UserServiceImpl.java 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592
  1. package com.uas.sso.service.impl;
  2. import com.alibaba.fastjson.JSON;
  3. import com.alibaba.fastjson.JSONObject;
  4. import com.uas.sso.common.encrypt.MD5;
  5. import com.uas.sso.common.util.HttpUtil;
  6. import com.uas.sso.core.Const;
  7. import com.uas.sso.core.ICallable;
  8. import com.uas.sso.core.Status;
  9. import com.uas.sso.core.Type;
  10. import com.uas.sso.dao.UserDao;
  11. import com.uas.sso.dao.UserRecordDao;
  12. import com.uas.sso.entity.*;
  13. import com.uas.sso.exception.VisibleError;
  14. import com.uas.sso.logging.LoggerManager;
  15. import com.uas.sso.logging.SyncBufferedLogger;
  16. import com.uas.sso.logging.UserBufferedLogger;
  17. import com.uas.sso.service.*;
  18. import com.uas.sso.util.AccountTypeUtils;
  19. import com.uas.sso.util.ExecuteUtils;
  20. import org.springframework.beans.factory.annotation.Autowired;
  21. import org.springframework.data.domain.Page;
  22. import org.springframework.data.domain.PageRequest;
  23. import org.springframework.data.domain.Pageable;
  24. import org.springframework.data.jpa.domain.Specification;
  25. import org.springframework.stereotype.Service;
  26. import org.springframework.ui.ModelMap;
  27. import org.springframework.util.CollectionUtils;
  28. import org.springframework.util.StringUtils;
  29. import com.uas.sso.exception.AccountException;
  30. import javax.persistence.criteria.*;
  31. import java.sql.Timestamp;
  32. import java.util.ArrayList;
  33. import java.util.List;
  34. import java.util.Set;
  35. /**
  36. * 用户service实现类
  37. *
  38. * @author wangmh
  39. * @date 2018/1/2
  40. */
  41. @Service
  42. public class UserServiceImpl implements UserService {
  43. @Autowired
  44. private UserDao userDao;
  45. @Autowired
  46. private UserRecordDao userRecordDao;
  47. @Autowired
  48. private UserValidService userValidService;
  49. @Autowired
  50. private UserspaceService userspaceService;
  51. @Autowired
  52. private AppService appService;
  53. @Autowired
  54. private UserQuestionService userQuestionService;
  55. private UserBufferedLogger userLog = LoggerManager.getLogger(UserBufferedLogger.class);
  56. private SyncBufferedLogger syncLog = LoggerManager.getLogger(SyncBufferedLogger.class);
  57. @Override
  58. public User findByMobile(String mobile, String mobileArea) {
  59. return userDao.findByMobileAndMobileArea(mobile, mobileArea);
  60. }
  61. @Override
  62. public User findByMobile(String mobile) {
  63. return userDao.findByMobile(mobile);
  64. }
  65. @Override
  66. public boolean mobileHasRegistered(String mobile) {
  67. User user = userDao.findByMobile(mobile);
  68. if (user == null) {
  69. return false;
  70. }
  71. return true;
  72. }
  73. @Override
  74. public boolean emailHasRegistered(String email) {
  75. List<User> users = userDao.findByEmail(email);
  76. if (CollectionUtils.isEmpty(users)) {
  77. return false;
  78. }
  79. return true;
  80. }
  81. @Override
  82. public synchronized User register(User user) {
  83. String noEncryPwd = user.getPassword();
  84. // 校验手机号是否被注册
  85. if (mobileHasRegistered(user.getMobile())) {
  86. throw new VisibleError("该手机号已被注册");
  87. }
  88. // 由于现在不考虑手机号所属区域,默认为中国大陆
  89. if (StringUtils.isEmpty(user.getMobileArea())) {
  90. user.setMobileArea(Const.CONTINENT);
  91. }
  92. // 设置基本属性,手机号默认已认证
  93. user.setRegisterDate(new Timestamp(System.currentTimeMillis()));
  94. Long uu = userDao.findMaxUU();
  95. user.setUserUU(uu == null ? 10000 : (uu + 1));
  96. user.setSalt(String.valueOf(user.getUserUU()));
  97. user.setMobileValidCode((short) Status.AUTHENTICATED.getCode());
