SysUserController.java 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281
  1. package com.ruoyi.web.controller.system;
  2. import java.util.List;
  3. import java.util.stream.Collectors;
  4. import javax.servlet.http.HttpServletResponse;
  5. import com.ruoyi.common.utils.AesUtil;
  6. import org.apache.commons.lang3.ArrayUtils;
  7. import org.springframework.beans.factory.annotation.Autowired;
  8. import org.springframework.security.access.prepost.PreAuthorize;
  9. import org.springframework.validation.annotation.Validated;
  10. import org.springframework.web.bind.annotation.DeleteMapping;
  11. import org.springframework.web.bind.annotation.GetMapping;
  12. import org.springframework.web.bind.annotation.PathVariable;
  13. import org.springframework.web.bind.annotation.PostMapping;
  14. import org.springframework.web.bind.annotation.PutMapping;
  15. import org.springframework.web.bind.annotation.RequestBody;
  16. import org.springframework.web.bind.annotation.RequestMapping;
  17. import org.springframework.web.bind.annotation.RestController;
  18. import org.springframework.web.multipart.MultipartFile;
  19. import com.ruoyi.common.annotation.Log;
  20. import com.ruoyi.common.core.controller.BaseController;
  21. import com.ruoyi.common.core.domain.AjaxResult;
  22. import com.ruoyi.common.core.domain.entity.SysDept;
  23. import com.ruoyi.common.core.domain.entity.SysRole;
  24. import com.ruoyi.common.core.domain.entity.SysUser;
  25. import com.ruoyi.common.core.page.TableDataInfo;
  26. import com.ruoyi.common.enums.BusinessType;
  27. import com.ruoyi.common.utils.SecurityUtils;
  28. import com.ruoyi.common.utils.StringUtils;
  29. import com.ruoyi.common.utils.poi.ExcelUtil;
  30. import com.ruoyi.system.service.ISysDeptService;
  31. import com.ruoyi.system.service.ISysPostService;
  32. import com.ruoyi.system.service.ISysRoleService;
  33. import com.ruoyi.system.service.ISysUserService;
  34. import static com.ruoyi.common.constant.CommonConstants.LOGIN_PASSWORD_AES;
  35. import static com.ruoyi.common.constant.CommonConstants.ONE;
  36. /**
  37. * 用户信息
  38. *
  39. * @author ruoyi
  40. */
  41. @RestController
  42. @RequestMapping("/system/user")
  43. public class SysUserController extends BaseController
  44. {
  45. @Autowired
  46. private ISysUserService userService;
  47. @Autowired
  48. private ISysRoleService roleService;
  49. @Autowired
  50. private ISysDeptService deptService;
  51. @Autowired
  52. private ISysPostService postService;
  53. /**
  54. * 获取用户列表
  55. */
  56. @PreAuthorize("@ss.hasPermi('system:user:list')")
  57. @GetMapping("/list")
  58. public TableDataInfo list(SysUser user)
  59. {
  60. startPage();
  61. List<SysUser> list = userService.selectUserList(user);
  62. return getDataTable(list);
  63. }
  64. /**
  65. * 获取用户列表
  66. */
  67. @PreAuthorize("@ss.hasPermi('system:user:noPageList')")
  68. @GetMapping("/noPageList")
  69. public TableDataInfo noPageList(SysUser user)
  70. {
  71. List<SysUser> list = userService.selectUserList(user);
  72. return getDataTable(list);
  73. }
  74. @Log(title = "用户管理", businessType = BusinessType.EXPORT)
  75. @PreAuthorize("@ss.hasPermi('system:user:export')")
  76. @PostMapping("/export")
  77. public void export(HttpServletResponse response, SysUser user)
  78. {
  79. List<SysUser> list = userService.selectUserList(user);
