LoginController.cs 65 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117
  1. using Azure.Cosmos;
  2. using DingTalk.Api;
  3. using DingTalk.Api.Request;
  4. using DingTalk.Api.Response;
  5. using Microsoft.AspNetCore.Http;
  6. using Microsoft.AspNetCore.Mvc;
  7. using Microsoft.Extensions.Configuration;
  8. using System;
  9. using System.Collections.Generic;
  10. using System.Linq;
  11. using System.Text.Json;
  12. using System.Threading.Tasks;
  13. using TEAMModelOS.SDK.DI;
  14. using TEAMModelOS.SDK.Models;
  15. using HTEXLib.COMM.Helpers;
  16. using TEAMModelOS.Models;
  17. using Microsoft.Extensions.Options;
  18. using TEAMModelOS.SDK.Extension;
  19. using TEAMModelOS.SDK.Models.Service;
  20. using Microsoft.AspNetCore.Authorization;
  21. using Azure.Storage.Blobs.Models;
  22. using System.IdentityModel.Tokens.Jwt;
  23. using System.Net.Http;
  24. using System.Text;
  25. using System.Net;
  26. using Newtonsoft.Json;
  27. using System.Collections;
  28. using Newtonsoft.Json.Linq;
  29. using TEAMModelOS.SDK.Models.Cosmos.BI;
  30. using Azure.Storage.Sas;
  31. using System.Net.Http.Json;
  32. //using static DingTalk.Api.Response.OapiV2UserGetResponse;
  33. namespace TEAMModeBI.Controllers
  34. {
  35. [ProducesResponseType(StatusCodes.Status200OK)]
  36. [ProducesResponseType(StatusCodes.Status400BadRequest)]
  37. [Route("common/login")]
  38. [ApiController]
  39. public class LoginController : ControllerBase
  40. {
  41. private readonly IConfiguration _configuration;
  42. //数据容器
  43. private readonly AzureCosmosFactory _azureCosmos;
  44. //文件容器
  45. private readonly AzureStorageFactory _azureStorage;
  46. //钉钉提示信息
  47. private readonly DingDing _dingDing;
  48. private readonly Option _option;
  49. //隐式登录
  50. private readonly CoreAPIHttpService _aoreAPIHttpService;
  51. private readonly IHttpClientFactory _http;
  52. string type = "ddteammodel";
  53. public LoginController(IConfiguration configuration, AzureCosmosFactory azureCosmos, AzureStorageFactory azureStorage, DingDing dingDing, IOptionsSnapshot<Option> option, CoreAPIHttpService aoreAPIHttpService, IHttpClientFactory http)
  54. {
  55. _configuration = configuration;
  56. _azureCosmos = azureCosmos;
  57. _azureStorage = azureStorage;
  58. _dingDing = dingDing;
  59. _option = option?.Value;
  60. _aoreAPIHttpService = aoreAPIHttpService;
  61. _http = http;
  62. }
  63. /// <summary>
  64. /// 钉钉扫码登录
  65. /// 先获取是否在钉钉架构中
  66. /// 获取数据库是否有该人员
  67. /// </summary>
  68. /// <param name="jsonElement"></param>
  69. /// <returns>Json结果</returns>
  70. [ProducesDefaultResponseType]
  71. [HttpPost("DingLogin")]
  72. [AllowAnonymous]
  73. public async Task<IActionResult> DingLogin(JsonElement jsonElement)
  74. {
  75. //state 是前端传入的,钉钉并不会修改,比如有多种登录方式的时候,一个登录方法判断登录方式可以进行不同的处理。
  76. try
  77. {
  78. string str_appKey = _configuration["DingDingAuth:appKey"];
  79. string str_appSecret = _configuration["DingDingAuth:appSecret"];
  80. if (string.IsNullOrWhiteSpace(str_appKey) || string.IsNullOrWhiteSpace(str_appSecret))
  81. {
  82. return Ok(new { state = 0, message = "扫码登录失败" });
  83. }
  84. //自己传的code
  85. if (!jsonElement.TryGetProperty("code", out JsonElement LoginTempCode)) return BadRequest();
  86. //获取企业内部应用的accessToken
  87. DefaultDingTalkClient Iclient = new DefaultDingTalkClient("https://oapi.dingtalk.com/gettoken");
  88. OapiGettokenRequest request = new OapiGettokenRequest();
  89. request.Appkey = str_appKey;
  90. request.Appsecret = str_appSecret;
  91. request.SetHttpMethod("GET");
  92. OapiGettokenResponse tokenResponse = Iclient.Execute(request);
  93. if (tokenResponse.IsError)
  94. {
  95. return Ok(new { state = 0, message = "扫码登录失败" });
  96. }
  97. string access_token = tokenResponse.AccessToken;
  98. //获取临时授权码 获取授权用户的个人信息
  99. DefaultDingTalkClient clientinfo = new DefaultDingTalkClient("https://oapi.dingtalk.com/sns/getuserinfo_bycode");
  100. OapiSnsGetuserinfoBycodeRequest req = new OapiSnsGetuserinfoBycodeRequest() { TmpAuthCode = $"{LoginTempCode}" }; //通过扫描二维码,跳转到指定的Url后,向Url中追加Code临时授权码
  101. OapiSnsGetuserinfoBycodeResponse response = clientinfo.Execute(req, str_appKey, str_appSecret);
  102. if (response.IsError)
  103. {
  104. return Ok(new { state = 0, message = "扫码登录失败" });
  105. }
  106. string unionid = response.UserInfo.Unionid;
  107. IDingTalkClient client2 = new DefaultDingTalkClient("https://oapi.dingtalk.com/topapi/user/getbyunionid"); //userid地址
  108. OapiUserGetbyunionidRequest byunionidRequest = new OapiUserGetbyunionidRequest() { Unionid = unionid };
  109. OapiUserGetbyunionidResponse byunionidResponse = client2.Execute(byunionidRequest, access_token);
  110. if (byunionidResponse.IsError)
  111. {
  112. return Ok(new { state = 0, message = "扫码登录失败" });
  113. }
  114. // 根据userId获取用户信息
  115. string userid = byunionidResponse.Result.Userid;
  116. IDingTalkClient client3 = new DefaultDingTalkClient("https://oapi.dingtalk.com/topapi/v2/user/get");
  117. OapiV2UserGetRequest v2GetRequest = new OapiV2UserGetRequest()
  118. {
  119. Userid = userid,
  120. Language = "zh_CN"
  121. };
  122. v2GetRequest.SetHttpMethod("POST");
  123. OapiV2UserGetResponse v2GetResponse = client3.Execute(v2GetRequest, access_token);
  124. if (v2GetResponse.IsError)
  125. {
  126. return Ok(new { state = 0, message = "扫码登录失败" });
  127. }
  128. var DDbind = v2GetResponse.Result;
  129. DingDingbinds dingDingBind = new DingDingbinds
  130. {
  131. type = type,
  132. deptIdList = DDbind.DeptIdList,
  133. title = DDbind.Title,
  134. name = DDbind.Name,
  135. unionid = DDbind.Unionid,
  136. userid = DDbind.Userid,
  137. };
  138. Teacher teacher = null;