  98. user.setEmailValidCode((short) Status.NOT_APPLYING.getCode());
  99. user.setIdentityValidCode((short) Status.NOT_APPLYING.getCode());
  100. user.setPassword(getEncryPassword(Const.ENCRY_FORMAT, user.getPassword(), user.getSalt()));
  101. user.setUserRecord(new UserRecord());
  102. user.getUserRecord().setUser(user);
  103. user.getUserRecord().setUserUU(user.getUserUU());
  104. userDao.save(user);
  105. userLog.info(user, Type.UPDATE_REGISTER.getValue());
  106. // 同步到各个应用
  107. return syncUserInfo(user.getUserUU(), noEncryPwd, "个人注册");
  108. }
  109. @Override
  110. public String getEncryPassword(String format, String noEncryPwd, String salt) {
  111. if (StringUtils.isEmpty(format)) {
  112. return noEncryPwd;
  113. }
  114. // 超过32认为是已加密过的密文
  115. if (noEncryPwd.length() >= 32) {
  116. /// 之后添加日志时恢复
  117. //logger.error("用户密码加密", String.format("传递过来的密码(%s)必须是未加密的明文", noEncryPwd));
  118. throw new AccountException("invalid password");
  119. }
  120. // $password{$salt}
  121. String password = format.replace(Const.ENCRY_PARAM_PASSWORD, noEncryPwd);
  122. password = password.replace(Const.ENCRY_PARAM_SALT, salt == null ? "" : salt);
  123. return MD5.toMD5(password);
  124. }
  125. @Override
  126. public User save(User user) {
  127. user = userDao.save(user);
  128. return syncUserInfo(user, null, "修改用户信息");
  129. }
  130. @Override
  131. public void checkPassword(Long userUU, String password, boolean isEncry) {
  132. // 根据用户uu号找到旧数据
  133. User oldUser = userDao.findByUserUU(userUU);
  134. if (oldUser == null) {
  135. throw new VisibleError("用户名或密码错误");
  136. }
  137. // 校验密码
  138. checkPassword(oldUser, password, isEncry);
  139. }
  140. @Override
  141. public void checkPasswordByMobile(String mobile, String password, boolean isEncry) {
  142. // 找到用户
  143. User oldUser = userDao.findByMobile(mobile);
  144. if (oldUser == null) {
  145. throw new VisibleError("用户名或密码错误");
  146. }
  147. // 校验密码
  148. checkPassword(oldUser, password, isEncry);
  149. }
  150. @Override
  151. public void checkPasswordByEmail(String email, String password, boolean isEncry) {
  152. // 找到用户
  153. List<User> oldUsers = userDao.findByEmailAndEmailValidCode(email, (short) Status.AUTHENTICATED.getCode());
  154. if (CollectionUtils.isEmpty(oldUsers)) {
  155. throw new VisibleError("该邮箱未认证,请使用手机号登录");
  156. }
  157. // 校验密码
  158. for (User oldUser : oldUsers) {
  159. checkPassword(oldUser, password, isEncry);
  160. }
  161. }
  162. @Override
  163. public int getPwdErrorCount(String username) {
  164. User user = findByUsername(username);
  165. if (user == null) {
  166. throw new VisibleError("用户名不存在");
  167. }
  168. if (user.getUserRecord() == null) {
  169. return 0;
  170. }
  171. return user.getUserRecord().getPwdErrorCount();
  172. }
  173. @Override
  174. public User findByUsername(String username) {
  175. String type = AccountTypeUtils.getAccountType(username);
  176. User user = null;
  177. if (AccountTypeUtils.MOBILE.equals(type)) {
  178. // 手机号
  179. user = userDao.findByMobile(username);
  180. } else if (AccountTypeUtils.EMAIL.equals(type)) {
  181. // 邮箱
  182. List<User> users = userDao.findByEmailAndEmailValidCode(username, (short) Status.AUTHENTICATED.getCode());
  183. // 认证邮箱只有一条记录,直接选择第一个
  184. if (!CollectionUtils.isEmpty(users)) {
  185. user = users.get(0);
  186. }
  187. } else if (AccountTypeUtils.UU_NUMBER.equals(type)) {
  188. // uu号
  189. user = userDao.findByUserUU(Long.valueOf(username));
  190. }
  191. return user;
  192. }
  193. /**
  194. * 校验用户密码
  195. *
  196. * @param oldUser 用户信息
  197. * @param password 需要校验的密码
  198. * @param isEncry 需校验的密码是否被加密
  199. */
