployeeService::checkUser($user_id, $psd);
  33. list($state, $data) = $checkResult;
  34. if(! $state) return response()->json(['code'=>1,'msg'=>$data,'data'=>null]);
  35. //人员角色
  36. $data['role'] = EmployeeService::getPersonRole($user_id);
  37. //角色里所有菜单权限
  38. $data['role_authority'] = EmployeeService::getPersonRoleQx($data['role']);
  39. //角色里特殊的按钮
  40. // $data['special_button'] = EmployeeService::getSpecialButton($data['role'],$user_id);
  41. //我的部门
  42. $data['depart_range'] = EmployeeService::getLoginDepart($user_id);
  43. //部门下的人
  44. $data['man_range'] = EmployeeService::getLoginDepartOfMan($data['depart_range']);
  45. $is_authority = $menu_id = 0;
  46. $query = config('morequery');
  47. $url = $request->path();
  48. $menu = $query['menu_auth'] ?? [];
  49. if(isset($menu[$url])) {
  50. $is_authority = 1;
  51. $menu_id = $menu[$url];
  52. }
  53. //该接口是否需要个人部门所有的权限区分
  54. $request->merge(['is_authority' => $is_authority, 'menu_authority_id' => $menu_id]);
  55. //操作记录传输菜单ID与指向接口
  56. $menu = $query['menu_option'] ?? [];
  57. if(isset($menu[$url])) $request->merge(['menu_id' => $menu[$url]['menu_id'], 'opt_api_url' => $menu[$url]['url']]);
  58. //写入user信息
  59. $request->userData = $data;
  60. return $next($request);
  61. }
  62. }