  139. string sql = $"select distinct value(c) from c join A1 in c.ddbinds where A1.userid='{dingDingBind.userid}' AND A1.unionid ='{dingDingBind.unionid}'";
  140. await foreach (var item in _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "Teacher").GetItemQueryIterator<Teacher>(queryText: sql, requestOptions: new QueryRequestOptions() { PartitionKey = new PartitionKey($"Base") }))
  141. {
  142. teacher = item;
  143. break;
  144. }
  145. if (teacher == null)
  146. {
  147. return Ok(new { state = 1, dingDingBind = dingDingBind });
  148. }
  149. else
  150. {
  151. var clientID = _configuration.GetValue<string>("HaBookAuth:CoreService:clientID");
  152. var location = _option.Location;
  153. TmdidImplicit implicit_token = await _aoreAPIHttpService.Implicit(
  154. new Dictionary<string, string>()
  155. {
  156. { "grant_type", "implicit" },
  157. { "client_id",clientID },
  158. { "account",teacher.id },
  159. { "nonce",Guid.NewGuid().ToString()}
  160. }, location, _configuration);
  161. Dictionary<string, object> dic = new Dictionary<string, object> { { "PartitionKey", "authority-bi" } };//设置只访问BI的权限
  162. List<Authority> authorityBIList = await _azureStorage.FindListByDict<Authority>(dic); //获取权限列表
  163. if (implicit_token!=null)
  164. {
  165. var ddbind = teacher.ddbinds.Find(x => x.userid.Equals($"{dingDingBind.userid}") && x.unionid.Equals($"{dingDingBind.unionid}"));
  166. if (ddbind != null)
  167. {
  168. List<string> roles = new List<string>();//角色列表
  169. List<string> permissions = new List<string>();//权限列表
  170. List<string> depts = new List<string>(); //部门id
  171. School school_base = new School();
  172. string school_code = null;
  173. if (teacher.defaultSchool != null)
  174. {
  175. var schoolRoles = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemStreamAsync(teacher.id, new PartitionKey($"Teacher-{teacher.defaultSchool}"));
  176. if (schoolRoles.Status == 200)
  177. {
  178. using var json = await JsonDocument.ParseAsync(schoolRoles.ContentStream);
  179. if (json.RootElement.TryGetProperty("roles", out JsonElement _roles) && _roles.ValueKind != JsonValueKind.Null)
  180. {
  181. foreach (var obj in _roles.EnumerateArray())
  182. {
  183. if (obj.GetString().Equals("assist"))
  184. {
  185. roles.Add(obj.GetString());
  186. }
  187. }
  188. }
  189. if (json.RootElement.TryGetProperty("permissions", out JsonElement _permissions) && _permissions.ValueKind != JsonValueKind.Null)
  190. {
  191. foreach (var obj in _permissions.EnumerateArray())
  192. {
  193. foreach (var item in authorityBIList)
  194. {
  195. if (item.RowKey.Equals(obj.GetString()))
  196. {
  197. permissions.Add(obj.GetString());
  198. }
  199. }
  200. }
  201. }
  202. }
  203. school_base = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemAsync<School>($"{teacher.defaultSchool}", new PartitionKey("Base"));
  204. //foreach (var period in school_base.period)
  205. //{
  206. // try
  207. // {
  208. // await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemAsync<ItemCond>($"{period.id}", new PartitionKey($"ItemCond-{teacher.defaultSchool}"));
  209. // }
  210. // catch (CosmosException)
  211. // {
  212. // ItemCond itemCond = new ItemCond
  213. // {
  214. // id = period.id,
  215. // pk = "ItemCond",
  216. // code = $"ItemCond-{teacher.defaultSchool}",
  217. // ttl = -1,
  218. // };
  219. // await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").CreateItemAsync<ItemCond>(itemCond, new PartitionKey($"ItemCond-{teacher.defaultSchool}"));
  220. // }
  221. //}
  222. school_code = teacher.defaultSchool;
  223. }
  224. foreach (var temp in ddbind.deptIdList)
  225. {
  226. depts.Add(temp.ToString());
  227. }
  228. var auth_token = JwtAuthExtension.CreateAuthToken(_option.HostName, teacher.id,teacher.name?.ToString(),teacher.picture?.ToString(),_option.JwtSecretKey, scope: Constant.ScopeTeacher, schoolID: school_code?.ToString(), standard: school_base.standard, roles:roles.ToArray(),permissions:permissions.ToArray(),ddDepts: depts.ToArray(),ddsub:ddbind.userid);
  229. return Ok(new { state = 200, auth_token = auth_token, teacher = teacher, id_token = implicit_token.id_token, access_token = implicit_token.access_token, expires_in = implicit_token.expires_in, token_type = implicit_token.token_type });
  230. }
  231. }
  232. return Ok(new { state = 1, dingdinginfo = dingDingBind });
  233. }
  234. }
  235. catch (Exception e)
  236. {
  237. return Ok(new { state = 1, message = "code失效" });
  238. }
  239. }
  240. /// <summary>
  241. /// 钉钉绑定醍摩豆信息
  242. /// </summary>
  243. /// <param name="ddbindparam"></param>
  244. /// <returns></returns>
  245. [ProducesDefaultResponseType]
  246. [HttpPost("bind")]
  247. [AllowAnonymous]
  248. public async Task<IActionResult> Bind(JsonElement jsonElement)
  249. {
  250. try
  251. {
  252. jsonElement.TryGetProperty("mobile", out JsonElement mobile);
  253. jsonElement.TryGetProperty("idToken", out JsonElement idToken);
  254. if (!jsonElement.TryGetProperty("param", out JsonElement param)) return BadRequest();
  255. HttpClient httpClient = _http.CreateClient();
  256. Teacher teacher = new Teacher();
  257. DingDingbinds ddbinds = param.ToObject<DingDingbinds>(); //将json数据转换为实体类
  258. TmdidImplicit implicit_token = new TmdidImplicit();
  259. Dictionary<string, object> dic = new Dictionary<string, object> { { "PartitionKey", "authority-bi" } };//设置只访问BI的权限
  260. List<Authority> authorityBIList = await _azureStorage.FindListByDict<Authority>(dic); //获取权限列表
  261. List<string> roles = new List<string>();//角色列表
  262. List<string> permissions = new List<string>();//权限列表
  263. List<string> depts = new List<string>(); //部门id
  264. School school_base = new School();
  265. string school_code = null;