  200. private void checkPassword(User oldUser, String password, boolean isEncry) {
  201. // 密码未加密,转换成加密后的密码
  202. String encryPassword = password;
  203. if (!isEncry) {
  204. encryPassword = getEncryPassword(Const.ENCRY_FORMAT, password, oldUser.getSalt());
  205. }
  206. // 校验密码
  207. if (!encryPassword.equals(oldUser.getPassword())) {
  208. throw new VisibleError("密码不一致");
  209. }
  210. }
  211. @Override
  212. public UserRecord save(UserRecord userRecord) {
  213. return userRecordDao.save(userRecord);
  214. }
  215. @Override
  216. public User findOne(Long userUU) {
  217. return userDao.findOne(userUU);
  218. }
  219. @Override
  220. public boolean realNameIsValid(String realName) {
  221. User user = userDao.findByRealName(realName);
  222. if (user != null && user.getIdentityValidCode() == Status.AUTHENTICATED.getCode()) {
  223. return true;
  224. }
  225. return false;
  226. }
  227. @Override
  228. public boolean idCardIsValid(String idCard) {
  229. User user = userDao.findByIdCard(idCard);
  230. if (user != null && user.getIdentityValidCode() == Status.AUTHENTICATED.getCode()) {
  231. return true;
  232. }
  233. return false;
  234. }
  235. @Override
  236. public void submitIdValidInfo(User user) {
  237. // 校验企业名和营业执照是否被认证
  238. boolean isValid = realNameIsValid(user.getRealName());
  239. if (isValid) {
  240. throw new VisibleError("该真实姓名已被认证,请确认");
  241. }
  242. isValid = idCardIsValid(user.getIdCard());
  243. if (isValid) {
  244. throw new VisibleError("该身份证号已被认证,请确认");
  245. }
  246. User oldUser = userDao.findByUserUU(user.getUserUU());
  247. oldUser.setIdentityValidCode((short) Status.TO_BE_CERTIFIED.getCode());
  248. userDao.save(oldUser);
  249. // 保存日志
  250. userValidService.submitValid(user);
  251. }
  252. @Override
  253. public void updateMobile(Long userUU, String newMobile) {
  254. // 获取用户信息
  255. User user = userDao.findOne(userUU);
  256. if (user == null) {
  257. throw new VisibleError("用户不存在");
  258. }
  259. // 修改手机号
  260. user.setMobile(newMobile);
  261. user.setMobileValidCode((short) Status.AUTHENTICATED.getCode());
  262. // 保存用户信息
  263. userDao.save(user);
  264. // 保存日志
  265. userLog.info(user, Type.UPDATE_MOBILE.getValue());
  266. // 同步到各个应用
  267. syncUserInfo(user.getUserUU(), null, "个人注册");
  268. }
  269. @Override
  270. public void updateEmail(Long userUU, String newEmail) {
  271. // 获取用户信息
  272. User user = userDao.findOne(userUU);
  273. if (user == null) {
  274. throw new VisibleError("用户不存在");
  275. }
  276. // 修改手机号
  277. user.setEmail(newEmail);
  278. user.setEmailValidCode((short) Status.AUTHENTICATED.getCode());
  279. // 保存用户信息
  280. userDao.save(user);
  281. // 保存日志
  282. userLog.info(user, Type.UPDATE_EMAIL.getValue());
  283. // 同步信息到各应用
  284. syncUserInfo(user.getUserUU(), null, "修改邮箱");
  285. }
  286. @Override
  287. public Page<User> findMemberBySpaceUU(int page, int size, final Long spaceUU) {
  288. Pageable pageable = PageInfo.pageRequest(new PageRequest(page, size));
  289. Page<User> pUsers = userDao.findAll(new Specification<User>() {
  290. @Override
  291. public Predicate toPredicate(Root<User> root, CriteriaQuery<?> query, CriteriaBuilder cb) {
  292. List<Predicate> list = new ArrayList<>();
  293. list.add(cb.equal(root.join("userSpaces", JoinType.INNER).get("spaceUU").as(Long.class), spaceUU));
  294. Predicate[] predicates = new Predicate[list.size()];
  295. predicates = list.toArray(predicates);
  296. return cb.and(predicates);
  297. }
  298. }, pageable);
  299. return new PageInfo<User>(pUsers.getContent(), pageable, pUsers.getTotalElements());
  300. }
  301. @Override
  302. public void bindUserspace(String appId, Long userUU, Long spaceUU) {
