control.php 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500
  1. <?php
  2. /**
  3. * 系统后台公共方法
  4. *
  5. * 包括系统后台父类
  6. *
  7. ***/
  8. defined('InShopNC') or exit('Access Invalid!');
  9. require_once(BASE_HELPER_PATH . '/mtopcard/mtopcard.php');
  10. require_once(BASE_HELPER_PATH . '/refill/RefillFactory.php');
  11. class SystemControl
  12. {
  13. const STATE_TEXT = ['使用中', '已禁用'];
  14. const THIRD_PRODUCT_TYPE = [
  15. mtopcard\ThirdOnlineProduct => '在线产品',
  16. mtopcard\ThirdElectricProduct => '电费产品',
  17. mtopcard\ThirdSMSProduct => '短信产品'
  18. ];
  19. /**
  20. * 管理员资料 name id group
  21. */
  22. protected $admin_info;
  23. /**
  24. * 权限内容
  25. */
  26. protected $permission;
  27. protected function __construct()
  28. {
  29. Language::read('common,layout');
  30. /**
  31. * 验证用户是否登录
  32. * $admin_info 管理员资料 name id
  33. */
  34. $this->admin_info = $this->systemLogin();
  35. if ($this->admin_info['id'] != 1){
  36. // 验证权限
  37. $this->checkPermission();
  38. }
  39. //转码 防止GBK下用ajax调用时传汉字数据出现乱码
  40. if (($_GET['branch']!='' || $_GET['op']=='ajax') && strtoupper(CHARSET) == 'GBK'){
  41. $_GET = Language::getGBK($_GET);
  42. }
  43. }
  44. /**
  45. * 取得当前管理员信息
  46. *
  47. * @param
  48. * @return 数组类型的返回结果
  49. */
  50. protected final function getAdminInfo(){
  51. return $this->admin_info;
  52. }
  53. /**
  54. * 系统后台登录验证
  55. *
  56. * @param
  57. * @return array 数组类型的返回结果
  58. */
  59. protected final function systemLogin(){
  60. //取得cookie内容,解密,和系统匹配
  61. $user = unserialize(decrypt(cookie('sys_key'),MD5_KEY));
  62. if (!key_exists('gid',(array)$user) || !isset($user['sp']) || (empty($user['name']) || empty($user['id']))){
  63. @header('Location: index.php?act=login&op=login');exit;
  64. }else {
  65. $this->systemSetKey($user);
  66. }
  67. return $user;
  68. }
  69. /**
  70. * 系统后台 会员登录后 将会员验证内容写入对应cookie中
  71. *
  72. * @param string $name 用户名
  73. * @param int $id 用户ID
  74. * @return bool 布尔类型的返回结果
  75. */
  76. protected final function systemSetKey($user){
  77. setNcCookie('sys_key',encrypt(serialize($user),MD5_KEY),3600,'',null);
  78. }
  79. /**
  80. * 验证当前管理员权限是否可以进行操作
  81. *
  82. * @param string $link_nav
  83. * @return
  84. */
  85. protected final function checkPermission($link_nav = null){
  86. if ($this->admin_info['sp'] == 1) return true;
  87. $act = $_GET['act']?$_GET['act']:$_POST['act'];
  88. $op = $_GET['op']?$_GET['op']:$_POST['op'];
  89. if (empty($this->permission)){
  90. $gadmin = Model('gadmin')->getby_gid($this->admin_info['gid']);
  91. $permission = decrypt($gadmin['limits'],MD5_KEY.md5($gadmin['gname']));
  92. $this->permission = $permission = explode('|',$permission);
  93. }else{
  94. $permission = $this->permission;
  95. }
  96. //显示隐藏小导航,成功与否都直接返回
  97. if (is_array($link_nav)){
  98. if (!in_array("{$link_nav['act']}.{$link_nav['op']}",$permission) && !in_array($link_nav['act'],$permission)){
  99. return false;
  100. }else{
  101. return true;
  102. }
  103. }
  104. //以下几项不需要验证
  105. $tmp = array('index','dashboard','login','common','cms_base');
  106. if (in_array($act,$tmp)) return true;
  107. if (in_array($act,$permission) || in_array("$act.$op",$permission)){
  108. return true;
  109. }else{
  110. $extlimit = array('ajax','export_step1');
  111. if (in_array($op,$extlimit) && (in_array($act,$permission) || strpos(serialize($permission),'"'.$act.'.'))){
  112. return true;
  113. }
  114. //带前缀的都通过
  115. foreach ($permission as $v) {
  116. if (!empty($v) && strpos("$act.$op",$v.'_') !== false) {
  117. return true;break;
  118. }
  119. }
  120. }
  121. showMessage(Language::get('nc_assign_right'),'','html','succ',0);
  122. }
  123. /**
  124. * 取得后台菜单
  125. *
  126. * @param string $permission
  127. * @return
  128. */
  129. protected final function getNav($permission = '',&$top_nav,&$left_nav,&$map_nav){