  266. var auth_token = "";
  267. string blobOrTable = DateTimeOffset.UtcNow.ToUnixTimeMilliseconds().ToString();
  268. OperateLog operateLog = new OperateLog();//操作记录
  269. operateLog.PartitionKey = "OperateLog-BI";
  270. operateLog.RowKey = blobOrTable;
  271. operateLog.recordID = blobOrTable;
  272. operateLog.platformSource = "BI";
  273. operateLog.tmdId = $"{teacher.id}";
  274. operateLog.tmdName = $"{teacher.name}";
  275. operateLog.visitApi = "common/login/bind";
  276. operateLog.operateTime = DateTime.Now;
  277. StringBuilder strBuilder = new StringBuilder();
  278. if (!string.IsNullOrEmpty($"{mobile}"))
  279. {
  280. List<JsonElement> mbs = new List<JsonElement>() { mobile };
  281. string url = _configuration.GetValue<string>("HaBookAuth:CoreId:userinfo");
  282. HttpResponseMessage responseMessage = await httpClient.PostAsJsonAsync(url, mbs);
  283. if (responseMessage.StatusCode == HttpStatusCode.OK)
  284. {
  285. string responseBody = await responseMessage.Content.ReadAsStringAsync();
  286. List<JsonElement> json_id = responseBody.ToObject<List<JsonElement>>();
  287. string temp_id = null;
  288. if (json_id.IsNotEmpty())
  289. {
  290. temp_id = json_id[0].GetProperty("id").ToString();
  291. }
  292. var client = _azureCosmos.GetCosmosClient();
  293. teacher = await client.GetContainer(Constant.TEAMModelOS, "Teacher").ReadItemAsync<Teacher>(temp_id, new PartitionKey("Base"));
  294. string sql = $"SELECT distinct value(c) FROM c join A1 in c.ddbinds where A1.userid='{ddbinds.userid}' and A1.unionid='{ddbinds.unionid}'";
  295. await foreach (var item in _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "Teacher").GetItemQueryIterator<Teacher>(queryText: sql,
  296. requestOptions: new QueryRequestOptions() { PartitionKey = new PartitionKey($"Base") }))
  297. {
  298. teacher = item;
  299. break;
  300. }
  301. if (teacher != null)
  302. {
  303. if (teacher.id.Equals(temp_id))
  304. {
  305. var clientID = _configuration.GetValue<string>("HaBookAuth:CoreService:clientID");
  306. var location = _option.Location;
  307. implicit_token = await _aoreAPIHttpService.Implicit(
  308. new Dictionary<string, string>()
  309. {
  310. { "grant_type", "implicit" },
  311. { "client_id",clientID },
  312. { "account",teacher.id },
  313. { "nonce",Guid.NewGuid().ToString()}
  314. }, location, _configuration);
  315. if (implicit_token!=null)
  316. {
  317. var ddbind = teacher.ddbinds.Find(x => x.userid.Equals($"{ddbinds.userid}") && x.unionid.Equals($"{ddbinds.unionid}"));
  318. if (ddbind == null)
  319. {
  320. teacher.ddbinds = new List<Teacher.DingDingBind> { new Teacher.DingDingBind { type = $"{type}", deptIdList = ddbinds.deptIdList, title = ddbinds.title, name = ddbinds.name, unionid = ddbinds.unionid, userid = ddbinds.userid } };
  321. await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "Teacher").ReplaceItemAsync<Teacher>(teacher, teacher.id, new PartitionKey(teacher.code));
  322. if (teacher.defaultSchool != null)
  323. {
  324. var schoolRoles = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemStreamAsync(teacher.id, new PartitionKey($"Teacher-{teacher.defaultSchool}"));
  325. if (schoolRoles.Status == 200)
  326. {
  327. using var json = await JsonDocument.ParseAsync(schoolRoles.ContentStream);
  328. if (json.RootElement.TryGetProperty("roles", out JsonElement _roles) && _roles.ValueKind != JsonValueKind.Null)
  329. {
  330. foreach (var obj in _roles.EnumerateArray())
  331. {
  332. //初始定义顾问的assistant 更改为assist
  333. if (obj.GetString().Equals($"assist"))
  334. {
  335. roles.Add(obj.GetString());
  336. }
  337. }
  338. }
  339. if (json.RootElement.TryGetProperty("permissions", out JsonElement _permissions) && _permissions.ValueKind != JsonValueKind.Null)
  340. {
  341. foreach (var obj in _permissions.EnumerateArray())
  342. {
  343. //限制只显示BI权限
  344. foreach (var aut in authorityBIList)
  345. {
  346. if (aut.RowKey.Equals(obj.GetString()))
  347. {
  348. permissions.Add(obj.GetString());
  349. }
  350. }
  351. }
  352. }
  353. }
  354. school_base = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemAsync<School>($"{teacher.defaultSchool}", new PartitionKey("Base"));
  355. //foreach (var period in school_base.period)
  356. //{
  357. // try
  358. // {
  359. // await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemAsync<ItemCond>($"{period.id}", new PartitionKey($"ItemCond-{teacher.defaultSchool}"));
  360. // }
  361. // catch (CosmosException)
  362. // {
  363. // ItemCond itemCond = new ItemCond
  364. // {
  365. // id = period.id,
  366. // pk = "ItemCond",
  367. // code = $"ItemCond-{teacher.defaultSchool}",
  368. // ttl = -1,
  369. // };
  370. // await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").CreateItemAsync<ItemCond>(itemCond, new PartitionKey($"ItemCond-{teacher.defaultSchool}"));
  371. // }
  372. //}
  373. school_code = teacher.defaultSchool;
  374. }
  375. foreach (var tempdept in ddbinds.deptIdList)
  376. {
  377. depts.Add(tempdept.ToString());
  378. }
  379. strBuilder.Append($"醍摩豆账户{teacher.id}【{teacher.name}】和钉钉账户{ddbinds.userid}【{ddbinds.name}】进行绑定,绑定成功");
  380. }
  381. }
  382. else
  383. {
  384. if (teacher.ddbinds.IsNotEmpty())
  385. {
  386. teacher.ddbinds.RemoveAll(x => x.userid.Equals(ddbinds.userid) && x.unionid.Equals(ddbinds.unionid));
  387. await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "Teacher").ReplaceItemAsync<Teacher>(teacher, teacher.id, new PartitionKey(teacher.code));
  388. }
  389. strBuilder.Append($"醍摩豆账户{teacher.id}【{teacher.name}】和钉钉账户{ddbinds.userid}【{ddbinds.name}】进行绑定,绑定失败");
  390. operateLog.operateDescribe = strBuilder.ToString();
  391. await _azureStorage.Save<OperateLog>(operateLog);