  303. // 找到用户和企业
  304. User user = findOne(userUU);
  305. Userspace userspace = userspaceService.findOne(spaceUU);
  306. // 将企业添加到用户列表上
  307. Set<Userspace> userspaces = user.getUserSpaces();
  308. userspaces.add(userspace);
  309. // 保存
  310. userDao.save(user);
  311. syncUserBindSpace(userUU, spaceUU);
  312. // 保存日志
  313. userLog.info(user, Type.BIND_USERSPACE.getValue()+spaceUU);
  314. }
  315. /**
  316. * 同步用户绑定企业关系
  317. * @param userUU 用户uu号
  318. * @param spaceUU 企业uu号
  319. */
  320. private void syncUserBindSpace(Long userUU, Long spaceUU) {
  321. syncRelation(userUU, spaceUU, "bind");
  322. }
  323. /**
  324. * 同步用户解除绑定企业关系
  325. * @param userUU 用户uu号
  326. * @param spaceUU 企业uu号
  327. */
  328. private void syncUserUnbindSpace(Long userUU, Long spaceUU) {
  329. syncRelation(userUU, spaceUU, "unbind");
  330. }
  331. /**
  332. * 同步用户与企业的关系
  333. * @param userUU 用户uu号
  334. * @param spaceUU 企业uu号
  335. * @param type 类型 (bind or unbind)
  336. */
  337. private void syncRelation(final Long userUU, final Long spaceUU, final String type) {
  338. List<String> apps = appService.findUid();
  339. ExecuteUtils.execute(new ICallable<Void, String>() {
  340. @Override
  341. public Void call(String appId) {
  342. App tempApp = appService.findOne(appId);
  343. if (tempApp != null && StringUtils.isEmpty(tempApp.getUserControl())
  344. && !StringUtils.isEmpty(tempApp.getBackRelationUrl())) {
  345. String url = tempApp.getBackRelationUrl();
  346. ModelMap formData = new ModelMap();
  347. formData.put("userUU", userUU);
  348. formData.put("spaceUU", spaceUU);
  349. formData.put("type", type);
  350. HttpUtil.ResponseWrap res = null;
  351. try {
  352. res = HttpUtil.doPost(url, formData, 30000);
  353. if (!res.isSuccess()) {
  354. syncLog.error(appId, "同步绑定信息失败", JSON.toJSONString(formData), res.getContent());
  355. } else {
  356. syncLog.info(appId, "同步绑定信息成功", JSON.toJSONString(formData));
  357. }
  358. } catch (Exception e) {
  359. syncLog.error(appId, "同步绑定信息失败", JSON.toJSONString(formData), e.getMessage());
  360. }
  361. }
  362. return null;
  363. }
  364. }, apps);
  365. }
  366. @Override
  367. public void unbindUserspace(Long userUU, Long spaceUU) {
  368. // 找到用户和企业
  369. User user = findOne(userUU);
  370. if (user == null) {
  371. throw new VisibleError("未找到用户信息");
  372. }
  373. Userspace userspace = userspaceService.findOne(spaceUU);
  374. if (userspace == null) {
  375. throw new VisibleError("未找到企业信息");
  376. }
  377. // 将企业添加到用户列表上
  378. Set<Userspace> userspaces = user.getUserSpaces();
  379. userspaces.remove(userspace);
  380. // 保存
  381. userDao.save(user);
  382. syncUserUnbindSpace(userUU, spaceUU);
  383. // 保存日志
  384. userLog.info(user, Type.UNBIND_USERSPACE.getValue()+spaceUU);
  385. }
  386. @Override
  387. public void setQuestion(Long userUU, List<UserQuestion> questions) {
  388. // 找到用户密保
  389. User user = userDao.findOne(userUU);
  390. List<UserQuestion> userQuestions = user.getQuestions();
  391. // 清空旧的并添加新的
  392. if (CollectionUtils.isEmpty(userQuestions)) {
  393. user.setQuestions(questions);
  394. } else {
  395. for (int i=0; i<questions.size(); i++) {
  396. if (userQuestions.get(i) == null) {
  397. user.getQuestions().add(questions.get(i));
  398. } else {
  399. userQuestions.get(i).setQuestion(questions.get(i).getQuestion());
  400. userQuestions.get(i).setAnswer(questions.get(i).getAnswer());
  401. userQuestions.get(i).setSort(questions.get(i).getSort());
  402. }
  403. }
  404. }
  405. // 保存并添加日志
  406. user = userDao.save(user);
  407. userLog.info(user, Type.UPDATE_QUESTION.getValue(), JSON.toJSONString(user.getQuestions()));
  408. }
  409. @Override
