From 9066298c5da93b8a9bff47cd8f73d9ff2cca15b5 Mon Sep 17 00:00:00 2001
From: zhanzhiqin <895896009@qq.com>
Date: 星期五, 13 五月 2022 14:10:12 +0800
Subject: [PATCH] fix

---
 ximon-admin/src/main/java/com/sandu/ximon/admin/controller/ClientController.java |   73 +++++++++++++++++++++++++++++-------
 1 files changed, 58 insertions(+), 15 deletions(-)

diff --git a/ximon-admin/src/main/java/com/sandu/ximon/admin/controller/ClientController.java b/ximon-admin/src/main/java/com/sandu/ximon/admin/controller/ClientController.java
index 25b432f..4f1806b 100644
--- a/ximon-admin/src/main/java/com/sandu/ximon/admin/controller/ClientController.java
+++ b/ximon-admin/src/main/java/com/sandu/ximon/admin/controller/ClientController.java
@@ -6,6 +6,8 @@
 import com.github.pagehelper.PageHelper;
 import com.sandu.common.domain.ResponseVO;
 import com.sandu.common.enums.ResponseStatusEnums;
+import com.sandu.common.execption.BusinessException;
+import com.sandu.common.log.Log;
 import com.sandu.common.object.BaseConditionVO;
 import com.sandu.common.security.LoginUserInfo;
 import com.sandu.common.security.annotation.AnonymousAccess;
@@ -16,13 +18,14 @@
 import com.sandu.ximon.admin.dto.ClientDto;
 import com.sandu.ximon.admin.param.AddClientPrarm;
 import com.sandu.ximon.admin.param.AdminLoginParam;
-import com.sandu.ximon.admin.param.ResetClientPasswordPrarm;
 import com.sandu.ximon.admin.param.UpdateClientPrarm;
+import com.sandu.ximon.admin.param.UserPwsParm;
 import com.sandu.ximon.admin.security.PermissionConfig;
 import com.sandu.ximon.admin.security.SecurityUtils;
 import com.sandu.ximon.admin.service.ClientRoleRelationService;
 import com.sandu.ximon.admin.service.ClientService;
 import com.sandu.ximon.admin.service.RoleService;
+import com.sandu.ximon.admin.utils.RedisUtils;
 import com.sandu.ximon.dao.domain.Client;
 import com.sandu.ximon.dao.domain.ClientRoleRelation;
 import com.sandu.ximon.dao.enums.AdministratorEnums;
@@ -33,6 +36,7 @@
 import org.springframework.validation.annotation.Validated;
 import org.springframework.web.bind.annotation.*;
 
+import javax.servlet.http.HttpServletRequest;
 import java.time.LocalDateTime;
 import java.util.*;
 import java.util.stream.Collectors;
@@ -55,6 +59,9 @@
 
     @PostMapping("/add")
     public ResponseVO<Object> addClient(@RequestBody @Validated AddClientPrarm addClientPrarm) {
+        if (!permissionConfig.check(MenuEnum.CLIENT_ADD.getCode())) {
+            return ResponseUtil.fail("缂哄皯瀵瑰簲鐢ㄦ埛鏉冮檺");
+        }
         boolean b = clientService.addClient(addClientPrarm);
         if (b) {
             return ResponseUtil.success("娣诲姞鎴愬姛");
@@ -66,6 +73,9 @@
 
     @PostMapping("/update/{id}")
     public ResponseVO<Object> updateClient(@PathVariable Long id, @RequestBody @Validated UpdateClientPrarm updateClientPrarm) {
+        if (!permissionConfig.check(MenuEnum.CLIENT_INFO_UPDATE.getCode())) {
+            return ResponseUtil.fail("缂哄皯瀵瑰簲鐢ㄦ埛鏉冮檺");
+        }
         boolean b = clientService.updateClient(id, updateClientPrarm);
         if (b) {
             return ResponseUtil.success("鏇存柊鎴愬姛");
@@ -74,18 +84,43 @@
         }
     }
 
