ImplicitTokenGranter.java 8.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226
  1. package jnpf.granter;
  2. import cn.dev33.satoken.context.SaHolder;
  3. import cn.dev33.satoken.context.model.SaRequest;
  4. import cn.hutool.core.collection.CollectionUtil;
  5. import com.alibaba.fastjson.JSONArray;
  6. import com.alibaba.fastjson.JSONObject;
  7. import jnpf.implicit.utils.ImplicitLoginUtil;
  8. import jnpf.base.ActionResult;
  9. import jnpf.base.UserInfo;
  10. import jnpf.config.JnpfOauthConfig;
  11. import jnpf.constant.MsgCode;
  12. import jnpf.consts.AuthConsts;
  13. import jnpf.consts.LoginTicketStatus;
  14. import jnpf.exception.LoginException;
  15. import jnpf.model.BaseSystemInfo;
  16. import jnpf.model.LoginTicketModel;
  17. import jnpf.model.SocialUnbindModel;
  18. import jnpf.permission.controller.SocialsUserController;
  19. import jnpf.permission.model.socails.SocialsUserInfo;
  20. import jnpf.util.ServletUtil;
  21. import jnpf.util.StringUtil;
  22. import jnpf.util.TicketUtil;
  23. import jnpf.util.UserProvider;
  24. import lombok.extern.slf4j.Slf4j;
  25. import org.springframework.beans.factory.annotation.Autowired;
  26. import org.springframework.stereotype.Component;
  27. import java.util.Map;
  28. import static jnpf.granter.ImplicitTokenGranter.GRANT_TYPE;
  29. @Slf4j
  30. @Component(GRANT_TYPE)
  31. public class ImplicitTokenGranter extends AbstractTokenGranter {
  32. public static final String GRANT_TYPE = "implicit";
  33. public static final Integer ORDER = 5;
  34. private static final String URL_LOGIN = "/Login/implicit/**";
  35. @Autowired
  36. private ImplicitLoginUtil implicitLoginUtil;
  37. @Autowired
  38. private SocialsUserController socialsUserApi;
  39. @Autowired
  40. private JnpfOauthConfig oauthConfig;
  41. public ImplicitTokenGranter() {
  42. super(URL_LOGIN);
  43. }
  44. protected String getGrantType() {
  45. return GRANT_TYPE;
  46. }
  47. public ActionResult logout() {
  48. return super.logout();
  49. }
  50. public int getOrder() {
  51. return ORDER;
  52. }
  53. @Override
  54. protected void loginSuccess(UserInfo userInfo, BaseSystemInfo baseSystemInfo) {
  55. }
  56. @Override
  57. protected void loginFailure(UserInfo userInfo, BaseSystemInfo baseSystemInfo, Exception e) {
  58. super.loginFailure(userInfo, baseSystemInfo, e);
  59. }
  60. @Override
  61. protected String getUserDetailKey() {
  62. return AuthConsts.USERDETAIL_USER_ID;
  63. }
  64. public ActionResult granter(Map<String, String> map) throws LoginException {
  65. SaRequest req = SaHolder.getRequest();
  66. String code = req.getParam("code");
  67. String source = req.getParam("source");
  68. String state = req.getParam("state");
  69. if(StringUtil.isEmpty(source)) {
  70. String userAgent = ServletUtil.getUserAgent();
  71. if (userAgent.contains("wxwork")) {
  72. source = "wechat_enterprise";
  73. }
  74. if (userAgent.contains("DingTalk")) {
  75. source = "dingtalk";
  76. }
  77. }
  78. if (StringUtil.isEmpty(code)) {
  79. code = req.getParam("authCode") != null ? req.getParam("authCode") : req.getParam("auth_code");
  80. }
  81. //授权回调,登录接口,重定向携带token的首页
  82. if (StringUtil.isEmpty(source)) {
  83. return ActionResult.fail(MsgCode.OA028.get());
  84. }
  85. //跳js页面,直接调用授权链接
  86. if (StringUtil.isEmpty(code)) {
  87. String authLink = implicitLoginUtil.getAuthLink(source);
  88. SaHolder.getResponse().redirect(authLink);
  89. return null;
  90. }
  91. String uuid = implicitLoginUtil.loginByCode(source, code, state);
  92. //uuid登录
  93. return this.loginByUuid(source, uuid);
  94. }
  95. /**
  96. * 通过第三方用户id登录
  97. * @param source
  98. * @param uuid
  99. * @return
  100. * @throws LoginException
  101. */
  102. protected ActionResult loginByUuid(String source, String uuid) throws LoginException {
  103. boolean isApp = "APP".equalsIgnoreCase(UserProvider.getDeviceForAgent().getDevice());
  104. String url = isApp ? configValueUtil.getAppDomain() : configValueUtil.getFrontDomain();
  105. SocialsUserInfo socialsUserInfo = socialsUserApi.getUserInfo(source, uuid, null);
  106. if (configValueUtil.isMultiTenancy()) {