  410. public List<String> findRepeatEmail() {
  411. return userDao.findRepeatEmail();
  412. }
  413. @Override
  414. public List<User> findByEmail(String email) {
  415. return userDao.findByEmail(email);
  416. }
  417. @Override
  418. public User updatePassword(Long userUU, String noEncryPwd) {
  419. User user = userDao.findOne(userUU);
  420. if (user == null) {
  421. throw new VisibleError("该用户不存在");
  422. }
  423. user.setPassword(getEncryPassword(Const.ENCRY_FORMAT, noEncryPwd, user.getSalt()));
  424. user = syncUserInfo(user , noEncryPwd, "用户修改密码");
  425. return userDao.save(user);
  426. }
  427. @Override
  428. public List<UserSpaceDetailInfo> findUserByTels(List<String> tels) {
  429. return userDao.findUsersByTels(tels);
  430. }
  431. /**
  432. * 同步用户信息到各个应用
  433. * @param userUU 用户uu号
  434. * @param noEncryPwd 未加密密码,用于同步im
  435. * @param msg 同步信息描述,用户区分同步类型
  436. */
  437. private User syncUserInfo(Long userUU, String noEncryPwd, String msg) {
  438. return syncUserInfo(findOne(userUU), noEncryPwd, msg);
  439. }
  440. /**
  441. * 同步用户信息到各个应用
  442. * @param user 用户信息
  443. * @param noEncryPwd 未加密密码,用于同步im
  444. * @param msg 同步信息描述,用户区分同步类型
  445. */
  446. private User syncUserInfo(User user, String noEncryPwd, final String msg) {
  447. List<String> apps = appService.findUid();
  448. try {
  449. // 同步信息到im
  450. String imId = syncUserToIm(user, noEncryPwd);
  451. user.setImId(imId);
  452. user = userDao.save(user);
  453. } catch (Exception e) {
  454. e.printStackTrace();
  455. }
  456. final User finalUser = user;
  457. ExecuteUtils.execute(new ICallable<Void, String>() {
  458. @Override
  459. public Void call(String appId) {
  460. App tempApp = appService.findOne(appId);
  461. if (tempApp != null && StringUtils.isEmpty(tempApp.getUserControl())
  462. && !StringUtils.isEmpty(tempApp.getBackUserUrl())) {
  463. String url = tempApp.getBackUserUrl();
  464. JSONObject formData = JSON.parseObject(JSON.toJSONString(finalUser));
  465. formData.put("password", finalUser.getPassword());
  466. HttpUtil.ResponseWrap res = null;
  467. try {
  468. res = HttpUtil.doPost(url, formData, 30000);
  469. if (!res.isSuccess()) {
  470. syncLog.error(appId, msg + ",同步用户信息失败", JSON.toJSONString(finalUser), res.getContent());
  471. } else {
  472. syncLog.info(appId, msg + ",同步用户信息成功", JSON.toJSONString(finalUser));
  473. }
  474. } catch (Exception e) {
  475. syncLog.error(appId, msg + ",同步用户信息失败", JSON.toJSONString(finalUser), e.getMessage());
  476. }
  477. }
  478. return null;
  479. }
  480. }, apps);
  481. return user;
  482. }
  483. private String syncUserToIm(User user, String noEncryPwd) throws Exception {
  484. String appId = "im";
  485. App app = appService.findOne(appId);
  486. if (!StringUtils.isEmpty(app.getBackUserUrl())) {
  487. String url = app.getBackUserUrl();
  488. HttpUtil.ResponseWrap res = null;
  489. ModelMap formData = new ModelMap();
  490. formData.put("email", user.getEmail());
  491. formData.put("idCard", user.getIdCard());
  492. formData.put("name", user.getVipName());
  493. formData.put("sex", user.getSex());
  494. formData.put("mobile", user.getMobile());
  495. formData.put("password", noEncryPwd);
  496. formData.put("dialectUID", user.getImId());
  497. res = HttpUtil.doPost(url, formData, 30000);
  498. if (!res.isSuccess()) {
  499. throw new Exception(res.getContent());
  500. } else {
  501. JSONObject obj = JSON.parseObject(res.getContent());
  502. return String.valueOf(obj.get("dialectUID"));
  503. }
  504. }
  505. return null;
  506. }
  507. public UserView findOneView(Long userUU) {
  508. User user = findOne(userUU);
  509. return user.toView();
  510. }
  511. }