createProductLogic.go 4.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165
  1. package product
  2. import (
  3. "context"
  4. "crypto/rand"
  5. "encoding/hex"
  6. "fmt"
  7. "regexp"
  8. "strings"
  9. "time"
  10. "perms-system-server/internal/consts"
  11. authHelper "perms-system-server/internal/logic/auth"
  12. productModel "perms-system-server/internal/model/product"
  13. "perms-system-server/internal/model/productmember"
  14. userModel "perms-system-server/internal/model/user"
  15. "perms-system-server/internal/response"
  16. "perms-system-server/internal/svc"
  17. "perms-system-server/internal/types"
  18. "perms-system-server/internal/util"
  19. "github.com/zeromicro/go-zero/core/logx"
  20. "github.com/zeromicro/go-zero/core/stores/sqlx"
  21. "golang.org/x/crypto/bcrypt"
  22. )
  23. var productCodeRegexp = regexp.MustCompile(`^[a-zA-Z][a-zA-Z0-9_-]{1,63}$`)
  24. type CreateProductLogic struct {
  25. logx.Logger
  26. ctx context.Context
  27. svcCtx *svc.ServiceContext
  28. }
  29. func NewCreateProductLogic(ctx context.Context, svcCtx *svc.ServiceContext) *CreateProductLogic {
  30. return &CreateProductLogic{
  31. Logger: logx.WithContext(ctx),
  32. ctx: ctx,
  33. svcCtx: svcCtx,
  34. }
  35. }
  36. // CreateProduct 创建产品。仅超管可调用,自动生成 appKey/appSecret 和产品专属管理员账号,用于接入新的业务产品。
  37. func (l *CreateProductLogic) CreateProduct(req *types.CreateProductReq) (resp *types.CreateProductResp, err error) {
  38. if err := authHelper.RequireSuperAdmin(l.ctx); err != nil {
  39. return nil, err
  40. }
  41. if !productCodeRegexp.MatchString(req.Code) {
  42. return nil, response.ErrBadRequest("产品编码只能包含字母、数字、下划线和中划线,须以字母开头,长度2-64")
  43. }
  44. if len(req.Name) > 64 {
  45. return nil, response.ErrBadRequest("产品名称长度不能超过64个字符")
  46. }
  47. if len(req.Remark) > 255 {
  48. return nil, response.ErrBadRequest("备注长度不能超过255个字符")
  49. }
  50. _, findErr := l.svcCtx.SysProductModel.FindOneByCode(l.ctx, req.Code)
  51. if findErr == nil {
  52. return nil, response.ErrConflict("产品编码已存在")
  53. }
  54. appKey, err := generateRandomHex(16)
  55. if err != nil {
  56. return nil, err
  57. }
  58. rawAppSecret, err := generateRandomHex(32)
  59. if err != nil {
  60. return nil, err
  61. }
  62. appSecretHash, err := bcrypt.GenerateFromPassword([]byte(rawAppSecret), bcrypt.DefaultCost)
  63. if err != nil {
  64. return nil, err
  65. }
  66. now := time.Now().Unix()
  67. adminUsername := fmt.Sprintf("admin_%s", req.Code)
  68. if _, err := l.svcCtx.SysUserModel.FindOneByUsername(l.ctx, adminUsername); err == nil {
  69. return nil, response.ErrConflict(fmt.Sprintf("用户名 %s 已存在,无法自动创建管理员账号", adminUsername))
  70. }
  71. adminPassword, err := generateRandomHex(12)
  72. if err != nil {
  73. return nil, err
  74. }
  75. hashedPwd, err := bcrypt.GenerateFromPassword([]byte(adminPassword), bcrypt.DefaultCost)
  76. if err != nil {
  77. return nil, err
  78. }
  79. var productId int64
  80. err = l.svcCtx.SysProductModel.TransactCtx(l.ctx, func(ctx context.Context, session sqlx.Session) error {
  81. result, err := l.svcCtx.SysProductModel.InsertWithTx(ctx, session, &productModel.SysProduct{
  82. Code: req.Code,
  83. Name: req.Name,
  84. AppKey: appKey,
  85. AppSecret: string(appSecretHash),
  86. Remark: req.Remark,
  87. Status: consts.StatusEnabled,
  88. CreateTime: now,
  89. UpdateTime: now,
  90. })
  91. if err != nil {
  92. return err
  93. }
  94. productId, _ = result.LastInsertId()
  95. userResult, err := l.svcCtx.SysUserModel.InsertWithTx(ctx, session, &userModel.SysUser{
  96. Username: adminUsername,
  97. Password: string(hashedPwd),
  98. Nickname: fmt.Sprintf("%s管理员", req.Name),
  99. IsSuperAdmin: consts.IsSuperAdminNo,
  100. MustChangePassword: consts.MustChangePasswordYes,
  101. Status: consts.StatusEnabled,
  102. CreateTime: now,
  103. UpdateTime: now,
  104. })
  105. if err != nil {
  106. return err
  107. }
  108. userId, _ := userResult.LastInsertId()
  109. _, err = l.svcCtx.SysProductMemberModel.InsertWithTx(ctx, session, &productmember.SysProductMember{
  110. ProductCode: req.Code,
  111. UserId: userId,
  112. MemberType: consts.MemberTypeAdmin,
  113. Status: consts.StatusEnabled,
  114. CreateTime: now,
  115. UpdateTime: now,
  116. })
  117. return err
  118. })
  119. if err != nil {
  120. if util.IsDuplicateEntryErr(err) {
  121. errMsg := err.Error()
  122. if strings.Contains(errMsg, "uk_code") || strings.Contains(errMsg, req.Code) {
  123. return nil, response.ErrConflict("产品编码已存在")
  124. }
  125. if strings.Contains(errMsg, "uk_username") || strings.Contains(errMsg, adminUsername) {
  126. return nil, response.ErrConflict(fmt.Sprintf("用户名 %s 已存在", adminUsername))
  127. }
  128. return nil, response.ErrConflict("数据冲突,请稍后重试")
  129. }
  130. return nil, err
  131. }
  132. return &types.CreateProductResp{
  133. Id: productId,
  134. Code: req.Code,
  135. AppKey: appKey,
  136. AppSecret: rawAppSecret,
  137. AdminUser: adminUsername,
  138. AdminPassword: adminPassword,
  139. }, nil
  140. }
  141. func generateRandomHex(byteLen int) (string, error) {
  142. b := make([]byte, byteLen)
  143. if _, err := rand.Read(b); err != nil {
  144. return "", fmt.Errorf("generate random bytes failed: %w", err)
  145. }
  146. return hex.EncodeToString(b), nil
  147. }