weixin.js 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337
  1. 'use strict';
  2. const assert = require('assert');
  3. const _ = require('lodash');
  4. const uuid = require('uuid');
  5. const urljoin = require('url-join');
  6. const Controller = require('egg').Controller;
  7. /**
  8. * 微信认证,获得openid和用户信息,生成微信Jwt
  9. */
  10. class WeixinController extends Controller {
  11. /**
  12. * 认证流程
  13. * 1. 缓存原始请求地址,生成state和认证回调地址
  14. * 2. 通过wxapi认证,获得认证code
  15. * 3. 通过code获得openid,通过openid,查询绑定用户,创建jwt
  16. * 4. jwt写入redis,返回认证code
  17. * 5. 通过code获取jwt
  18. */
  19. // GET 请求认证
  20. // response_type:
  21. // code - url带上code参数重定向到原始地址
  22. // store - 默认,认证结果写入sessionStore,然后重定向回请求页面(要求请求页面和认证服务在同一域名下)
  23. // token - url带上token参数重定向到原始地址
  24. async auth() {
  25. const {
  26. redirect_uri,
  27. code,
  28. test,
  29. type,
  30. response_type = 'store',
  31. uid,
  32. qrcode,
  33. } = this.ctx.query;
  34. if (test) {
  35. return await this.authTest();
  36. }
  37. if (code) {
  38. return await this.authBack(this.ctx.query);
  39. }
  40. this.ctx.logger.debug(`[auth] reditect_uri - ${redirect_uri}`);
  41. // assert(redirect_uri, '回调地址不能为空');
  42. // TODO: 保存原始请求地址
  43. // const { config } = this.app;
  44. // console.log('ctx.host: ', this.ctx.host);
  45. // console.log('config.hostHeaders: ', config.hostHeaders);
  46. // TODO: 保存原始请求地址
  47. const state = uuid();
  48. const key = `visit:auth:state:${state}`;
  49. const val = JSON.stringify({ redirect_uri, type, uid, qrcode });
  50. await this.app.redis.set(key, val, 'EX', 600);
  51. // TODO: 生成回调地址
  52. // const { wxapi, authUrl = this.ctx.path } = this.app.config;
  53. // const backUrl = encodeURI(
  54. // `${this.app.config.baseUrl}${this.config.authUrl}?state=${state}`
  55. // );
  56. // const to_uri = `${wxapi.baseUrl}/api/auth?appid=${wxapi.appid}&response_type=code&redirect_uri=${backUrl}&connect_redirect=1#wechat`;
  57. // console.log('url-->' + to_uri);
  58. // this.ctx.redirect(to_uri);
  59. const { wxapi, authUrl = this.ctx.path } = this.app.config;
  60. const backUrl = encodeURI(`${this.app.config.baseUrl}${this.config.authUrl}?state=${state}`);
  61. // const to_uri = `${wxapi.baseUrl}/api/auth?appid=${wxapi.appid}&response_type=code&redirect_uri=${backUrl}&connect_redirect=1#wechat`;
  62. // const backUrl = encodeURI(`${this.app.config.baseUrl}${this.config.authUrl}/`);
  63. const to_uri = `https://open.weixin.qq.com/connect/oauth2/authorize?appid=${wxapi.appid}&response_type=code&scope=snsapi_base&redirect_uri=${backUrl}&state=${state}&connect_redirect=1#wechat_redirect`;
  64. console.log('url-->' + to_uri);
  65. this.ctx.redirect(to_uri);
  66. }
  67. // GET 认证回调
  68. async authBack({ code, state }) {
  69. // const { code, state, type, redirecturi } = this.ctx.query;
  70. console.log(this.ctx.query);
  71. this.ctx.logger.debug(`[auth-back] code - ${code}, state - ${state}`);
  72. assert(code, 'code不能为空');
  73. assert(state, 'state不能为空');
  74. console.log('code-->' + code);
  75. const { weixin } = this.ctx.service;
  76. let openid;
  77. try {
  78. ({ openid } = await weixin.fetch(code));
  79. } catch (err) {
  80. await this.ctx.render('error.njk', {
  81. title: err.message,
  82. message: err.details,
  83. });
  84. return;
  85. }
  86. console.log('openid--->' + openid);
  87. if (openid) {
  88. const key = `visit:auth:state:${state}`;
  89. const val = await this.app.redis.get(key);
  90. const { redirect_uri, type, uid, qrcode } = JSON.parse(val);
  91. console.log('redirect_uri-->' + redirect_uri);
  92. const user = await this.ctx.service.user.findByOpenid(openid);
  93. console.log('用户信息1--->' + user);
  94. if (type === '0') {