  107. if (socialsUserInfo == null || CollectionUtil.isEmpty(socialsUserInfo.getTenantUserInfo())) {
  108. SocialUnbindModel obj = new SocialUnbindModel(source, uuid, null);
  109. //未绑定写入缓存
  110. LoginTicketModel ticketModel = (new LoginTicketModel())
  111. .setStatus(LoginTicketStatus.UnBindMes.getStatus())
  112. .setTicketTimeout(System.currentTimeMillis() + oauthConfig.getTicketTimeout() * 1000)
  113. .setValue(JSONObject.toJSONString(obj));
  114. createdTicketState(ticketModel, url, isApp);
  115. return ActionResult.success();
  116. }
  117. if (socialsUserInfo.getTenantUserInfo().size() == 1) {
  118. UserInfo userInfo = socialsUserInfo.getUserInfo();
  119. //切换租户
  120. switchTenant(userInfo);
  121. //获取系统配置
  122. BaseSystemInfo baseSystemInfo = getSysconfig(userInfo);
  123. //登录账号
  124. String token = super.loginAccount(userInfo, baseSystemInfo);
  125. //返回登录信息
  126. String redirectUrl = url + "/sso" + "?token=" + token;
  127. if (isApp) {
  128. redirectUrl = url + "/pages/login/sso-redirect" + "?token=" + token;
  129. }
  130. SaHolder.getResponse().redirect(redirectUrl);
  131. return ActionResult.success();
  132. } else {
  133. //多租户信息写入ticket缓存
  134. JSONArray tenantUserInfo = socialsUserInfo.getTenantUserInfo();
  135. for (int i = 0; i < tenantUserInfo.size(); i++) {
  136. JSONObject o = tenantUserInfo.getJSONObject(i);
  137. o.remove("socialId");
  138. o.remove("socialType");
  139. }
  140. LoginTicketModel ticketModel = (new LoginTicketModel())
  141. .setStatus(LoginTicketStatus.Multitenancy.getStatus())
  142. .setValue(tenantUserInfo.toJSONString())
  143. .setTicketTimeout(System.currentTimeMillis() + oauthConfig.getTicketTimeout() * 1000);
  144. createdTicketState(ticketModel, url, isApp);
  145. return ActionResult.success();
  146. }
  147. } else {
  148. if (socialsUserInfo == null || socialsUserInfo.getUserInfo() == null) {
  149. SocialUnbindModel obj = new SocialUnbindModel(source, uuid, null);
  150. //未绑定写入缓存
  151. LoginTicketModel ticketModel = (new LoginTicketModel())
  152. .setStatus(LoginTicketStatus.UnBindMes.getStatus())
  153. .setTicketTimeout(System.currentTimeMillis() + oauthConfig.getTicketTimeout() * 1000)
  154. .setValue(JSONObject.toJSONString(obj));
  155. createdTicketState(ticketModel, url, isApp);
  156. return ActionResult.success();
  157. }
  158. UserInfo userInfo = socialsUserInfo.getUserInfo();
  159. //切换租户
  160. switchTenant(userInfo);
  161. //获取系统配置
  162. BaseSystemInfo baseSystemInfo = getSysconfig(userInfo);
  163. //登录账号
  164. String token = super.loginAccount(userInfo, baseSystemInfo);
  165. String redirectUrl = url + "/sso" + "?token=" + token;
  166. if (isApp) {
  167. redirectUrl = url + "/pages/login/sso-redirect" + "?token=" + token;
  168. }
  169. SaHolder.getResponse().redirect(redirectUrl);
  170. return ActionResult.success();
  171. }
  172. }
  173. /**
  174. * 创建票据
  175. * @param loginTicketModel
  176. * @param url
  177. * @param isApp
  178. * @return
  179. */
  180. private String createdTicketState(LoginTicketModel loginTicketModel, String url, boolean isApp) {
  181. String ticket = TicketUtil.createTicket(loginTicketModel, oauthConfig.getTicketTimeout());
  182. String MultitenancyUrl = url + "/login?JNPF_TICKET=" + ticket;
  183. if (isApp) {
  184. MultitenancyUrl = url + "/pages/login/index?JNPF_TICKET=" + ticket;
  185. }
  186. SaHolder.getResponse().redirect(MultitenancyUrl);
  187. return ticket;
  188. }
  189. /**
  190. * 未绑定-更新票据缓存
  191. *
  192. * @param socialType
  193. * @param socialUnionid
  194. * @param socialName
  195. * @return
  196. */
  197. protected LoginTicketModel updateTicketUnbind(String socialType, String socialUnionid, String socialName) {
  198. LoginTicketModel loginTicketModel = null;
  199. SocialUnbindModel obj = new SocialUnbindModel(socialType, socialUnionid, socialName);
  200. String ticket = this.getJnpfTicket();
  201. if (!ticket.isEmpty()) {
  202. loginTicketModel = (new LoginTicketModel()).setStatus(LoginTicketStatus.UnBind.getStatus()).setValue(JSONObject.toJSONString(obj));
  203. TicketUtil.updateTicket(ticket, loginTicketModel, (Long) 300L);
  204. }
  205. return loginTicketModel;
  206. }
  207. }