  392. return Ok(new { state = 1, message = "绑定失败" });
  393. }
  394. }
  395. else
  396. {
  397. operateLog.operateDescribe = $"醍摩豆账户{teacher.id}【{teacher.name}】和钉钉账户{ddbinds.userid}【{ddbinds.name}】进行绑定,账号已被别的醍摩豆id绑定";
  398. await _azureStorage.Save<OperateLog>(operateLog);
  399. return Ok(new
  400. {
  401. location = _option.Location,
  402. //账号已被别的醍摩豆id绑定
  403. state = 2,
  404. tmdid = teacher.id,
  405. name = teacher.name,
  406. ddid = ddbinds.userid,
  407. ddname = ddbinds.name
  408. });
  409. }
  410. }
  411. else
  412. {
  413. teacher = new Teacher
  414. {
  415. id = temp_id,
  416. pk = "Base",
  417. code = "Base",
  418. name = temp_id,
  419. //创建账号并第一次登录IES5则默认赠送1G
  420. size = 1,
  421. defaultSchool = null,
  422. schools = new List<Teacher.TeacherSchool>(),
  423. ddbinds = new List<Teacher.DingDingBind> { new Teacher.DingDingBind { type = $"{type}", deptIdList = ddbinds.deptIdList, title = ddbinds.title, name = ddbinds.name, unionid = ddbinds.unionid, userid = ddbinds.userid } },
  424. };
  425. var container = _azureStorage.GetBlobContainerClient(temp_id);
  426. await container.CreateIfNotExistsAsync(PublicAccessType.None); //尝试创建Teacher私有容器,如存在则不做任何事,保障容器一定存在
  427. teacher = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "Teacher").CreateItemAsync<Teacher>(teacher, new PartitionKey("Base"));
  428. foreach (var tempdept in ddbinds.deptIdList)
  429. {
  430. depts.Add(tempdept.ToString());
  431. }
  432. auth_token = JwtAuthExtension.CreateAuthToken(_option.HostName, teacher.id, teacher.name?.ToString(), teacher.picture?.ToString(), _option.JwtSecretKey, scope: Constant.ScopeTeacher, schoolID: school_code?.ToString(), standard: school_base.standard, roles: roles.ToArray(), permissions: permissions.ToArray(), ddDepts: depts.ToArray(), ddsub: ddbinds.userid);
  433. strBuilder.Append($"醍摩豆账户{teacher.id}【{teacher.name}】和钉钉账户{ddbinds.userid}【{ddbinds.name}】进行绑定,新建的账户绑定成功");
  434. }
  435. }
  436. else
  437. {
  438. return Ok(new { state = 3, message = "通过手机号查询用户信息异常" });
  439. }
  440. }
  441. if (!string.IsNullOrEmpty($"{idToken}"))
  442. {
  443. var jwt = new JwtSecurityToken($"{idToken}");
  444. //if (!jwt.Payload.Iss.Equals("account.teammodel", StringComparison.OrdinalIgnoreCase)) return BadRequest();
  445. var id = jwt.Payload.Sub;
  446. jwt.Payload.TryGetValue("name", out object name);
  447. jwt.Payload.TryGetValue("picture", out object picture);
  448. //检查是否有绑定信息
  449. var client = _azureCosmos.GetCosmosClient();
  450. teacher = await client.GetContainer(Constant.TEAMModelOS, "Teacher").ReadItemAsync<Teacher>(id, new PartitionKey("Base"));
  451. string sql = $"select distinct value(c) from c join A1 in c.ddbinds where A1.userid='{ddbinds.userid}' AND A1.unionid ='{ddbinds.unionid}'";
  452. await foreach (var item in _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "Teacher").GetItemQueryIterator<Teacher>(queryText: sql,
  453. requestOptions: new QueryRequestOptions() { PartitionKey = new PartitionKey($"Base") }))
  454. {
  455. teacher = item;
  456. break;
  457. }
  458. if (teacher != null)
  459. {
  460. if (teacher.id.Equals(id))
  461. {
  462. var ddbind = teacher.ddbinds.Find(x => x.userid.Equals($"{ddbinds.userid}") && x.unionid.Equals($"{ddbinds.unionid}"));
  463. if (ddbind == null)
  464. {
  465. teacher.ddbinds = new List<Teacher.DingDingBind> { new Teacher.DingDingBind { type = $"{type}", deptIdList = ddbinds.deptIdList, title = ddbinds.title, name = ddbinds.name, unionid = ddbinds.unionid, userid = ddbinds.userid } };
  466. await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "Teacher").ReplaceItemAsync<Teacher>(teacher, teacher.id, new PartitionKey(teacher.code));
  467. //添加
  468. if (teacher.defaultSchool != null)
  469. {
  470. var schoolRoles = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemStreamAsync(teacher.id, new PartitionKey($"Teacher-{teacher.defaultSchool}"));
  471. if (schoolRoles.Status == 200)
  472. {
  473. using var json = await JsonDocument.ParseAsync(schoolRoles.ContentStream);
  474. if (json.RootElement.TryGetProperty("roles", out JsonElement _roles) && _roles.ValueKind != JsonValueKind.Null)
  475. {
  476. foreach (var obj in _roles.EnumerateArray())
  477. {
  478. //初始定义顾问的assistant 更改为assist
  479. if (obj.GetString().Equals($"assist"))
  480. {
  481. roles.Add(obj.GetString());
  482. }
  483. }
  484. }
  485. if (json.RootElement.TryGetProperty("permissions", out JsonElement _permissions) && _permissions.ValueKind != JsonValueKind.Null)
  486. {
  487. foreach (var obj in _permissions.EnumerateArray())
  488. {
  489. //限制只显示BI权限
  490. foreach (var aut in authorityBIList)
  491. {
  492. if (aut.RowKey.Equals(obj.GetString()))
  493. {
  494. permissions.Add(obj.GetString());
  495. }
  496. }
  497. }
  498. }
  499. }
  500. school_base = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemAsync<School>($"{teacher.defaultSchool}", new PartitionKey("Base"));
  501. //foreach (var period in school_base.period)
  502. //{
  503. // try
  504. // {
  505. // await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemAsync<ItemCond>($"{period.id}", new PartitionKey($"ItemCond-{teacher.defaultSchool}"));
  506. // }
  507. // catch (CosmosException)
  508. // {
  509. // ItemCond itemCond = new ItemCond
  510. // {
  511. // id = period.id,
  512. // pk = "ItemCond",
  513. // code = $"ItemCond-{teacher.defaultSchool}",
  514. // ttl = -1,
  515. // };
  516. // await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").CreateItemAsync<ItemCond>(itemCond, new PartitionKey($"ItemCond-{teacher.defaultSchool}"));
  517. // }
  518. //}
  519. school_code = teacher.defaultSchool;
  520. }
  521. foreach (var tempdept in ddbinds.deptIdList)
