GetUserList.js 3.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128
  1. const API = require("../../../lib/API")
  2. const db = require("../../../plugin/DataBase/db")
  3. const AccessControl = require("../../../lib/AccessControl")
  4. const { BaseStdResponse } = require("../../../BaseStdResponse")
  5. class GetUserList extends API {
  6. constructor() {
  7. super();
  8. this.setPath('/Admin/User/GetUserList')
  9. this.setMethod('get')
  10. }
  11. async onRequest(req, res) {
  12. let { uuid, session, email, user_uuid, username, nickname, pagesize, current } = req.query
  13. if ([uuid, session, pagesize, current].some(value => value === '' || value === null || value === undefined))
  14. return res.json({
  15. ...BaseStdResponse.MISSING_PARAMETER
  16. })
  17. // 校验分页参数
  18. if (isNaN(pagesize) || pagesize <= 0 || pagesize > 50) {
  19. return res.json({
  20. ...BaseStdResponse.ERR,
  21. msg: '参数错误'
  22. })
  23. }
  24. if (isNaN(current) || current <= 0) {
  25. return res.json({
  26. ...BaseStdResponse.ERR,
  27. msg: '参数错误'
  28. })
  29. }
  30. // 检查 session
  31. if (!await AccessControl.checkSession(uuid, session))
  32. return res.status(401).json({
  33. ...BaseStdResponse.ACCESS_DENIED
  34. })
  35. // 检查权限
  36. let permission = await AccessControl.getPermission(uuid)
  37. if (!permission.includes("admin") && !permission.includes("service"))
  38. return res.json({
  39. ...BaseStdResponse.PERMISSION_DENIED
  40. })
  41. // 计算分页的 offset
  42. const offset = (current - 1) * pagesize
  43. let sql = `
  44. SELECT
  45. uuid, username, nickname, email, registTime, avatar, lepao_count, social_type, lastTime
  46. FROM
  47. users
  48. WHERE
  49. 1 = 1
  50. `
  51. let countSql = `
  52. SELECT COUNT(*) AS total
  53. FROM users
  54. WHERE 1 = 1
  55. `
  56. let params = []
  57. let countParams = []
  58. if (user_uuid) {
  59. sql += ` AND uuid = ?`
  60. countSql += ` AND uuid = ?`
  61. params.push(user_uuid)
  62. countParams.push(user_uuid)
  63. }
  64. if (email) {
  65. sql += ` AND email = ?`
  66. countSql += ` AND email = ?`
  67. params.push(email)
  68. countParams.push(email)
  69. }
  70. if (username) {
  71. sql += ` AND username LIKE ?`
  72. countSql += ` AND username LIKE ?`
  73. params.push(`%${username}%`)
  74. countParams.push(`%${username}%`)
  75. }
  76. if (nickname) {
  77. sql += ` AND nickname LIKE ?`
  78. countSql += ` AND nickname LIKE ?`
  79. params.push(`%${nickname}%`)
  80. countParams.push(`%${nickname}%`)
  81. }
  82. sql += `
  83. ORDER BY id DESC
  84. LIMIT ? OFFSET ?;
  85. `
  86. params.push(String(pagesize), String(offset))
  87. let rows = await db.query(sql, params)
  88. let countResult = await db.query(countSql, countParams)
  89. if (!rows || !countResult)
  90. return res.json({
  91. ...BaseStdResponse.MISSING_FILE,
  92. msg: '获取用户数据失败!'
  93. })
  94. let total = countResult[0].total
  95. res.json({
  96. ...BaseStdResponse.OK,
  97. data: rows,
  98. pagination: {
  99. current,
  100. pagesize,
  101. total
  102. }
  103. })
  104. }
  105. }
  106. module.exports.GetUserList = GetUserList