Subversion Repositories SmartDukaan

Rev

Rev 24984 | Rev 25009 | Go to most recent revision | Details | Compare with Previous | Last modification | View Log | RSS feed

Rev Author Line No. Line
21561 ashik.ali 1
package com.spice.profitmandi.web.controller;
21555 kshitij.so 2
 
25008 amit.gupta 3
import java.lang.reflect.Type;
23419 ashik.ali 4
import java.time.LocalDateTime;
22139 amit.gupta 5
import java.util.ArrayList;
25008 amit.gupta 6
import java.util.HashMap;
22111 ashik.ali 7
import java.util.HashSet;
8
import java.util.List;
25008 amit.gupta 9
import java.util.Map;
22111 ashik.ali 10
import java.util.Set;
24976 amit.gupta 11
import java.util.stream.Collectors;
22069 ashik.ali 12
 
21577 ashik.ali 13
import javax.servlet.http.Cookie;
21561 ashik.ali 14
import javax.servlet.http.HttpServletRequest;
21577 ashik.ali 15
import javax.servlet.http.HttpServletResponse;
21561 ashik.ali 16
 
23784 ashik.ali 17
import org.apache.logging.log4j.LogManager;
23568 govind 18
import org.apache.logging.log4j.Logger;
21561 ashik.ali 19
import org.springframework.beans.factory.annotation.Autowired;
22079 amit.gupta 20
import org.springframework.beans.factory.annotation.Value;
25008 amit.gupta 21
import org.springframework.http.HttpStatus;
22
import org.springframework.http.ResponseEntity;
21555 kshitij.so 23
import org.springframework.stereotype.Controller;
21987 kshitij.so 24
import org.springframework.transaction.annotation.Transactional;
21615 kshitij.so 25
import org.springframework.ui.Model;
21555 kshitij.so 26
import org.springframework.ui.ModelMap;
27
import org.springframework.web.bind.annotation.ModelAttribute;
24383 amit.gupta 28
import org.springframework.web.bind.annotation.PostMapping;
24016 amit.gupta 29
import org.springframework.web.bind.annotation.RequestBody;
21555 kshitij.so 30
import org.springframework.web.bind.annotation.RequestMapping;
31
import org.springframework.web.bind.annotation.RequestMethod;
21561 ashik.ali 32
import org.springframework.web.bind.annotation.RequestParam;
21555 kshitij.so 33
 
25008 amit.gupta 34
import com.google.gson.Gson;
35
import com.google.gson.reflect.TypeToken;
21561 ashik.ali 36
import com.spice.profitmandi.common.exception.ProfitMandiBusinessException;
24016 amit.gupta 37
import com.spice.profitmandi.common.model.Location;
21561 ashik.ali 38
import com.spice.profitmandi.common.model.ProfitMandiConstants;
25008 amit.gupta 39
import com.spice.profitmandi.common.web.client.RestClient;
24383 amit.gupta 40
import com.spice.profitmandi.dao.entity.auth.AuthUser;
22111 ashik.ali 41
import com.spice.profitmandi.dao.entity.dtr.Retailer;
23784 ashik.ali 42
import com.spice.profitmandi.dao.entity.dtr.Role;
22111 ashik.ali 43
import com.spice.profitmandi.dao.entity.dtr.User;
23271 ashik.ali 44
import com.spice.profitmandi.dao.entity.dtr.UserAccount;
22111 ashik.ali 45
import com.spice.profitmandi.dao.entity.dtr.UserRole;
24016 amit.gupta 46
import com.spice.profitmandi.dao.entity.fofo.FofoStore;
22111 ashik.ali 47
import com.spice.profitmandi.dao.enumuration.dtr.AccountType;
48
import com.spice.profitmandi.dao.enumuration.dtr.RoleType;
24383 amit.gupta 49
import com.spice.profitmandi.dao.repository.auth.AuthRepository;
24016 amit.gupta 50
import com.spice.profitmandi.dao.repository.dtr.FofoStoreRepository;
22111 ashik.ali 51
import com.spice.profitmandi.dao.repository.dtr.RetailerRepository;
23784 ashik.ali 52
import com.spice.profitmandi.dao.repository.dtr.RoleRepository;
22111 ashik.ali 53
import com.spice.profitmandi.dao.repository.dtr.UserAccountRepository;
54
import com.spice.profitmandi.dao.repository.dtr.UserRepository;
55
import com.spice.profitmandi.dao.repository.dtr.UserRoleRepository;
24383 amit.gupta 56
import com.spice.profitmandi.service.AuthService;
24976 amit.gupta 57
import com.spice.profitmandi.service.authentication.RoleManager;
58
import com.spice.profitmandi.service.user.RetailerService;
22139 amit.gupta 59
import com.spice.profitmandi.web.model.LoginDetails;
22069 ashik.ali 60
import com.spice.profitmandi.web.util.CookiesProcessor;
22111 ashik.ali 61
import com.spice.profitmandi.web.util.GoogleTokenUtil;
21574 ashik.ali 62
import com.spice.profitmandi.web.util.MVCResponseSender;
21561 ashik.ali 63
 
21555 kshitij.so 64
@Controller
22148 amit.gupta 65
@Transactional
21555 kshitij.so 66
public class LoginController {
67
 