  522. {
  523. depts.Add(tempdept.ToString());
  524. }
  525. }
  526. auth_token = JwtAuthExtension.CreateAuthToken(_option.HostName, teacher.id, teacher.name?.ToString(), teacher.picture?.ToString(), _option.JwtSecretKey, scope: Constant.ScopeTeacher, schoolID: school_code?.ToString(), standard: school_base.standard, roles: roles.ToArray(), permissions: permissions.ToArray(), ddDepts: depts.ToArray(), ddsub: ddbinds.userid);
  527. operateLog.operateDescribe = $"新建的账户的醍摩豆账户{teacher.id}【{teacher.name}】和钉钉账户{ddbinds.userid}【{ddbinds.name}】进行绑定,绑定成功";
  528. await _azureStorage.Save<OperateLog>(operateLog);
  529. return Ok(new
  530. {
  531. state = 200,
  532. auth_token = auth_token,
  533. idToken = idToken,
  534. teacher = teacher,
  535. location = _option.Location,
  536. });
  537. }
  538. else
  539. {
  540. operateLog.operateDescribe = $"醍摩豆账户{teacher.id}【{teacher.name}】和钉钉账户{ddbinds.userid}【{ddbinds.name}】进行绑定,账号已被别的醍摩豆id绑定";
  541. await _azureStorage.Save<OperateLog>(operateLog);
  542. return Ok(new
  543. {
  544. location = _option.Location,
  545. //账号已被别的醍摩豆id绑定
  546. state = 2,
  547. tmdid = teacher.id,
  548. name = teacher.name,
  549. userid = ddbinds.userid,
  550. ddname = ddbinds.name
  551. });
  552. }
  553. }
  554. else
  555. {
  556. teacher = new Teacher
  557. {
  558. id = id,
  559. pk = "Base",
  560. code = "Base",
  561. name = name?.ToString(),
  562. picture = picture?.ToString(),
  563. //创建账号并第一次登录IES5则默认赠送1G
  564. size = 1,
  565. defaultSchool = null,
  566. schools = new List<Teacher.TeacherSchool>(),
  567. ddbinds = new List<Teacher.DingDingBind> { new Teacher.DingDingBind { type = $"{type}", deptIdList = ddbinds.deptIdList, title = ddbinds.title, name = ddbinds.name, unionid = ddbinds.unionid, userid = ddbinds.userid } }
  568. };
  569. var container = _azureStorage.GetBlobContainerClient(id);
  570. await container.CreateIfNotExistsAsync(PublicAccessType.None); //尝试创建Teacher私有容器,如存在则不做任何事,保障容器一定存在
  571. teacher = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "Teacher").CreateItemAsync<Teacher>(teacher, new PartitionKey("Base"));
  572. foreach (var tempdept in ddbinds.deptIdList)
  573. {
  574. depts.Add(tempdept.ToString());
  575. }
  576. auth_token = JwtAuthExtension.CreateAuthToken(_option.HostName, teacher.id, teacher.name?.ToString(), teacher.picture?.ToString(), _option.JwtSecretKey, scope: Constant.ScopeTeacher, schoolID: school_code?.ToString(), standard: school_base.standard, roles: roles.ToArray(), permissions: permissions.ToArray(), ddDepts: depts.ToArray(), ddsub: ddbinds.userid);
  577. strBuilder.Append($"醍摩豆账户{teacher.id}【{teacher.name}】和钉钉账户{ddbinds.userid}【{ddbinds.name}】进行绑定,新建的账户绑定成功");
  578. await _azureStorage.Save<OperateLog>(operateLog);
  579. return Ok(new
  580. {
  581. state = 200,
  582. auth_token = auth_token,
  583. idToken = id,
  584. //teacher = teacher,
  585. location = _option.Location,
  586. });
  587. }
  588. }
  589. auth_token = JwtAuthExtension.CreateAuthToken(_option.HostName, teacher.id, teacher.name?.ToString(), teacher.picture?.ToString(), _option.JwtSecretKey, scope: Constant.ScopeTeacher, schoolID: school_code.ToString(), standard: school_base.standard, roles: roles.ToArray(), permissions: permissions.ToArray(), ddDepts: depts.ToArray(), ddsub: ddbinds.userid);
  590. string temp_idToken = string.IsNullOrEmpty($"{idToken}") ? implicit_token.id_token : idToken.ToString();
  591. operateLog.operateDescribe = strBuilder.ToString();
  592. return Ok(new
  593. {
  594. state = 200,
  595. auth_token = auth_token,
  596. idToken = temp_idToken,
  597. teacher = teacher,
  598. location = _option.Location,
  599. });
  600. }
  601. catch (Exception ex)
  602. {
  603. await _dingDing.SendBotMsg($"BI,{_option.Location} common/login/bind \n {ex.Message}{ex.StackTrace} ", GroupNames.成都开发測試群組);
  604. return Ok(new
  605. {
  606. state = 1,
  607. location = _option.Location
  608. });
  609. }
  610. }
  611. /// <summary>
  612. /// 依据id_Ttoken获取教师信息
  613. /// </summary>
  614. /// <param name="jsonElement"></param>
  615. /// <returns></returns>
  616. [ProducesDefaultResponseType]
  617. [HttpPost("get-teacherinfo")]
  618. public async Task<IActionResult> GetTeacherInfo(JsonElement jsonElement)
  619. {
  620. try
  621. {
  622. if (!jsonElement.TryGetProperty("id_token", out JsonElement id_token)) return BadRequest();
  623. var jwt = new JwtSecurityToken(id_token.GetString());
  624. //TODO 此驗證IdToken先簡單檢查,後面需向Core ID新API,驗證Token
  625. //if (!jwt.Payload.Iss.Equals("account.teammodel", StringComparison.OrdinalIgnoreCase)) return BadRequest();
  626. var id = jwt.Payload.Sub;
  627. jwt.Payload.TryGetValue("name", out object name);
  628. jwt.Payload.TryGetValue("picture", out object picture);
  629. Teacher teacher = null;
  630. //检查是否有绑定信息
  631. var client = _azureCosmos.GetCosmosClient();
  632. teacher = await client.GetContainer(Constant.TEAMModelOS, "Teacher").ReadItemAsync<Teacher>($"{id}", new PartitionKey("Base"));
  633. var auth_token = "";
  634. var clientID = _configuration.GetValue<string>("HaBookAuth:CoreService:clientID");
  635. var location = _option.Location;
  636. TmdidImplicit implicit_token = await _aoreAPIHttpService.Implicit(
  637. new Dictionary<string, string>()
  638. {
  639. { "grant_type", "implicit" },
  640. { "client_id",clientID },
  641. { "account",teacher.id },
  642. { "nonce",Guid.NewGuid().ToString()}
  643. }, location, _configuration);
  644. Dictionary<string, object> dic = new Dictionary<string, object> { { "PartitionKey", "authority-bi" } };//设置只访问BI的权限
  645. List<Authority> authorityBIList = await _azureStorage.FindListByDict<Authority>(dic); //获取权限列表
  646. List<string> roles = new List<string>();//角色列表