  95. // 通过openid取得用户信息
  96. if (user) {
  97. console.log('用户信息2--->' + user.role);
  98. // user_ = await this.checkVip(user_);
  99. let remark = '';
  100. if (user.role === '8') {
  101. const url = 'http://127.0.0.1:9008/api/live/dock/getdock/' + user.id;
  102. const vipuser = await this.ctx.curl(url, {
  103. method: 'post',
  104. headers: {
  105. 'content-type': 'application/json',
  106. },
  107. dataType: 'json',
  108. });
  109. if (vipuser.status === 200) {
  110. if (vipuser.data.errcode === 0) {
  111. const vd = vipuser.data.res;
  112. if (vd.length > 0) {
  113. const f = _.head(vd);
  114. const fid = _.get(f, 'id');
  115. remark = fid;
  116. }
  117. }
  118. }
  119. }
  120. console.log('用户信息remark--->' + remark);
  121. const user_ = { ...JSON.parse(JSON.stringify(user)), remark };
  122. console.log('用户信息重组' + user_);
  123. console.log(user_);
  124. const token = await this.ctx.service.login.createJwt(user_);
  125. console.log('token--->' + token);
  126. const to_uri = urljoin(redirect_uri, `?token=${token}`);
  127. // TODO: 重定性页面
  128. console.log('to_uri000-->' + to_uri);
  129. this.ctx.redirect(to_uri);
  130. } else {
  131. const url = 'http://127.0.0.1:9008/api/live/dock/dockopenid?openid=' + openid;
  132. const dockuser = await this.ctx.curl(url, {
  133. method: 'get',
  134. headers: {
  135. 'content-type': 'application/json',
  136. },
  137. dataType: 'json',
  138. });
  139. let user_;
  140. console.log(dockuser);
  141. if (dockuser.status === 200) {
  142. if (dockuser.data.errcode === 0) {
  143. const vd = dockuser.data.res;
  144. console.log(vd);
  145. if (vd !== null) {
  146. user_.id = vd.id;
  147. user_.name = vd.adminuser;
  148. user_.role = vd.role;
  149. user_.phone = vd.phone;
  150. }
  151. }
  152. }
  153. if (user_) {
  154. // user_ = {}
  155. const token = await this.ctx.service.login.createJwt(user_);
  156. console.log('token--->' + token);
  157. const to_uri = urljoin(redirect_uri, `?token=${token}`);
  158. // TODO: 重定性页面
  159. console.log('to_uri--dock-->' + to_uri);
  160. this.ctx.redirect(to_uri);
  161. } else {
  162. console.log('rrr0000--->' + redirect_uri);
  163. const result = await weixin.fetchUnionID(openid);
  164. console.log(result.res.data);
  165. console.log('result111111');
  166. const touri = `${this.app.config.baseUrl}/platmobile/error`;
  167. const to_uri = urljoin(touri, `?openid=${openid}&data=${result.res.data.nickname}`);
  168. // TODO: 重定性页面
  169. console.log('注册页----' + to_uri);
  170. this.ctx.redirect(to_uri);
  171. }
  172. }
  173. } else if (type === '1') {
  174. const to_uri = urljoin(
  175. redirect_uri,
  176. `?openid=${openid}&uid=${uid}&type=${type}&qrcode=${qrcode}`
  177. );
  178. // TODO: 重定性页面
  179. console.log('1111---?' + to_uri);
  180. this.ctx.redirect(to_uri);
  181. } else if (type === '2') {
  182. const to_uri = urljoin(
  183. redirect_uri,
  184. `?openid=${openid}&uid=${uid}&type=${type}&qrcode=${qrcode}`
  185. );
  186. // TODO: 重定性页面
  187. console.log('1111---?' + to_uri);
  188. this.ctx.redirect(to_uri);
  189. }
  190. }
  191. }
  192. // GET 用户授权内部测试接口
  193. async authTest() {
  194. const { redirect_uri, type, uid, qrcode, openid } = this.ctx.query;
  195. this.ctx.logger.debug(
  196. `[auth-test] reditect_uri - ${redirect_uri}, openid - ${openid}`
  197. );
  198. assert(redirect_uri, '回调地址不能为空');
  199. assert(openid, 'openid不能为空');
  200. if (openid) {
  201. console.log('redirect_uri-->' + redirect_uri);
  202. const user = await this.ctx.service.user.findByOpenid(openid);
  203. console.log('用户信息1--->' + user);
  204. if (type === '0') {
  205. // 通过openid取得用户信息
  206. if (user) {
