Login.php 7.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158
  1. <?php
  2. namespace app\inter\controller;
  3. use think\Controller;
  4. use think\Db;
  5. use think\Session;
  6. use think\Log;
  7. use think\Request;
  8. use think\Cache;
  9. use app\common\library\UUIDs;
  10. use app\common\library\Verify;
  11. use think\Validate;
  12. class Login extends Controller
  13. {
  14. public function _initialize(){
  15. /*$admin = Cache::get('doctor');
  16. if($admin){
  17. //已经登陆过
  18. return json_encode(array('status'=>'fail','code'=>'1001','msg'=>'您已登陆,请勿重复登录'));
  19. }*/
  20. }
  21. /**
  22. * 医生登录
  23. *
  24. * @ApiTitle (医生登录)
  25. * @ApiSummary (医生登录)
  26. * @ApiSector (医生接口)
  27. * @ApiMethod (POST)
  28. * @ApiRoute (/inter/login/index)
  29. * @ApiHeaders (name="sign", type="string", required=true, description="请求头-校验key")
  30. * @ApiHeaders (name="nonce", type="string", required=true, description="请求头-随机数")
  31. * @ApiHeaders (name="timestamp", type=string, required=true, description="请求头-时间戳s")
  32. * @ApiParams (name="param", type="string", required=true, description="参数json字符串")
  33. * @ApiParams (name="param[userName]", type="string", sample="", description="用户账号<必填>")
  34. * @ApiParams (name="param[pwd]", type="string", sample="", description="用户密码<必填>")
  35. * @ApiParams (name="param[capture]", type="string", sample="", description="验证码<选填>")
  36. * @ApiReturnParams (name="status", type="integer", required=true, sample="0", description="返回码 fail 失败 ok成功"))
  37. * @ApiReturnParams (name="code", type="integer", required=true, sample="0", description="返回状态码")
  38. * @ApiReturnParams (name="info", type="string", required=true, sample="返回成功", description="返回信息")
  39. * @ApiReturnParams (name="sessionid", type="object", sample="{}", description="缓存的数据key")
  40. * @ApiReturn (data="
  41. {
  42. 'status': ok,
  43. 'code': '0000',
  44. 'sessionid': 'a17z7a7a8f9g9rh9d89jio',
  45. 'info' : ''
  46. }
  47. *")
  48. **/
  49. //登录功能
  50. public function index(){
  51. try{
  52. $param = $_REQUEST['param'];
  53. Verify::loginCheck($param);
  54. $sessionid = UUIDs::uuid16();
  55. log::record($sessionid);
  56. log::record($_REQUEST);
  57. if(!empty($param["captcha"])){
  58. //1. 获取到用户提交的验证码
  59. $captcha = $param["captcha"];
  60. //2. 将session中的验证码和用户提交的验证码进行核对,当成功时提示验证码正确,并销毁之前的session值,不成功则重新提交
  61. if(strtolower($_SESSION["captcha"]) == strtolower($captcha)){
  62. $_SESSION["captcha"] = "";
  63. }else{
  64. return json_encode(['status'=>'fail','code'=>'1002','msg'=>'验证码输入错误']);
  65. }
  66. }
  67. if(empty($param['userName'])){
  68. return json_encode(['status'=>'fail','code'=>'1100','msg'=>'用户名不能为空']);
  69. }
  70. if(empty($param['pwd'])){
  71. return json_encode(['status'=>'fail','code'=>'1101','msg'=>'密码不能为空']);
  72. }
  73. //医生信息
  74. $info = DB::table('doctors')->where('username',$param['userName'])->field('id,attachment,username,password,login_time,login_failure,realname,email,phone,doctor_title,institution_id,department_id,doctor_role,is_report')->find();
  75. log::record($info);
  76. if(!$info){
  77. return json_encode(['status'=>'fail','code'=>'1004','msg'=>'用户名'.$param['userName'].'或密码错误']);
  78. }
  79. //医生类
  80. $class_info = DB::table('doctor_class')->where('doctor_id',$info['id'])->cache(300)->find();
  81. $institution = DB::table('institution')->where('id',$info['institution_id'])->cache(300)->field('name')->find();
  82. $info['institution_name'] = $institution['name'];
  83. $info['doctor_class_info'] = $class_info;
  84. //医生权限菜单
  85. $sql = "SELECT m.id,m.name,m.url,m.parent_id,m.icon_name from menu as m,dr_cla_permission as d where d.type=1 and d.doctor_id='".$info['id']."' and d.pass=m.id order by m.ordernum ";
  86. $permission = DB::query($sql);
  87. $info['permission'] = $permission;
  88. if(md5($param['pwd']) == $info['password']){
  89. //登录成功则失败次数清0
  90. DB::table('doctors')->where('username',$param['userName'])->update(['login_failure'=>0,'login_time'=>date('Y-m-d H:i:s')]);
  91. Cache::set($sessionid,$info,43200);
  92. log::record('----登录信息----');
  93. log::record(Cache::get($sessionid));
  94. log::record('----登录信息----');
  95. unset($info['password']);
  96. return json_encode(['status'=>'ok','code'=>'0000','info'=>$info,'sessionid'=>$sessionid]);
  97. }else{
  98. //登录失败则将 登录失败次数+1
  99. $time = date('Y-m-d', time());
  100. $datetime = strtotime($time);
  101. //上次登录时间-今日0点时间
  102. $t = $info['login_time'] - $datetime;
  103. if( $t < 0){
  104. //时间小于0 代表今日未进行登录 登录失败次数归0
  105. DB::table('doctors')->where('username',$param['userName'])->update(['login_failure'=>0]);
  106. }
  107. DB::table('doctors')->where('username',$param['userName'])->setInc('login_failure');
  108. return json_encode(['status'=>'fail','code'=>'1004','msg'=>'用户名'.$param['userName'].'或者密码错误','info'=>$info['login_failure']]);
  109. }
  110. }catch(\Exception $e){
  111. return json_encode(['status'=>'fail','code'=>'2000','msg'=>$e->getMessage()]);
  112. }
  113. }
  114. //注册功能
  115. public function register(){
  116. $param = $_REQUEST['param'];
  117. $info = DB::table('doctors')->where('username',$param['userName'])->find();
  118. if($info){
  119. return json_encode(['status'=>'fail','code'=>'1006']);
  120. }
  121. $dat = array();
  122. $dat['password'] = md5($param['pwd']);
  123. $dat['username'] = $param['userName'];
  124. $id = DB::table('doctors')->insertGetId($dat);
  125. $doctor_class = array();
  126. $doctor_class['doctor_class'] = $param['doctor_class'];
  127. $doctor_class['doctor_id'] = $id;
  128. $doctor_class['department_id'] = $param['second_department_id'];
  129. //医生类别表
  130. DB::table('doctor_class')->insert($doctor_class);
  131. if($id){
  132. return json_encode(['status'=>'ok','code'=>'0000']);
  133. }else{
  134. return json_encode(['status'=>'fail','code'=>'1005','msg'=>'注册失败']);
  135. }
  136. }
  137. //退出登录 清空session值
  138. public function signOut(){
  139. // Cache::rm('doctor');
  140. Cache::clear();
  141. return json_encode(['status'=>'ok','code'=>'0000']);
  142. }
  143. public function change(){
  144. $id = $_REQUEST['id'];
  145. $a = DB::table('exams')->where('id',$id)->update(['exam_status'=>'3']);
  146. if($a){
  147. echo '已更改';
  148. }else{
  149. echo '更改失败';
  150. }
  151. }
  152. }