  80. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  81. util.exportExcel(response, list, "用户数据");
  82. }
  83. @Log(title = "用户管理", businessType = BusinessType.IMPORT)
  84. @PreAuthorize("@ss.hasPermi('system:user:import')")
  85. @PostMapping("/importData")
  86. public AjaxResult importData(MultipartFile file, boolean updateSupport) throws Exception
  87. {
  88. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  89. List<SysUser> userList = util.importExcel(file.getInputStream());
  90. String operName = getUsername();
  91. String message = userService.importUser(userList, updateSupport, operName);
  92. return success(message);
  93. }
  94. @PostMapping("/importTemplate")
  95. public void importTemplate(HttpServletResponse response)
  96. {
  97. ExcelUtil<SysUser> util = new ExcelUtil<SysUser>(SysUser.class);
  98. util.importTemplateExcel(response, "用户数据");
  99. }
  100. /**
  101. * 根据用户编号获取详细信息
  102. */
  103. @PreAuthorize("@ss.hasPermi('system:user:query')")
  104. @GetMapping(value = { "/", "/{userId}" })
  105. public AjaxResult getInfo(@PathVariable(value = "userId", required = false) Long userId)
  106. {
  107. userService.checkUserDataScope(userId);
  108. AjaxResult ajax = AjaxResult.success();
  109. List<SysRole> roles = roleService.selectRoleAll();
  110. ajax.put("roles", SysUser.isAdmin(userId) ? roles : roles.stream().filter(r -> !r.isAdmin()).collect(Collectors.toList()));
  111. ajax.put("posts", postService.selectPostAll());
  112. if (StringUtils.isNotNull(userId))
  113. {
  114. SysUser sysUser = userService.selectUserById(userId);
  115. ajax.put(AjaxResult.DATA_TAG, sysUser);
  116. ajax.put("postIds", postService.selectPostListByUserId(userId));
  117. ajax.put("roleIds", sysUser.getRoles().stream().map(SysRole::getRoleId).collect(Collectors.toList()));
  118. }
  119. return ajax;
  120. }
  121. /**
  122. * 新增用户
  123. */
  124. @PreAuthorize("@ss.hasPermi('system:user:add')")
  125. @Log(title = "用户管理", businessType = BusinessType.INSERT)
  126. @PostMapping
  127. public AjaxResult add(@Validated @RequestBody SysUser user)
  128. {
  129. if (!userService.checkUserNameUnique(user))
  130. {
  131. return error("新增用户'" + user.getUserName() + "'失败,登录账号已存在");
  132. }
  133. else if (StringUtils.isNotEmpty(user.getPhonenumber()) && !userService.checkPhoneUnique(user))
  134. {
  135. return error("新增用户'" + user.getUserName() + "'失败,手机号码已存在");
  136. }
  137. else if (ONE.equals(userService.checkStrongPwd(user))) {
  138. return AjaxResult.error("密码必须包含数字、大小写字母、特殊符号且大于8位");
  139. }
  140. user.setCreateBy(getUsername());
  141. user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
  142. return toAjax(userService.insertUser(user));
  143. }
  144. /**
  145. * 修改用户
  146. */
  147. @PreAuthorize("@ss.hasPermi('system:user:edit')")
  148. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  149. @PostMapping("/put")
  150. public AjaxResult edit(@Validated @RequestBody SysUser user)
  151. {
  152. userService.checkUserAllowed(user);
  153. userService.checkUserDataScope(user.getUserId());
  154. if (!userService.checkUserNameUnique(user))
  155. {
  156. return error("修改用户'" + user.getUserName() + "'失败,登录账号已存在");
  157. }
  158. else if (StringUtils.isNotEmpty(user.getPhonenumber()) && !userService.checkPhoneUnique(user))
  159. {
  160. return error("修改用户'" + user.getUserName() + "'失败,手机号码已存在");
  161. }