  647. List<string> permissions = new List<string>();//权限列表
  648. List<string> depts = new List<string>(); //部门id
  649. School school_base = new School();
  650. string school_code = null;
  651. if (implicit_token!=null)
  652. {
  653. if (teacher.defaultSchool != null)
  654. {
  655. var schoolRoles = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemStreamAsync(teacher.id, new PartitionKey($"Teacher-{teacher.defaultSchool}"));
  656. if (schoolRoles.Status == 200)
  657. {
  658. using var json = await JsonDocument.ParseAsync(schoolRoles.ContentStream);
  659. if (json.RootElement.TryGetProperty("roles", out JsonElement _roles) && _roles.ValueKind != JsonValueKind.Null)
  660. {
  661. foreach (var obj in _roles.EnumerateArray())
  662. {
  663. //初始定义顾问的assistant 更改为assist
  664. if (obj.GetString().Equals($"assist"))
  665. {
  666. roles.Add(obj.GetString());
  667. }
  668. }
  669. }
  670. if (json.RootElement.TryGetProperty("permissions", out JsonElement _permissions) && _permissions.ValueKind != JsonValueKind.Null)
  671. {
  672. foreach (var obj in _permissions.EnumerateArray())
  673. {
  674. //限制只显示BI权限
  675. foreach (var aut in authorityBIList)
  676. {
  677. if (aut.RowKey.Equals(obj.GetString()))
  678. {
  679. permissions.Add(obj.GetString());
  680. }
  681. }
  682. }
  683. }
  684. }
  685. school_base = await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemAsync<School>($"{teacher.defaultSchool}", new PartitionKey("Base"));
  686. //foreach (var period in school_base.period)
  687. //{
  688. // try
  689. // {
  690. // await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").ReadItemAsync<ItemCond>($"{period.id}", new PartitionKey($"ItemCond-{teacher.defaultSchool}"));
  691. // }
  692. // catch (CosmosException)
  693. // {
  694. // ItemCond itemCond = new ItemCond
  695. // {
  696. // id = period.id,
  697. // pk = "ItemCond",
  698. // code = $"ItemCond-{teacher.defaultSchool}",
  699. // ttl = -1,
  700. // };
  701. // await _azureCosmos.GetCosmosClient().GetContainer(Constant.TEAMModelOS, "School").CreateItemAsync<ItemCond>(itemCond, new PartitionKey($"ItemCond-{teacher.defaultSchool}"));
  702. // }
  703. //}
  704. school_code = teacher.defaultSchool;
  705. }
  706. List<Teacher.DingDingBind> ddbinds = teacher.ddbinds;
  707. Teacher.DingDingBind ddbind = new Teacher.DingDingBind();
  708. if (teacher.ddbinds.Count > 0)
  709. {
  710. if (ddbinds != null)
  711. {
  712. foreach (var temp in ddbinds)
  713. {
  714. ddbind.userid = temp.userid;
  715. ddbind.deptIdList = temp.deptIdList;
  716. }
  717. }
  718. foreach (var temp in ddbind.deptIdList)
  719. {
  720. depts.Add(temp.ToString());
  721. }
  722. }
  723. else return Ok(new { state = 1, message = "该账户未绑定钉钉信息!请扫码绑定信息!" });
  724. auth_token = JwtAuthExtension.CreateAuthToken(_option.HostName, teacher.id, teacher.name?.ToString(), teacher.picture?.ToString(), _option.JwtSecretKey, scope: Constant.ScopeTeacher, schoolID: school_code.ToString(), standard: school_base.standard, roles: roles.ToArray(), permissions: permissions.ToArray(), ddDepts: depts.ToArray(), ddsub: ddbind.userid);
  725. }
  726. var (osblob_uri, osblob_sas) = roles.Contains("area") ? _azureStorage.GetBlobContainerSAS("teammodelos", BlobContainerSasPermissions.Write | BlobContainerSasPermissions.Read | BlobContainerSasPermissions.List | BlobContainerSasPermissions.Delete) : _azureStorage.GetBlobContainerSAS("teammodelos", BlobContainerSasPermissions.Read | BlobContainerSasPermissions.List);
  727. return Ok(new { state = 200, auth_token = auth_token, teacher = teacher, id_token = implicit_token.id_token, access_token = implicit_token.access_token, expires_in = implicit_token.expires_in, token_type = implicit_token.token_type, osblob_uri, osblob_sas });
  728. }
  729. catch (Exception ex)
  730. {
  731. await _dingDing.SendBotMsg($"BI,{_option.Location}, /common/login/get-teacherinfo \n{ex.Message}{ex.StackTrace}", GroupNames.成都开发測試群組);
  732. return BadRequest();
  733. }
  734. }
  735. /// <summary>
  736. /// 钉钉扫码登录获取扫码信息
  737. /// </summary>
  738. /// <param name="jsonElement"></param>
  739. /// <returns></returns>
  740. [ProducesDefaultResponseType]
  741. [HttpPost("get-ddscancode")]
  742. public async Task<IActionResult> GetDingDingScanCode(JsonElement jsonElement)
  743. {
  744. try
  745. {
  746. string appKey = _configuration["DingDingAuth:appKey"];
  747. string appSecret = _configuration["DingDingAuth:appSecret"];
  748. if (string.IsNullOrWhiteSpace(appKey) || string.IsNullOrWhiteSpace(appSecret))
  749. {
  750. return Ok(new { state = 0, message = "请检查配置钉钉的信息" });
  751. }
  752. //自己传的code
  753. if (!jsonElement.TryGetProperty("code", out JsonElement LoginTempCode)) return BadRequest();
  754. //获取access_token
  755. IDingTalkClient tokenClient = new DefaultDingTalkClient("https://oapi.dingtalk.com/gettoken");
  756. OapiGettokenRequest tokenRequest = new OapiGettokenRequest() { Appkey = appKey, Appsecret = appSecret };
  757. tokenRequest.SetHttpMethod("Get");
  758. OapiGettokenResponse tokenRespone = tokenClient.Execute(tokenRequest);
  759. if (tokenRespone.IsError)
  760. {
  761. return BadRequest();
  762. }
  763. string access_token = tokenRespone.AccessToken;
  764. //获取临时授权码 获取授权用户的个人信息
  765. DefaultDingTalkClient clientinfo = new DefaultDingTalkClient("https://oapi.dingtalk.com/sns/getuserinfo_bycode");
  766. OapiSnsGetuserinfoBycodeRequest req = new OapiSnsGetuserinfoBycodeRequest() { TmpAuthCode = $"{LoginTempCode}" }; //通过扫描二维码,跳转到指定的Url后,向Url中追加Code临时授权码
  767. OapiSnsGetuserinfoBycodeResponse response = clientinfo.Execute(req, appKey, appSecret);
  768. if (response.Errcode.Equals(40078))
  769. {