  130. $act = $_GET['act']?$_GET['act']:$_POST['act'];
  131. $op = $_GET['op']?$_GET['op']:$_POST['op'];
  132. if ($this->admin_info['sp'] != 1 && empty($this->permission)){
  133. $gadmin = Model('gadmin')->getby_gid($this->admin_info['gid']);
  134. $permission = decrypt($gadmin['limits'],MD5_KEY.md5($gadmin['gname']));
  135. $this->permission = $permission = explode('|',$permission);
  136. }
  137. Language::read('common');
  138. $lang = Language::getLangContent();
  139. $array = require(BASE_PATH.'/include/menu.php');
  140. $array = $this->parseMenu($array);
  141. //管理地图
  142. $map_nav = $array['left'];
  143. unset($map_nav[0]);
  144. $model_nav = "<li><a class=\"link actived\" id=\"nav__nav_\" href=\"javascript:;\" onclick=\"openItem('_args_');\"><span>_text_</span></a></li>\n";
  145. $top_nav = '';
  146. //顶部菜单
  147. foreach ($array['top'] as $k=>$v) {
  148. $v['nav'] = $v['args'];
  149. $top_nav .= str_ireplace(array('_args_','_text_','_nav_'),$v,$model_nav);
  150. }
  151. $top_nav = str_ireplace("\n<li><a class=\"link actived\"","\n<li><a class=\"link\"",$top_nav);
  152. //左侧菜单
  153. $model_nav = "
  154. <ul id=\"sort__nav_\">
  155. <li>
  156. <dl>
  157. <dd>
  158. <ol>
  159. list_body
  160. </ol>
  161. </dd>
  162. </dl>
  163. </li>
  164. </ul>\n";
  165. $left_nav = '';
  166. foreach ($array['left'] as $k=>$v) {
  167. $left_nav .= str_ireplace(array('_nav_'),array($v['nav']),$model_nav);
  168. $model_list = "<li nc_type='_pkey_'><a href=\"JavaScript:void(0);\" name=\"item__opact_\" id=\"item__opact_\" onclick=\"openItem('_args_');\">_text_</a></li>";
  169. $tmp_list = '';
  170. $current_parent = '';//当前父级key
  171. foreach ($v['list'] as $key=>$value) {
  172. $model_list_parent = '';
  173. $args = explode(',',$value['args']);
  174. if (!empty($value['parent'])){
  175. if (empty($current_parent) || $current_parent != $value['parent']){
  176. $model_list_parent = "<li nc_type='parentli' dataparam='{$value['parent']}'><dt>{$value['parenttext']}</dt><dd style='display:block;'></dd></li>";
  177. }
  178. $current_parent = $value['parent'];
  179. }
  180. $value['op'] = $args[0];
  181. $value['act'] = $args[1];
  182. //$tmp_list .= str_ireplace(array('_args_','_text_','_op_'),$value,$model_list);
  183. $tmp_list .= str_ireplace(['_args_','_text_','_opact_','_pkey_'],
  184. [$value['args'],$value['text'],$value['op'],$value['act'],$value['parent']],
  185. $model_list_parent.$model_list);
  186. }
  187. $left_nav = str_replace('list_body',$tmp_list,$left_nav);
  188. }
  189. }
  190. /**
  191. * 过滤掉无权查看的菜单
  192. *
  193. * @param array $menu
  194. * @return array
  195. */
  196. private final function parseMenu($menu = array()){
  197. if ($this->admin_info['sp'] == 1) return $menu;
  198. foreach ($menu['left'] as $k=>$v) {
  199. foreach ($v['list'] as $xk=>$xv) {
  200. $tmp = explode(',',$xv['args']);
  201. //以下几项不需要验证
  202. $except = array('index','dashboard','login','common');
  203. if (in_array($tmp[1],$except)) continue;
  204. if (!in_array($tmp[1],$this->permission) && !in_array($tmp[1].'.'.$tmp[0],$this->permission)){
  205. unset($menu['left'][$k]['list'][$xk]);
  206. }
  207. }
  208. if (empty($menu['left'][$k]['list'])) {
  209. unset($menu['top'][$k]);unset($menu['left'][$k]);
  210. }
  211. }
  212. return $menu;
  213. }
  214. /**
  215. * 取得顶部小导航
  216. *
  217. * @param array $links
  218. * @param 当前页 $actived
  219. */
  220. protected final function sublink($links = array(), $actived = '', $file='index.php'){
  221. $linkstr = '';
  222. foreach ($links as $k=>$v) {
  223. parse_str($v['url'],$array);
  224. if (!$this->checkPermission($array)) continue;
  225. $href = ($array['op'] == $actived ? null : "href=\"{$file}?{$v['url']}\"");
  226. $class = ($array['op'] == $actived ? "class=\"current\"" : null);
  227. $lang = L($v['lang']);
