weixin.js 9.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227
  1. 'use strict';
  2. const assert = require('assert');
  3. const _ = require('lodash');
  4. const uuid = require('uuid');
  5. const urljoin = require('url-join');
  6. const stringRandom = require('string-random');
  7. const Controller = require('egg').Controller;
  8. const { BusinessError, ErrorCode } = require('naf-core').Error;
  9. /**
  10. * 微信认证,获得openid和用户信息,生成微信Jwt
  11. */
  12. class WeixinController extends Controller {
  13. /**
  14. * 认证流程
  15. * 1. 缓存原始请求地址,生成state和认证回调地址
  16. * 2. 通过wxapi认证,获得认证code
  17. * 3. 通过code获得openid,通过openid,查询绑定用户,创建jwt
  18. * 4. jwt写入redis,返回认证code
  19. * 5. 通过code获取jwt
  20. */
  21. // GET 请求认证
  22. // response_type:
  23. // code - url带上code参数重定向到原始地址
  24. // store - 默认,认证结果写入sessionStore,然后重定向回请求页面(要求请求页面和认证服务在同一域名下)
  25. // token - url带上token参数重定向到原始地址
  26. async auth() {
  27. const { redirect_uri, code, test, type, response_type = 'store', uid, qrcode, msgid, objid } = this.ctx.query;
  28. if (test) {
  29. return await this.authTest();
  30. }
  31. if (code) {
  32. return await this.authBack(this.ctx.query);
  33. }
  34. this.ctx.logger.debug(`[auth] reditect_uri - ${redirect_uri}`);
  35. // assert(redirect_uri, '回调地址不能为空');
  36. // TODO: 保存原始请求地址
  37. // const { config } = this.app;
  38. // console.log('ctx.host: ', this.ctx.host);
  39. // console.log('config.hostHeaders: ', config.hostHeaders);
  40. // TODO: 保存原始请求地址
  41. const state = uuid();
  42. const key = `visit:auth:state:${state}`;
  43. const val = JSON.stringify({ redirect_uri, type, uid, qrcode, msgid, objid });
  44. await this.app.redis.set(key, val, 'EX', 600);
  45. // TODO: 生成回调地址
  46. const { wxapi, authUrl = this.ctx.path } = this.app.config;
  47. const backUrl = encodeURI(`${this.app.config.baseUrl}${this.config.authUrl}?state=${state}`);
  48. const to_uri = encodeURI(`${wxapi.baseUrl}/api/auth?appid=${wxapi.appid}&response_type=code&redirect_uri=${backUrl}#wechat`);
  49. // const backUrl = encodeURI(`${this.app.config.baseUrl}${this.config.authUrl}/`);
  50. // const to_uri = `https://open.weixin.qq.com/connect/oauth2/authorize?appid=${wxapi.appid}&response_type=code&scope=snsapi_base&redirect_uri=${backUrl}&state=${state}&connect_redirect=1#wechat_redirect`;
  51. this.ctx.redirect(to_uri);
  52. }
  53. // GET 认证回调
  54. async authBack({ code, state }) {
  55. // const { code, state, type, redirecturi } = this.ctx.query;
  56. this.ctx.logger.debug(`[auth-back] code - ${code}, state - ${state}`);
  57. assert(code, 'code不能为空');
  58. assert(state, 'state不能为空');
  59. const { weixin } = this.ctx.service;
  60. const key = `visit:auth:state:${state}`;
  61. const val = await this.app.redis.get(key);
  62. let openid;
  63. try {
  64. ({ openid } = await weixin.fetch(code));
  65. } catch (err) {
  66. await this.ctx.render('error.njk', { title: err.message, message: err.details });
  67. return;
  68. }
  69. if (openid) {
  70. const { redirect_uri, type, uid, qrcode, msgid, objid } = JSON.parse(val);
  71. const user = await this.ctx.service.user.findByOpenid(openid);
  72. if (type === '0') {
  73. // 通过openid取得用户信息
  74. if (user) {
  75. const token = await this.ctx.service.login.createJwt(user);
  76. if (user.type === '4') {
  77. // 学生
  78. // 检查学生是否已退出,学生表的isComming是不是2,如果是2 就跳到别的地方提示您已退出
  79. let stu;
  80. try {
  81. stu = await this.ctx.service.student.fetch({ id: user.uid });
  82. } catch (error) {
  83. console.log(`错误信息:${error}`);
  84. const to_uri = urljoin(redirect_uri, `?token=${token}`);
  85. // TODO: 重定性页面
  86. this.ctx.redirect(to_uri);
  87. }
  88. if (stu) {
  89. const { isComming } = stu;
  90. if (isComming && isComming === '2') {
  91. const refuse = `${this.app.config.baseUrl}/msgconfirm/isleave`;
  92. this.ctx.redirect(refuse);
  93. } else {
  94. const to_uri = urljoin(redirect_uri, `?token=${token}`);
  95. // TODO: 重定性页面
  96. this.ctx.redirect(to_uri);
  97. }
  98. } else {
  99. const touri = `${this.app.config.baseUrl}/student/bind`;
  100. const to_uri = urljoin(touri, `?openid=${openid}`);
  101. this.ctx.redirect(to_uri);
  102. }
  103. } else if (user.type === '1') {
  104. // 班主任
  105. const touri = `${this.app.config.baseUrl}/mobiledirtea`;
  106. const to_uri = urljoin(touri, `?token=${token}`);