  770. return Ok(new { state = 0, message = $"state:{response.Errcode};Err{response.Errmsg}/临时授权码过期请重新扫码" });
  771. }
  772. string unionid = response.UserInfo.Unionid;
  773. IDingTalkClient client2 = new DefaultDingTalkClient("https://oapi.dingtalk.com/topapi/user/getbyunionid"); //userid地址
  774. OapiUserGetbyunionidRequest byunionidRequest = new OapiUserGetbyunionidRequest() { Unionid = unionid };
  775. OapiUserGetbyunionidResponse byunionidResponse = client2.Execute(byunionidRequest, access_token);
  776. if (byunionidResponse.IsError)
  777. {
  778. return Ok(new { state = 0, message = "扫码登录失败" });
  779. }
  780. // 根据userId获取用户信息
  781. string userid = byunionidResponse.Result.Userid;
  782. IDingTalkClient client3 = new DefaultDingTalkClient("https://oapi.dingtalk.com/topapi/v2/user/get");
  783. OapiV2UserGetRequest v2GetRequest = new OapiV2UserGetRequest()
  784. {
  785. Userid = userid,
  786. Language = "zh_CN"
  787. };
  788. v2GetRequest.SetHttpMethod("POST");
  789. OapiV2UserGetResponse v2GetResponse = client3.Execute(v2GetRequest, access_token);
  790. if (v2GetResponse.IsError)
  791. {
  792. return Ok(new { state = 0, message = "扫码登录失败" });
  793. }
  794. List<DingDingUserInfo> ddusers = await _azureStorage.FindListByDict<DingDingUserInfo>(new Dictionary<string, object>() { { "RowKey", $"{v2GetResponse.Result.Userid}" }, { "unionId", $"{v2GetResponse.Result.Unionid}" } });
  795. if (ddusers.Count > 0)
  796. {
  797. DingDingUserInfo ddUserInfo = new DingDingUserInfo();
  798. foreach (var item in ddusers)
  799. {
  800. ddUserInfo = item;
  801. }
  802. return Ok(new { state = 200, ddUserId = ddUserInfo });
  803. }
  804. else
  805. {
  806. string divide = appKey.Equals("dingrucgsnt8p13rfbgd") ? "continent" : "international";
  807. DingDingUserInfo dingDingUserInfo = new DingDingUserInfo()
  808. {
  809. PartitionKey = divide,
  810. RowKey = v2GetResponse.Result.Userid,
  811. unionId = v2GetResponse.Result.Unionid,
  812. name = v2GetResponse.Result.Name,
  813. title = v2GetResponse.Result.Title,
  814. mobile = v2GetResponse.Result.Mobile,
  815. jobNumber = v2GetResponse.Result.JobNumber,
  816. pid = 0,
  817. deptId = 0,
  818. deptName = null,
  819. depts = string.Join(",", v2GetResponse.Result.DeptIdList.ToArray()),
  820. avatar = v2GetResponse.Result.Avatar,
  821. isAdmin = v2GetResponse.Result.Admin,
  822. tmdId = "",
  823. tmdName = "",
  824. tmdMobile = "",
  825. mail = "",
  826. picture = "",
  827. roles = "",
  828. permissions = "",
  829. };
  830. await _azureStorage.Save<DingDingUserInfo>(dingDingUserInfo);
  831. return Ok(new { state = 400, ddUserId = dingDingUserInfo });
  832. }
  833. }
  834. catch (Exception ex)
  835. {
  836. await _dingDing.SendBotMsg($"BI, {_option.Location} /common/login/get-ddscancode \n {ex.Message}{ex.StackTrace}", GroupNames.成都开发測試群組);
  837. return BadRequest();
  838. }
  839. }
  840. /// <summary>
  841. /// 钉钉绑定醍摩豆
  842. /// </summary>
  843. /// <returns></returns>
  844. [ProducesDefaultResponseType]
  845. [HttpPost("binguser")]
  846. public async Task<IActionResult> BindUser(JsonElement jsonElement)
  847. {
  848. try
  849. {
  850. if (!jsonElement.TryGetProperty("mobile", out JsonElement moile)) return BadRequest();
  851. if (!jsonElement.TryGetProperty("partitionKey", out JsonElement partitionKey)) return BadRequest();
  852. if (!jsonElement.TryGetProperty("rowKey", out JsonElement userId)) return BadRequest();
  853. //操作记录
  854. OperateLog operateLog = new OperateLog();
  855. string blobOrTable = DateTimeOffset.UtcNow.ToUnixTimeMilliseconds().ToString();
  856. operateLog.PartitionKey = "OperateLog-BI";
  857. operateLog.RowKey = blobOrTable;
  858. operateLog.recordID = blobOrTable;
  859. operateLog.platformSource = "BI";
  860. operateLog.visitApi = "/common/login/set-ddinductionuser";
  861. operateLog.operateTime = DateTime.Now;
  862. HttpClient httpClient = _http.CreateClient();
  863. string url = _configuration.GetValue<string>("HaBookAuth:CoreId:userinfo");
  864. HttpResponseMessage responseMessage = await httpClient.PostAsJsonAsync(url, moile);
  865. if (responseMessage.StatusCode == HttpStatusCode.OK)
  866. {
  867. var temp = await responseMessage.Content.ReadAsStringAsync();
  868. if (temp.Length > 0)
  869. {
  870. List<DingDingUserInfo> ddUserInfos = new();
  871. List<JsonElement> itemjson = temp.ToObject<List<JsonElement>>();
  872. var tempUser = await _azureStorage.FindListByDict<DingDingUserInfo>(new Dictionary<string, object> { { "PartitionKey", $"{partitionKey}" }, { "RowKey", $"{userId}" } });
  873. foreach (var item in itemjson)
  874. {
  875. foreach (var itemUser in tempUser)
  876. {
  877. var tmdId = item.GetProperty("id").ToString();
  878. var tmdName = item.GetProperty("name").ToString();
  879. itemUser.tmdId = tmdId;
  880. itemUser.tmdName = tmdName;
  881. itemUser.tmdMobile = item.GetProperty("mobile").ToString();
  882. itemUser.picture = item.GetProperty("picture").ToString();
  883. itemUser.mail = item.GetProperty("mail").ToString();
  884. operateLog.operateType = "修改";
  885. operateLog.funModule = "钉钉绑定";
  886. operateLog.tmdId = item.GetProperty("id").ToString();
  887. operateLog.tmdName = item.GetProperty("name").ToString();
  888. operateLog.operateDescribe = $"{tmdName}【{tmdId}】醍摩豆账号和{itemUser.name}【{itemUser.RowKey}】钉钉账户绑定成功";
  889. ddUserInfos.Add(itemUser);
  890. }
  891. }
  892. var dingDingUserInfos = await _azureStorage.UpdateAll<DingDingUserInfo>(ddUserInfos);
  893. await _azureStorage.Save<OperateLog>(operateLog); //保存操作记录
  894. return Ok(new { state = 200, ddUsers = dingDingUserInfos });
  895. }
  896. else return Ok(new { state = 400, message = "该手机没有注册提莫信息" });
  897. }
  898. else return Ok(new { state = responseMessage.StatusCode });