  162. else if (StringUtils.isNotEmpty(user.getEmail()) && !userService.checkEmailUnique(user))
  163. {
  164. return error("修改用户'" + user.getUserName() + "'失败,邮箱账号已存在");
  165. }
  166. user.setUpdateBy(getUsername());
  167. return toAjax(userService.updateUser(user));
  168. }
  169. /**
  170. * 删除用户
  171. */
  172. @PreAuthorize("@ss.hasPermi('system:user:remove')")
  173. @Log(title = "用户管理", businessType = BusinessType.DELETE)
  174. @GetMapping("/delete/{userIds}")
  175. public AjaxResult remove(@PathVariable Long[] userIds)
  176. {
  177. if (ArrayUtils.contains(userIds, getUserId()))
  178. {
  179. return error("当前用户不能删除");
  180. }
  181. return toAjax(userService.deleteUserByIds(userIds));
  182. }
  183. /**
  184. * 重置密码
  185. */
  186. @PreAuthorize("@ss.hasPermi('system:user:resetPwd')")
  187. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  188. @PostMapping("/resetPwd/put")
  189. public AjaxResult resetPwd(@RequestBody SysUser user)
  190. {
  191. if (ONE.equals(userService.checkStrongPwd(user))) {
  192. return AjaxResult.error("密码必须包含数字、大小写字母、特殊符号且大于8位");
  193. }
  194. userService.checkUserAllowed(user);
  195. userService.checkUserDataScope(user.getUserId());
  196. user.setPassword(SecurityUtils.encryptPassword(user.getPassword()));
  197. user.setUpdateBy(getUsername());
  198. return toAjax(userService.resetPwd(user));
  199. }
  200. /**
  201. * 状态修改
  202. */
  203. @PreAuthorize("@ss.hasPermi('system:user:edit')")
  204. @Log(title = "用户管理", businessType = BusinessType.UPDATE)
  205. @PostMapping("/changeStatus/put")
  206. public AjaxResult changeStatus(@RequestBody SysUser user)
  207. {
  208. userService.checkUserAllowed(user);
  209. userService.checkUserDataScope(user.getUserId());
  210. user.setUpdateBy(getUsername());
  211. return toAjax(userService.updateUserStatus(user));
  212. }
  213. /**
  214. * 状态人脸识别认证状态
  215. */
  216. @PostMapping("/changeFace")
  217. public AjaxResult changeFace(@RequestBody SysUser user)
  218. {
  219. userService.checkUserAllowed(user);
  220. userService.checkUserDataScope(user.getUserId());
  221. user.setUpdateBy(getUsername());
  222. return toAjax(userService.updateUserStatus(user));
  223. }
  224. /**
  225. * 根据用户编号获取授权角色
  226. */
  227. @PreAuthorize("@ss.hasPermi('system:user:query')")
  228. @GetMapping("/authRole/{userId}")
  229. public AjaxResult authRole(@PathVariable("userId") Long userId)
  230. {
  231. AjaxResult ajax = AjaxResult.success();
  232. SysUser user = userService.selectUserById(userId);
  233. List<SysRole> roles = roleService.selectRolesByUserId(userId);
  234. ajax.put("user", user);
  235. ajax.put("roles", SysUser.isAdmin(userId) ? roles : roles.stream().filter(r -> !r.isAdmin()).collect(Collectors.toList()));
  236. return ajax;
  237. }
  238. /**
  239. * 用户授权角色
  240. */
  241. @PreAuthorize("@ss.hasPermi('system:user:edit')")
  242. @Log(title = "用户管理", businessType = BusinessType.GRANT)
  243. @PostMapping("/authRole/put")
  244. public AjaxResult insertAuthRole(Long userId, Long[] roleIds)
  245. {
  246. userService.checkUserDataScope(userId);
  247. userService.insertUserAuth(userId, roleIds);
  248. return success();
  249. }
  250. /**
  251. * 获取部门树列表
  252. */
  253. @PreAuthorize("@ss.hasPermi('system:user:list')")
  254. @GetMapping("/deptTree")
  255. public AjaxResult deptTree(SysDept dept)
  256. {
  257. return success(deptService.selectDeptTreeList(dept));
  258. }
  259. }