createProductLogic.go 4.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164
  1. package product
  2. import (
  3. "context"
  4. "crypto/rand"
  5. "encoding/hex"
  6. "fmt"
  7. "regexp"
  8. "strings"
  9. "time"
  10. "perms-system-server/internal/consts"
  11. authHelper "perms-system-server/internal/logic/auth"
  12. productModel "perms-system-server/internal/model/product"
  13. "perms-system-server/internal/model/productmember"
  14. userModel "perms-system-server/internal/model/user"
  15. "perms-system-server/internal/response"
  16. "perms-system-server/internal/svc"
  17. "perms-system-server/internal/types"
  18. "github.com/zeromicro/go-zero/core/logx"
  19. "github.com/zeromicro/go-zero/core/stores/sqlx"
  20. "golang.org/x/crypto/bcrypt"
  21. )
  22. var productCodeRegexp = regexp.MustCompile(`^[a-zA-Z][a-zA-Z0-9_-]{1,63}$`)
  23. type CreateProductLogic struct {
  24. logx.Logger
  25. ctx context.Context
  26. svcCtx *svc.ServiceContext
  27. }
  28. func NewCreateProductLogic(ctx context.Context, svcCtx *svc.ServiceContext) *CreateProductLogic {
  29. return &CreateProductLogic{
  30. Logger: logx.WithContext(ctx),
  31. ctx: ctx,
  32. svcCtx: svcCtx,
  33. }
  34. }
  35. // CreateProduct 创建产品。仅超管可调用,自动生成 appKey/appSecret 和产品专属管理员账号,用于接入新的业务产品。
  36. func (l *CreateProductLogic) CreateProduct(req *types.CreateProductReq) (resp *types.CreateProductResp, err error) {
  37. if err := authHelper.RequireSuperAdmin(l.ctx); err != nil {
  38. return nil, err
  39. }
  40. if !productCodeRegexp.MatchString(req.Code) {
  41. return nil, response.ErrBadRequest("产品编码只能包含字母、数字、下划线和中划线,须以字母开头,长度2-64")
  42. }
  43. if len(req.Name) > 64 {
  44. return nil, response.ErrBadRequest("产品名称长度不能超过64个字符")
  45. }
  46. if len(req.Remark) > 255 {
  47. return nil, response.ErrBadRequest("备注长度不能超过255个字符")
  48. }
  49. _, findErr := l.svcCtx.SysProductModel.FindOneByCode(l.ctx, req.Code)
  50. if findErr == nil {
  51. return nil, response.ErrConflict("产品编码已存在")
  52. }
  53. appKey, err := generateRandomHex(32)
  54. if err != nil {
  55. return nil, err
  56. }
  57. rawAppSecret, err := generateRandomHex(64)
  58. if err != nil {
  59. return nil, err
  60. }
  61. appSecretHash, err := bcrypt.GenerateFromPassword([]byte(rawAppSecret), bcrypt.DefaultCost)
  62. if err != nil {
  63. return nil, err
  64. }
  65. now := time.Now().Unix()
  66. adminUsername := fmt.Sprintf("admin_%s", req.Code)
  67. if _, err := l.svcCtx.SysUserModel.FindOneByUsername(l.ctx, adminUsername); err == nil {
  68. return nil, response.ErrConflict(fmt.Sprintf("用户名 %s 已存在,无法自动创建管理员账号", adminUsername))
  69. }
  70. adminPassword, err := generateRandomHex(8)
  71. if err != nil {
  72. return nil, err
  73. }
  74. hashedPwd, err := bcrypt.GenerateFromPassword([]byte(adminPassword), bcrypt.DefaultCost)
  75. if err != nil {
  76. return nil, err
  77. }
  78. var productId int64
  79. err = l.svcCtx.SysProductModel.TransactCtx(l.ctx, func(ctx context.Context, session sqlx.Session) error {
  80. result, err := l.svcCtx.SysProductModel.InsertWithTx(ctx, session, &productModel.SysProduct{
  81. Code: req.Code,
  82. Name: req.Name,
  83. AppKey: appKey,
  84. AppSecret: string(appSecretHash),
  85. Remark: req.Remark,
  86. Status: consts.StatusEnabled,
  87. CreateTime: now,
  88. UpdateTime: now,
  89. })
  90. if err != nil {
  91. return err
  92. }
  93. productId, _ = result.LastInsertId()
  94. userResult, err := l.svcCtx.SysUserModel.InsertWithTx(ctx, session, &userModel.SysUser{
  95. Username: adminUsername,
  96. Password: string(hashedPwd),
  97. Nickname: fmt.Sprintf("%s管理员", req.Name),
  98. IsSuperAdmin: consts.IsSuperAdminNo,
  99. MustChangePassword: consts.MustChangePasswordYes,
  100. Status: consts.StatusEnabled,
  101. CreateTime: now,
  102. UpdateTime: now,
  103. })
  104. if err != nil {
  105. return err
  106. }
  107. userId, _ := userResult.LastInsertId()
  108. _, err = l.svcCtx.SysProductMemberModel.InsertWithTx(ctx, session, &productmember.SysProductMember{
  109. ProductCode: req.Code,
  110. UserId: userId,
  111. MemberType: consts.MemberTypeAdmin,
  112. Status: consts.StatusEnabled,
  113. CreateTime: now,
  114. UpdateTime: now,
  115. })
  116. return err
  117. })
  118. if err != nil {
  119. errMsg := err.Error()
  120. if strings.Contains(errMsg, "1062") || strings.Contains(errMsg, "Duplicate entry") {
  121. if strings.Contains(errMsg, "uk_code") || strings.Contains(errMsg, req.Code) {
  122. return nil, response.ErrConflict("产品编码已存在")
  123. }
  124. if strings.Contains(errMsg, "uk_username") || strings.Contains(errMsg, adminUsername) {
  125. return nil, response.ErrConflict(fmt.Sprintf("用户名 %s 已存在", adminUsername))
  126. }
  127. return nil, response.ErrConflict("数据冲突,请稍后重试")
  128. }
  129. return nil, err
  130. }
  131. return &types.CreateProductResp{
  132. Id: productId,
  133. Code: req.Code,
  134. AppKey: appKey,
  135. AppSecret: rawAppSecret,
  136. AdminUser: adminUsername,
  137. AdminPassword: adminPassword,
  138. }, nil
  139. }
  140. func generateRandomHex(length int) (string, error) {
  141. b := make([]byte, length)
  142. if _, err := rand.Read(b); err != nil {
  143. return "", fmt.Errorf("generate random bytes failed: %w", err)
  144. }
  145. return hex.EncodeToString(b)[:length], nil
  146. }