refreshTokenLogic.go 2.2 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879
  1. package pub
  2. import (
  3. "context"
  4. "strings"
  5. "time"
  6. "perms-system-server/internal/consts"
  7. authHelper "perms-system-server/internal/logic/auth"
  8. "perms-system-server/internal/response"
  9. "perms-system-server/internal/svc"
  10. "perms-system-server/internal/types"
  11. "github.com/zeromicro/go-zero/core/logx"
  12. )
  13. type RefreshTokenLogic struct {
  14. logx.Logger
  15. ctx context.Context
  16. svcCtx *svc.ServiceContext
  17. }
  18. func NewRefreshTokenLogic(ctx context.Context, svcCtx *svc.ServiceContext) *RefreshTokenLogic {
  19. return &RefreshTokenLogic{
  20. Logger: logx.WithContext(ctx),
  21. ctx: ctx,
  22. svcCtx: svcCtx,
  23. }
  24. }
  25. func (l *RefreshTokenLogic) RefreshToken(req *types.RefreshTokenReq) (resp *types.LoginResp, err error) {
  26. tokenStr := strings.TrimPrefix(req.Authorization, "Bearer ")
  27. if tokenStr == "" || tokenStr == req.Authorization {
  28. return nil, response.ErrUnauthorized("refreshToken格式错误")
  29. }
  30. claims, err := authHelper.ParseRefreshToken(tokenStr, l.svcCtx.Config.Auth.RefreshSecret)
  31. if err != nil {
  32. return nil, response.ErrUnauthorized("refreshToken无效或已过期")
  33. }
  34. productCode := claims.ProductCode
  35. if req.ProductCode != "" && req.ProductCode != productCode {
  36. return nil, response.ErrBadRequest("刷新令牌不允许切换产品")
  37. }
  38. ud := l.svcCtx.UserDetailsLoader.Load(l.ctx, claims.UserId, productCode)
  39. if ud.Status != consts.StatusEnabled {
  40. return nil, response.ErrForbidden("账号已被冻结")
  41. }
  42. accessToken, err := authHelper.GenerateAccessToken(
  43. l.svcCtx.Config.Auth.AccessSecret,
  44. l.svcCtx.Config.Auth.AccessExpire,
  45. ud.UserId, ud.Username, ud.ProductCode, ud.MemberType, ud.Perms,
  46. )
  47. if err != nil {
  48. return nil, err
  49. }
  50. return &types.LoginResp{
  51. AccessToken: accessToken,
  52. RefreshToken: tokenStr,
  53. Expires: time.Now().Unix() + l.svcCtx.Config.Auth.AccessExpire,
  54. UserInfo: types.UserInfo{
  55. UserId: ud.UserId,
  56. Username: ud.Username,
  57. Nickname: ud.Nickname,
  58. Avatar: ud.Avatar,
  59. Email: ud.Email,
  60. Phone: ud.Phone,
  61. IsSuperAdmin: ud.IsSuperAdminRaw,
  62. MustChangePassword: ud.MustChangePwdRaw,
  63. MemberType: ud.MemberType,
  64. Perms: ud.Perms,
  65. },
  66. }, nil
  67. }