  107. // TODO: 重定性页面
  108. this.ctx.redirect(to_uri);
  109. } else if (user.type === '3') {
  110. // 教师
  111. const touri = `${this.app.config.baseUrl}/mobiledirtea`;
  112. const to_uri = urljoin(touri, `?token=${token}`);
  113. // TODO: 重定性页面
  114. this.ctx.redirect(to_uri);
  115. }
  116. } else {
  117. // const resunionid = await weixin.fetchUnionID(openid);
  118. const touri = `${this.app.config.baseUrl}/student/bind`;
  119. const to_uri = urljoin(touri, `?openid=${openid}`); // &unionid=${resunionid.unionid}
  120. // TODO: 重定性页面
  121. this.ctx.redirect(to_uri);
  122. }
  123. } else if (type === '1') {
  124. const to_uri = urljoin(redirect_uri, `?openid=${openid}&uid=${uid}&type=${type}&qrcode=${qrcode}`);
  125. // TODO: 重定性页面
  126. this.ctx.redirect(to_uri);
  127. } else if (type === '2') {
  128. const to_uri = urljoin(redirect_uri, `?openid=${openid}&type=${type}&qrcode=${qrcode}`);
  129. // TODO: 重定性页面
  130. this.ctx.redirect(to_uri);
  131. } else if (type === '9') {
  132. // const token = await this.ctx.service.login.createJwt(user);
  133. const to_uri = urljoin(redirect_uri, `?openid=${openid}&type=${type}&msgid=${msgid}&objid=${objid}`);
  134. // TODO: 重定性页面
  135. this.ctx.redirect(to_uri);
  136. }
  137. }
  138. }
  139. // GET 用户授权内部测试接口
  140. async authTest() {
  141. const { redirect_uri, type, uid, qrcode, openid, msgid, objid } = this.ctx.query;
  142. // const openid = stringRandom();
  143. this.ctx.logger.debug(`[auth-test] reditect_uri - ${redirect_uri}, openid - ${openid}`);
  144. assert(redirect_uri, '回调地址不能为空');
  145. assert(openid, 'openid不能为空');
  146. const user = await this.ctx.service.user.findByOpenid(openid);
  147. if (type === '0') {
  148. // 通过openid取得用户信息
  149. if (user) {
  150. const token = await this.ctx.service.login.createJwt(user);
  151. if (user.type === '4') {
  152. const to_uri = urljoin(redirect_uri, `?token=${token}`);
  153. // TODO: 重定性页面
  154. this.ctx.redirect(to_uri);
  155. } else if (user.type === '1') {
  156. const touri = `${this.app.config.baseUrl}/mobiledirtea`;
  157. const to_uri = urljoin(touri, `?token=${token}`);
  158. // TODO: 重定性页面
  159. this.ctx.redirect(to_uri);
  160. } else if (user.type === '3') {
  161. const touri = `${this.app.config.baseUrl}/mobiledirtea`;
  162. const to_uri = urljoin(touri, `?token=${token}`);
  163. // TODO: 重定性页面
  164. this.ctx.redirect(to_uri);
  165. }
  166. } else {
  167. console.log('rrr0000--->' + redirect_uri);
  168. const resunionid = await weixin.fetchUnionID(openid);
  169. const touri = `${this.app.config.baseUrl}/student/bind`;
  170. const to_uri = urljoin(touri, `?openid=${openid}&unionid=${resunionid.unionid}`);
  171. // TODO: 重定性页面
  172. this.ctx.redirect(to_uri);
  173. }
  174. } else if (type === '1') {
  175. const to_uri = urljoin(redirect_uri, `?openid=${openid}&uid=${uid}&type=${type}&qrcode=${qrcode}`);
  176. // TODO: 重定性页面
  177. console.log('1111---?' + to_uri);
  178. this.ctx.redirect(to_uri);
  179. } else if (type === '2') {
  180. const to_uri = urljoin(redirect_uri, `?openid=${openid}&type=${type}&qrcode=${qrcode}`);
  181. // TODO: 重定性页面
  182. console.log('22222---?' + to_uri);
  183. this.ctx.redirect(to_uri);
  184. } else if (type === '9') {
  185. // const token = await this.ctx.service.login.createJwt(user);
  186. const to_uri = urljoin(redirect_uri, `?openid=${openid}&type=${type}&msgid=${msgid}&objid=${objid}`);
  187. // TODO: 重定性页面
  188. console.log('99999---?' + to_uri);
  189. this.ctx.redirect(to_uri);
  190. }
  191. }
  192. // GET 签到小程序请求用户
  193. async appAuth() {
  194. try {
  195. const { js_code, login = true } = this.ctx.query;
  196. console.log(js_code);
  197. const appopenid = await this.ctx.service.weixin.appAuth(js_code);
  198. if (!login) this.ctx.ok(appopenid);
  199. console.warn(`openid=>${appopenid}`);
  200. // const state = uuid();
  201. // const key = `appinfo:${state}`;
  202. // await this.app.redis.set(key, appopenid, 'EX', 600);
  203. const res = await this.ctx.service.user.findByAppOpenid(appopenid);
  204. const obj = { user: res, openid: appopenid };
  205. this.ctx.ok(obj);
  206. } catch (error) {
  207. throw new BusinessError(ErrorCode.NETWORK, '获取小程序信息失败,请尝试重新进入');
  208. }
  209. }
  210. }
  211. module.exports = WeixinController;