-//    @PostMapping("/resetClientPassword")
-//    public ResponseVO<Object> resetClientPassword(@RequestBody @Validated ResetClientPasswordPrarm resetClientPasswordPrarm) {
-//        boolean b = clientService.resetPassword(resetClientPasswordPrarm);
-//        if (b) {
-//            return ResponseUtil.success("淇敼鎴愬姛");
-//        } else {
-//            return ResponseUtil.fail("淇敼澶辫触");
-//        }
-//    }
+    /**
+     * 淇敼鏅�氱敤鎴风殑瀵嗙爜
+     */
+    @Log("淇敼鏅�氱敤鎴风殑瀵嗙爜")
+    @PostMapping("/updateClientPassword")
+    public ResponseVO<Object> updateClientPassword(@Validated @RequestBody UserPwsParm param) {
+        boolean result;
+
+        //瓒呯鐩存帴淇敼
+        if (SecurityUtils.getUserDetails().getAdministratorType().equals(AdministratorEnums.ADMIN.getCode())) {
+            result = clientService.updateAdminPassword(param);
+        } else {
+            //褰撳墠鐧诲綍璐﹀彿ID
+            Long userId = SecurityUtils.getUserId();
+            //瑕佷慨瑕佸瘑鐮佺殑鐢ㄦ埛鐨勪笂绾D
+            Client client = clientService.getOne(Wrappers.lambdaQuery(Client.class).eq(Client::getId, param.getUserid()));
+            //涓哄叾涓嬪睘鎵嶈兘淇敼
+            if (client != null && userId.equals(client.getSuperiorId())) {
+                result = clientService.updateAdminPassword(param);
+            } else {
+                throw new BusinessException("闈炶秴绾х鐞嗗憳鎴栬鐢ㄦ埛涓嶆槸鎮ㄤ笅灞炵敤鎴凤紝鏃犳硶淇敼瀵嗙爜锛�");
+            }
+        }
+
+        if (result) {
+            return ResponseUtil.success("淇敼鎴愬姛");
+        } else {
+            return ResponseUtil.fail("淇敼澶辫触");
+        }
+
+    }
 
     @PostMapping("/delete/{id}")
     public ResponseVO<Object> deleteClient(@PathVariable Long id) {
+        if (!permissionConfig.check(MenuEnum.CLIENT_DELETE.getCode())) {
+            return ResponseUtil.fail("缂哄皯瀵瑰簲鐢ㄦ埛鏉冮檺");
+        }
         boolean b = clientService.deleteClient(id);
         if (b) {
             return ResponseUtil.success("鍒犻櫎鎴愬姛");
@@ -102,13 +137,15 @@
 
         PageHelper.startPage(baseConditionVO.getPageNo(), baseConditionVO.getPageSize());
         LambdaQueryWrapper<Client> wrapper = Wrappers.lambdaQuery(Client.class);
-        if (AdministratorEnums.CUSTOMER.getCode().equals(SecurityUtils.getAdministratorIdentity())) {
-            wrapper.eq(Client::getSuperiorId, SecurityUtils.getUserId());
+        if (AdministratorEnums.NORMAL.getCode().equals(SecurityUtils.getAdministratorIdentity())) {
+            wrapper.eq(Client::getSuperiorId, SecurityUtils.getUserId()).or(w -> w.eq(
+                    Client::getId, SecurityUtils.getUserId()
+            ));
         }
         if (keyword != null && !keyword.isEmpty()) {
             wrapper.like(Client::getClientName, keyword)
-                    .or(clientLambdaQueryWrapper -> clientLambdaQueryWrapper.like(Client::getMobile, keyword))
-                    .or(clientLambdaQueryWrapper -> clientLambdaQueryWrapper.like(Client::getLinkMan, keyword));
+                    .or(w1 -> w1.like(Client::getMobile, keyword))
+                    .or(w2 -> w2.like(Client::getLinkMan, keyword));
         }
         List<Client> clientList = clientService.list(wrapper);
         List<ClientDto> clientDtoList = new ArrayList<>();
@@ -130,11 +167,17 @@
 
     @AnonymousAccess
     @PostMapping(value = "/login")
-    public ResponseVO<Object> longin(@RequestBody @Validated AdminLoginParam loginParam) {
+    public ResponseVO<Object> longin(HttpServletRequest request, @RequestBody @Validated AdminLoginParam loginParam) {
         Client client = clientService.getOne(Wrappers.lambdaQuery(Client.class).eq(Client::getClientName, loginParam.getUsername()).last("limit 1"));
         if (client == null) {
             return ResponseUtil.error(ResponseStatusEnums.BAD_CREDENTIALS.getCode(), ResponseStatusEnums.BAD_CREDENTIALS.getMessage());
         }
+        String s = RedisUtils.getBean().get(loginParam.getKey());
+        System.out.println(s+"===========================");
+        if (!loginParam.getVlue().equals(s)) {
+            return ResponseUtil.error(ResponseStatusEnums.BAD_AUTHENTICATION.getCode(), ResponseStatusEnums.BAD_AUTHENTICATION.getMessage());
+        }
+        RedisUtils.getBean().delete(loginParam.getKey());
         if (!passwordEncoder.matches(loginParam.getPassword(), client.getPassword())) {
             return ResponseUtil.error(ResponseStatusEnums.BAD_CREDENTIALS.getCode(), ResponseStatusEnums.BAD_CREDENTIALS.getMessage());
         }

--
Gitblit v1.9.3