  207. console.log('用户信息2--->' + user.role);
  208. // user_ = await this.checkVip(user_);
  209. let remark = '';
  210. if (user.role === '8') {
  211. const url = 'http://127.0.0.1:9008/api/live/dock/getdock/' + user.id;
  212. const vipuser = await this.ctx.curl(url, {
  213. method: 'post',
  214. headers: {
  215. 'content-type': 'application/json',
  216. },
  217. dataType: 'json',
  218. });
  219. if (vipuser.status === 200) {
  220. if (vipuser.data.errcode === 0) {
  221. const vd = vipuser.data.res;
  222. if (vd.length > 0) {
  223. const f = _.head(vd);
  224. const fid = _.get(f, 'id');
  225. remark = fid;
  226. }
  227. }
  228. }
  229. }
  230. console.log('用户信息remark--->' + remark);
  231. const user_ = { ...JSON.parse(JSON.stringify(user)), remark };
  232. console.log('用户信息重组' + user_);
  233. console.log(user_);
  234. const token = await this.ctx.service.login.createJwt(user_);
  235. console.log('token--->' + token);
  236. const to_uri = urljoin(redirect_uri, `?token=${token}`);
  237. // TODO: 重定性页面
  238. console.log('to_uri000-->' + to_uri);
  239. this.ctx.redirect(to_uri);
  240. } else {
  241. const url = 'http://127.0.0.1:9008/api/live/dock/dockopenid?openid=' + openid;
  242. const dockuser = await this.ctx.curl(url, {
  243. method: 'get',
  244. headers: {
  245. 'content-type': 'application/json',
  246. },
  247. dataType: 'json',
  248. });
  249. const user_ = {};
  250. console.log(dockuser);
  251. if (dockuser.status === 200) {
  252. if (dockuser.data.errcode === 0) {
  253. const vd = dockuser.data.res;
  254. user_.id = vd.id;
  255. user_.name = vd.adminuser;
  256. user_.role = vd.role;
  257. user_.phone = vd.phone;
  258. }
  259. }
  260. if (user_) {
  261. const token = await this.ctx.service.login.createJwt(user_);
  262. console.log('token--->' + token);
  263. const to_uri = urljoin(redirect_uri, `?token=${token}`);
  264. // TODO: 重定性页面
  265. console.log('to_uri--dock-->' + to_uri);
  266. this.ctx.redirect(to_uri);
  267. } else {
  268. console.log('rrr0000--->' + redirect_uri);
  269. const touri = `${this.app.config.baseUrl}/platmobile/error`;
  270. const to_uri = urljoin(touri, `?openid=${openid}`);
  271. // TODO: 重定性页面
  272. this.ctx.redirect(to_uri);
  273. }
  274. }
  275. } else if (type === '1') {
  276. const to_uri = urljoin(
  277. redirect_uri,
  278. `?openid=${openid}&uid=${uid}&type=${type}&qrcode=${qrcode}`
  279. );
  280. // TODO: 重定性页面
  281. console.log('1111---?' + to_uri);
  282. this.ctx.redirect(to_uri);
  283. } else if (type === '2') {
  284. const to_uri = urljoin(
  285. redirect_uri,
  286. `?openid=${openid}&uid=${uid}&type=${type}&qrcode=${qrcode}`
  287. );
  288. // TODO: 重定性页面
  289. console.log('1111---?' + to_uri);
  290. this.ctx.redirect(to_uri);
  291. }
  292. }
  293. }
  294. async checkVip(user) {
  295. const { role, id } = user;
  296. if (role === '8') {
  297. const url = 'http://127.0.0.1:9008/api/live/dock/getdock/' + id;
  298. const vipuser = await this.ctx.curl(url, {
  299. method: 'post',
  300. headers: {
  301. 'content-type': 'application/json',
  302. },
  303. dataType: 'json',
  304. });
  305. console.log('取得vipuser--' + vipuser);
  306. if (vipuser.status === 200) {
  307. if (vipuser.data.errcode === 0) {
  308. const vd = vipuser.data.res;
  309. if (vd.length > 0) {
  310. const f = _.head(vd);
  311. const fid = _.get(f, 'id');
  312. user = { ...user, remark: fid };
  313. }
  314. }
  315. }
  316. }
  317. return user;
  318. }
  319. // 用户绑定
  320. async bind() {
  321. const res = await this.service.weixin.bindUser(this.ctx.request.body);
  322. return this.ctx.ok(res);
  323. }
  324. }
  325. module.exports = WeixinController;