|
@@ -7,14 +7,7 @@ import org.apache.commons.lang3.ArrayUtils;
|
|
import org.springframework.beans.factory.annotation.Autowired;
|
|
import org.springframework.beans.factory.annotation.Autowired;
|
|
import org.springframework.security.access.prepost.PreAuthorize;
|
|
import org.springframework.security.access.prepost.PreAuthorize;
|
|
import org.springframework.validation.annotation.Validated;
|
|
import org.springframework.validation.annotation.Validated;
|
|
-import org.springframework.web.bind.annotation.DeleteMapping;
|
|
|
|
-import org.springframework.web.bind.annotation.GetMapping;
|
|
|
|
-import org.springframework.web.bind.annotation.PathVariable;
|
|
|
|
-import org.springframework.web.bind.annotation.PostMapping;
|
|
|
|
-import org.springframework.web.bind.annotation.PutMapping;
|
|
|
|
-import org.springframework.web.bind.annotation.RequestBody;
|
|
|
|
-import org.springframework.web.bind.annotation.RequestMapping;
|
|
|
|
-import org.springframework.web.bind.annotation.RestController;
|
|
|
|
|
|
+import org.springframework.web.bind.annotation.*;
|
|
import org.springframework.web.multipart.MultipartFile;
|
|
import org.springframework.web.multipart.MultipartFile;
|
|
import com.ruoyi.common.annotation.Log;
|
|
import com.ruoyi.common.annotation.Log;
|
|
import com.ruoyi.common.constant.UserConstants;
|
|
import com.ruoyi.common.constant.UserConstants;
|
|
@@ -33,6 +26,8 @@ import com.ruoyi.system.service.ISysPostService;
|
|
import com.ruoyi.system.service.ISysRoleService;
|
|
import com.ruoyi.system.service.ISysRoleService;
|
|
import com.ruoyi.system.service.ISysUserService;
|
|
import com.ruoyi.system.service.ISysUserService;
|
|
|
|
|
|
|
|
+import static com.ruoyi.common.utils.SecurityUtils.checkStrongPwd;
|
|
|
|
+
|
|
/**
|
|
/**
|
|
* 用户信息
|
|
* 用户信息
|
|
*
|
|
*
|
|
@@ -139,6 +134,9 @@ public class SysUserController extends BaseController
|
|
{
|
|
{
|
|
return error("新增用户'" + user.getUserName() + "'失败,邮箱账号已存在");
|
|
return error("新增用户'" + user.getUserName() + "'失败,邮箱账号已存在");
|
|
}
|
|
}
|
|
|
|
+ else if ("1".equals(checkStrongPwd(user.getPassword()))) {
|
|
|
|
+ return AjaxResult.error("密码必须包含数字、大小写字母、特殊符号且大于8位");
|
|
|
|
+ }
|
|
user.setCreateBy(getUsername());
|
|
user.setCreateBy(getUsername());
|
|
user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
|
|
user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
|
|
return toAjax(userService.insertUser(user));
|
|
return toAjax(userService.insertUser(user));
|
|
@@ -196,6 +194,9 @@ public class SysUserController extends BaseController
|
|
public AjaxResult resetPwd(@RequestBody SysUser user)
|
|
public AjaxResult resetPwd(@RequestBody SysUser user)
|
|
{
|
|
{
|
|
userService.checkUserAllowed(user);
|
|
userService.checkUserAllowed(user);
|
|
|
|
+ if ("1".equals(checkStrongPwd(user.getPassword()))) {
|
|
|
|
+ return AjaxResult.error("密码必须包含数字、大小写字母、特殊符号且大于8位");
|
|
|
|
+ }
|
|
userService.checkUserDataScope(user.getUserId());
|
|
userService.checkUserDataScope(user.getUserId());
|
|
user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
|
|
user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
|
|
user.setUpdateBy(getUsername());
|
|
user.setUpdateBy(getUsername());
|
|
@@ -216,6 +217,33 @@ public class SysUserController extends BaseController
|
|
return toAjax(userService.updateUserStatus(user));
|
|
return toAjax(userService.updateUserStatus(user));
|
|
}
|
|
}
|
|
|
|
|
|
|
|
+ @PostMapping("/resetPwdLogin")
|
|
|
|
+ public AjaxResult resetPwdLogin(@RequestParam("userName") String userName, @RequestParam("oldPassword") String oldPassword, @RequestParam("newPassword") String newPassword) {
|
|
|
|
+ //userService.checkUserAllowed(user);
|
|
|
|
+ if ("admin".equals(userName)){
|
|
|
|
+ return AjaxResult.success("不允许操作超级管理员");
|
|
|
|
+ }
|
|
|
|
+ SysUser user = userService.selectUserByUserName(userName);
|
|
|
|
+ if (user == null){
|
|
|
|
+ return AjaxResult.success("当前用户不存在");
|
|
|
|
+ }
|
|
|
|
+ String password = user.getPassword();
|
|
|
|
+ if (!SecurityUtils.matchesPassword(oldPassword, password))
|
|
|
|
+ {
|
|
|
|
+ return AjaxResult.success("修改密码失败,旧密码错误");
|
|
|
|
+ }
|
|
|
|
+ if (SecurityUtils.matchesPassword(newPassword, password))
|
|
|
|
+ {
|
|
|
|
+ return AjaxResult.success("新密码不能与旧密码相同");
|
|
|
|
+ }
|
|
|
|
+
|
|
|
|
+ if ("1".equals(checkStrongPwd(newPassword))) {
|
|
|
|
+ return AjaxResult.success("密码必须包含数字、大小写字母、特殊符号且大于8位");
|
|
|
|
+ }
|
|
|
|
+ user.setPassword(SecurityUtils.encryptPassword(newPassword));
|
|
|
|
+ user.setUpdateBy(userName);
|
|
|
|
+ return toAjax(userService.resetPwdLogin(user));
|
|
|
|
+ }
|
|
/**
|
|
/**
|
|
* 根据用户编号获取授权角色
|
|
* 根据用户编号获取授权角色
|
|
*/
|
|
*/
|