  899. }
  900. catch (Exception ex)
  901. {
  902. await _dingDing.SendBotMsg($"BI, {_option.Location} /common/login/binguser \n {ex.Message}{ex.StackTrace}", GroupNames.成都开发測試群組);
  903. return BadRequest();
  904. }
  905. }
  906. /// <summary>
  907. /// 获取钉钉信息详情绑定醍摩豆和钉钉信息 二合一
  908. /// </summary>
  909. /// <param name="jsonElement"></param>
  910. /// <returns></returns>
  911. [ProducesDefaultResponseType]
  912. [HttpPost("get-ddinfo")]
  913. public async Task<IActionResult> GetDingDingInfo(JsonElement jsonElement)
  914. {
  915. try
  916. {
  917. if (!jsonElement.TryGetProperty("mobile", out JsonElement moile)) return BadRequest();
  918. if (!jsonElement.TryGetProperty("partitionKey", out JsonElement partitionKey)) return BadRequest();
  919. if (!jsonElement.TryGetProperty("rowKey", out JsonElement userId)) return BadRequest();
  920. var tempUser = await _azureStorage.FindListByDict<DingDingUserInfo>(new Dictionary<string, object> { { "PartitionKey", $"{partitionKey}" }, { "RowKey", $"{userId}" } });
  921. List<string> roles = new();//角色列表
  922. List<string> permissions = new List<string>();//权限列表
  923. List<DingDingUserInfo> ddUserInfos = new();
  924. var id_token = "";
  925. foreach (var itemUser in tempUser)
  926. {
  927. if (!string.IsNullOrEmpty($"{itemUser.tmdId}") && !string.IsNullOrEmpty($"{itemUser.tmdName}"))
  928. {
  929. //roles = new List<string>(itemUser.roles.Split(new string[] { "," }, StringSplitOptions.RemoveEmptyEntries));
  930. roles = !string.IsNullOrEmpty($"{itemUser.roles}") ? new List<string>(itemUser.roles.Split(",")) : new List<string>();
  931. permissions = !string.IsNullOrEmpty($"{itemUser.permissions}") ? new List<string>(itemUser.permissions.Split(",")) : new List<string>();
  932. ddUserInfos.Add(itemUser);
  933. }
  934. else
  935. {
  936. //操作记录
  937. OperateLog operateLog = new OperateLog();
  938. string blobOrTable = DateTimeOffset.UtcNow.ToUnixTimeMilliseconds().ToString();
  939. operateLog.PartitionKey = "OperateLog-BI";
  940. operateLog.RowKey = blobOrTable;
  941. operateLog.recordID = blobOrTable;
  942. operateLog.platformSource = "BI";
  943. operateLog.visitApi = "/common/login/get-ddinfo";
  944. operateLog.operateTime = DateTime.Now;
  945. HttpClient httpClient = _http.CreateClient();
  946. string url = _configuration.GetValue<string>("HaBookAuth:CoreId:userinfo");
  947. HttpResponseMessage responseMessage = await httpClient.PostAsJsonAsync(url, moile);
  948. if (responseMessage.StatusCode == HttpStatusCode.OK)
  949. {
  950. var temp = await responseMessage.Content.ReadAsStringAsync();
  951. if (temp.Length > 0)
  952. {
  953. List<JsonElement> itemjson = temp.ToObject<List<JsonElement>>();
  954. foreach (var item in itemjson)
  955. {
  956. var tmdId = item.GetProperty("id").ToString();
  957. var tmdName = item.GetProperty("name").ToString();
  958. itemUser.tmdId = tmdId;
  959. itemUser.tmdName = tmdName;
  960. itemUser.tmdMobile = item.GetProperty("mobile").ToString();
  961. itemUser.picture = item.GetProperty("picture").ToString();
  962. itemUser.mail = item.GetProperty("mail").ToString();
  963. roles = !string.IsNullOrEmpty($"{itemUser.roles}") ? new List<string>(itemUser.roles.Split(",")) : new List<string>();
  964. permissions = !string.IsNullOrEmpty($"{itemUser.permissions}") ? new List<string>(itemUser.permissions.Split(",")) : new List<string>();
  965. operateLog.operateType = "修改";
  966. operateLog.funModule = "钉钉绑定";
  967. operateLog.tmdId = item.GetProperty("id").ToString();
  968. operateLog.tmdName = item.GetProperty("name").ToString();
  969. operateLog.operateDescribe = $"{tmdName}【{tmdId}】醍摩豆账号和{itemUser.name}【{itemUser.RowKey}】钉钉账户绑定成功";
  970. ddUserInfos.Add(itemUser);
  971. }
  972. ddUserInfos = await _azureStorage.UpdateAll<DingDingUserInfo>(ddUserInfos);
  973. await _azureStorage.Save<OperateLog>(operateLog); //保存操作记录
  974. }
  975. else return Ok(new { state = 400, message = "该手机没有注册醍摩豆账号信息" });
  976. }
  977. else return Ok(new { state = responseMessage.StatusCode });
  978. }
  979. id_token = JwtAuthExtension.CreateAuthToken(_option.HostName, itemUser.tmdId?.ToString(), itemUser.tmdName?.ToString(), itemUser.picture?.ToString(), _option.JwtSecretKey, scope: $"assist", roles: roles?.ToArray(), permissions: permissions?.ToArray(), ddsub: itemUser.RowKey?.ToString());
  980. }
  981. var (osblob_uri, osblob_sas) = roles.Contains("assist") ? _azureStorage.GetBlobContainerSAS("teammodelos", BlobContainerSasPermissions.Write | BlobContainerSasPermissions.Read | BlobContainerSasPermissions.List | BlobContainerSasPermissions.Delete) : _azureStorage.GetBlobContainerSAS("teammodelos", BlobContainerSasPermissions.Read | BlobContainerSasPermissions.List);
  982. return Ok(new { state = 200, ddUserInfos, id_token, roles, permissions, osblob_uri, osblob_sas });
  983. }
  984. catch (Exception ex)
  985. {
  986. await _dingDing.SendBotMsg($"BI,{_option.Location} /common/login/get-ddinfo \n {ex.Message}{ex.StackTrace}", GroupNames.成都开发測試群組);
  987. return BadRequest();
  988. }
  989. }
  990. public record DingDingbinds
  991. {
  992. public string type { get; set; }
  993. /// <summary>
  994. /// 所属部门id列表
  995. /// </summary>
  996. public List<long> deptIdList { get; set; }
  997. /// <summary>
  998. /// 职位名称
  999. /// </summary>
  1000. public string title { get; set; }
  1001. /// <summary>
  1002. /// 钉钉用户名
  1003. /// </summary>
  1004. public string name { get; set; }
  1005. /// <summary>
  1006. /// 钉钉unionid
  1007. /// </summary>
  1008. public string unionid { get; set; }
  1009. /// <summary>
  1010. /// 钉钉ID
  1011. /// </summary>
  1012. public string userid { get; set; }
  1013. }
  1014. }
  1015. }