  228. $linkstr .= sprintf('<li><a %s %s><span>%s</span></a></li>',$href,$class,$lang);
  229. }
  230. return "<ul class=\"tab-base\">{$linkstr}</ul>";
  231. }
  232. /**
  233. * 记录系统日志
  234. *
  235. * @param $lang 日志语言包
  236. * @param $state 1成功0失败null不出现成功失败提示
  237. * @param $admin_name
  238. * @param $admin_id
  239. */
  240. protected final function log($lang = '', $state = 1, $admin_name = '', $admin_id = 0){
  241. if (!C('sys_log') || !is_string($lang)) return;
  242. if ($admin_name == ''){
  243. $admin = unserialize(decrypt(cookie('sys_key'),MD5_KEY));
  244. $admin_name = $admin['name'];
  245. $admin_id = $admin['id'];
  246. }
  247. $data = array();
  248. if (is_null($state)){
  249. $state = null;
  250. }else{
  251. // $state = $state ? L('nc_succ') : L('nc_fail');
  252. $state = $state ? '' : L('nc_fail');
  253. }
  254. $data['content'] = $lang.$state;
  255. $data['admin_name'] = $admin_name;
  256. $data['createtime'] = time();
  257. $data['admin_id'] = $admin_id;
  258. $data['ip'] = getIp();
  259. $data['url'] = $_REQUEST['act'].'&'.$_REQUEST['op'];
  260. return Model('admin_log')->insert($data);
  261. }
  262. /**
  263. * 添加到任务队列
  264. *
  265. * @param array $goods_array
  266. * @param boolean $ifdel 是否删除以原记录
  267. */
  268. protected function addcron($data = array(), $ifdel = false) {
  269. $model_cron = Model('cron');
  270. if (isset($data[0])) { // 批量插入
  271. $where = array();
  272. foreach ($data as $k => $v) {
  273. if (isset($v['content'])) {
  274. $data[$k]['content'] = serialize($v['content']);
  275. }
  276. // 删除原纪录条件
  277. if ($ifdel) {
  278. $where[] = '(type = ' . $data['type'] . ' and exeid = ' . $data['exeid'] . ')';
  279. }
  280. }
  281. // 删除原纪录
  282. if ($ifdel) {
  283. $model_cron->delCron(implode(',', $where));
  284. }
  285. $model_cron->addCronAll($data);
  286. } else { // 单条插入
  287. if (isset($data['content'])) {
  288. $data['content'] = serialize($data['content']);
  289. }
  290. // 删除原纪录
  291. if ($ifdel) {
  292. $model_cron->delCron(array('type' => $data['type'], 'exeid' => $data['exeid']));
  293. }
  294. $model_cron->addCron($data);
  295. }
  296. }
  297. protected function scard_type(int $card_type)
  298. {
  299. if ($card_type == 1) { //中石油
  300. return '中石油';
  301. } elseif ($card_type == 2) { //中石化
  302. return '中石化';
  303. } elseif ($card_type == 4) { //中国移动
  304. return '中国移动';
  305. } elseif ($card_type == 5) { //中国联通
  306. return '中国联通';
  307. } elseif ($card_type == 6) { //中国电信
  308. return '中国电信';
  309. } elseif ($card_type == 7) { //中国电信
  310. return '增值业务';
  311. } else {
  312. return 'unknown';
  313. }
  314. }
  315. protected function quality_format($quality,$card_type) {
  316. global $config;
  317. $text = [
  318. mtopcard\PetroChinaCard => $config['oil_quality_text'],
  319. mtopcard\SinopecCard => $config['oil_quality_text'],
  320. mtopcard\ChinaMobileCard => $config['phone_quality_text'],
  321. mtopcard\ChinaUnicomCard => $config['phone_quality_text'],
  322. mtopcard\ChinaTelecomCard => $config['phone_quality_text']
  323. ];
  324. return $text[$card_type][$quality] ?? $quality;
  325. }
  326. protected function elapse_time($seconds)
  327. {
  328. $minutes = intval($seconds / 60);
  329. $second = intval($seconds % 60);
  330. if ($minutes >= 60) {
  331. $minute = $minutes % 60;
  332. $hours = intval($minutes / 60);
  333. $result = "{$minute}m{$second}s";
  334. } elseif ($minutes > 0) {
  335. $result = "{$minutes}m{$second}s";
  336. } else {
  337. $result = "{$second}s";
  338. }
  339. if (isset($hours)) {
  340. $result = "{$hours}h{$minute}m";
  341. }
  342. return $result;
  343. }
  344. protected function check_fetch_order($order_ids): array
  345. {
  346. $mod = Model('fetch_order');
  347. $cond['order_id'] = ['in', $order_ids];
  348. $res = $mod->getFetchOrderList($cond);
  349. return array_column($res, 'order_id');
  350. }
  351. protected function merchants($condition = [])
  352. {
  353. $items = Model('')->table('merchant')->where($condition)->limit(1000)->order('company_name asc')->select();
  354. foreach ($items as &$item) {
  355. $item['pinyin'] = Pinyin::getPinyin(strtolower($item['company_name']));
  356. $item['alpha'] = substr($item['pinyin'],0,1);
  357. }
  358. $asc = function ($l,$r)
  359. {
  360. $lp = $l['pinyin'];
  361. $rp = $r['pinyin'];
  362. if(empty($lp) && empty($rp)) {
  363. $lo = $l['name'];
  364. $ro = $r['name'];
  365. return strcmp($lo,$ro);
  366. }
  367. else {
  368. return strcmp($lp,$rp);
  369. }
  370. };
  371. usort($items,$asc);
  372. return $items;
  373. }
  374. protected function providers($condition = [])
  375. {
  376. $items = Model('')->table('refill_provider,store')
  377. ->field('refill_provider.*,store.store_name')
  378. ->join('inner')
  379. ->on('store.store_id=refill_provider.store_id')
  380. ->where($condition)
  381. ->order('opened asc, name asc')
  382. ->limit(1000)
  383. ->select();
  384. foreach ($items as &$item) {
  385. $item['pinyin'] = Pinyin::getPinyin($item['store_name']);
  386. }
  387. $asc = function ($l,$r)
  388. {
  389. $lo = $l['opened'];
  390. $ro = $r['opened'];
  391. $lp = $l['pinyin'];
  392. $rp = $r['pinyin'];
  393. if($lo != $ro) {
  394. return $lo < $ro ? -1 : 1;
  395. }
  396. else {
  397. return strcmp($lp,$rp);
  398. }
  399. };
  400. usort($items,$asc);
  401. return $items;
  402. }
  403. protected function credit_save_money($money, $operatetype, $member_id, $bz = '')
  404. {
  405. $obj_member = Model('member');
  406. $member_id = intval($member_id);
  407. $member_info = $obj_member->getMemberInfo(['member_id' => $member_id], '*', true);
  408. $admininfo = $this->getAdminInfo();
  409. $bz = $bz == '' ? '管理员更改客户授信' : $bz;
  410. switch ($operatetype) {
  411. case 'add':
  412. $admin_act = "sys_add_money";
  413. $log_msg = "管理员【{$admininfo['name']}】操作会员{$member_id}余额:【{$member_info['member_name']}】,预存款【增加】,金额为{$money}。备注:{$bz}。";
  414. break;
  415. case 'del':
  416. $admin_act = "sys_del_money";
  417. $log_msg = "管理员【{$admininfo['name']}】操作会员{$member_id}余额:【{$member_info['member_name']}】,预存款【减少】,金额为{$money}。备注:{$bz}。";
  418. break;
  419. default:
  420. return [false, '调节类型错误'];
  421. }
  422. $model_pd = Model('predeposit');
  423. //调节预存款
  424. $data = [];
  425. $data['member_id'] = $member_info['member_id'];
  426. $data['member_name'] = $member_info['member_name'];
  427. $data['amount'] = $money;
  428. $data['order_sn'] = '';
  429. $data['admin_name'] = $admininfo['name'];
  430. $data['pdr_sn'] = '';
  431. $data['lg_desc'] = $bz;
  432. $isRefill = $model_pd->isRefill($data['member_id']);
  433. $model_pd->changePd($admin_act, $data,$isRefill);
  434. $this->log($log_msg, 1);
  435. return [true, 'success'];
  436. }
  437. protected function OrderDataFormat($order_list,$merchant_list)
  438. {
  439. foreach ($merchant_list as $value) {
  440. $merchants[$value['mchid']] = $value;
  441. }
  442. foreach ($order_list as $order_id => $order)
  443. {
  444. $order_list[$order_id]['card_type_text'] = $this->scard_type($order['card_type']);
  445. $order_list[$order_id]['mch_name'] = $merchants[$order['mchid']]['company_name'];
  446. if ($order['notify_time'] > 0) {
  447. $diff_time = $order['notify_time'] - $order['order_time'];
  448. } else {
  449. $diff_time = time() - $order['order_time'];
  450. }
  451. $order_list[$order_id]['diff_time_text'] = $this->elapse_time($diff_time);
  452. $order_list[$order_id]['diff_time'] = $diff_time;
  453. $order_list[$order_id]['quality_text'] = $this->quality_format($order['quality'],$order['card_type']);
  454. $order_list[$order_id]['org_quality_text'] = $this->quality_format($order['org_quality'],$order['card_type']);
  455. }
  456. return $order_list;
  457. }
  458. }