23568 govind 68
	private static final Logger LOGGER = LogManager.getLogger(LoginController.class);
24016 amit.gupta 69
 
21561 ashik.ali 70
	@Autowired
22927 ashik.ali 71
	private GoogleTokenUtil googleTokenUtil;
24016 amit.gupta 72
 
21574 ashik.ali 73
	@Autowired
24976 amit.gupta 74
	private RoleManager roleManager;
24984 amit.gupta 75
 
24976 amit.gupta 76
	@Autowired
22927 ashik.ali 77
	private RetailerRepository retailerRepository;
24016 amit.gupta 78
 
22111 ashik.ali 79
	@Autowired
24976 amit.gupta 80
	private RetailerService retailerService;
24984 amit.gupta 81
 
24976 amit.gupta 82
	@Autowired
22927 ashik.ali 83
	private UserRepository userRepository;
24016 amit.gupta 84
 
22111 ashik.ali 85
	@Autowired
22927 ashik.ali 86
	private UserAccountRepository userAccountRepository;
24016 amit.gupta 87
 
22111 ashik.ali 88
	@Autowired
22927 ashik.ali 89
	private UserRoleRepository userRoleRepository;
24016 amit.gupta 90
 
22111 ashik.ali 91
	@Autowired
23784 ashik.ali 92
	private RoleRepository roleRepository;
24016 amit.gupta 93
 
23784 ashik.ali 94
	@Autowired
24016 amit.gupta 95
	private FofoStoreRepository fofoStoreRepository;
96
 
97
	@Autowired
22927 ashik.ali 98
	private MVCResponseSender mvcResponseSender;
25008 amit.gupta 99
 
100
	@Autowired
101
	private RestClient restClient;
24016 amit.gupta 102
 
21578 ashik.ali 103
	@Autowired
22927 ashik.ali 104
	private CookiesProcessor cookiesProcessor;
22079 amit.gupta 105
 
106
	@Value("${google.api.key}")
107
	private String googleApiKey;
24016 amit.gupta 108
 
24383 amit.gupta 109
	@Autowired
110
	private AuthService authService;
111
 
112
	@Autowired
113
	private AuthRepository authRepository;
114
 
21555 kshitij.so 115
	@RequestMapping(value = "/login", method = RequestMethod.GET)
24016 amit.gupta 116
	public String loginPage(HttpServletRequest request, Model model) throws Exception {
22088 amit.gupta 117
		LOGGER.info("Context Path is {}", request.getContextPath());
24016 amit.gupta 118
		try {
23784 ashik.ali 119
			LoginDetails fofoDetails = cookiesProcessor.getCookiesObject(request);
22139 amit.gupta 120
			LOGGER.info("Request session is already exist, should be redirect to as per roles assigned");
23784 ashik.ali 121
			String redirectUrl = null;
24016 amit.gupta 122
 
23784 ashik.ali 123
			Role roleRetailer = roleRepository.selectByName(RoleType.RETAILER.toString());
124
			Role roleFofo = roleRepository.selectByName(RoleType.RETAILER.toString());
125
			Role roleFofoAdmin = roleRepository.selectByName(RoleType.RETAILER.toString());
24016 amit.gupta 126
			if ((fofoDetails.getRoleIds().contains(roleRetailer.getId())
127
					&& fofoDetails.getRoleIds().contains(roleFofo.getId())
128
					|| (fofoDetails.getRoleIds().contains(roleFofoAdmin.getId())))) {
23784 ashik.ali 129
				redirectUrl = "/dashboard";
130
			} else {
131
				redirectUrl = "/login";
132
			}
133
			return "redirect:" + redirectUrl;
24016 amit.gupta 134
		} catch (ProfitMandiBusinessException profitMandiBusinessException) {
22079 amit.gupta 135
			model.addAttribute("googleApiKey", googleApiKey);
22086 amit.gupta 136
			model.addAttribute("appContextPath", request.getContextPath());
21577 ashik.ali 137
			return "login";
21574 ashik.ali 138
		}
21555 kshitij.so 139
	}
24016 amit.gupta 140
 
22155 amit.gupta 141
	@RequestMapping(value = "/", method = RequestMethod.GET)
24016 amit.gupta 142
	public String home() {
22860 ashik.ali 143
		return "redirect:/login";
22155 amit.gupta 144
	}
25008 amit.gupta 145
 
146
	@RequestMapping(value = "/mobileapp", method = RequestMethod.GET)
147
	public String mobileApp(HttpServletRequest request, Model model) throws Exception {
148
		LoginDetails fofoDetails = cookiesProcessor.getCookiesObject(request);
149
		if(roleManager.isAdmin(fofoDetails.getRoleIds())) {
150
			model.addAttribute("authToken", getToken(fofoDetails.getEmailId()));
151
		}
152
		return "mobileapp";
153
	}
24016 amit.gupta 154
 
25008 amit.gupta 155
	private String getToken(String emailId) throws Exception {
156
		Map<String, String> params = new HashMap<>();
157
		params.put("adminToken", "ecip$stgMay2014");
158
		params.put("emailId", emailId);
159
		String response = restClient.post("http://app.profitmandi.com:8080/user/admin", params, new HashMap<>());
160
		Type t = new TypeToken<ResponseEntity<Map<String,String>>>() {}.getType();
161
		ResponseEntity<Map<String,Object>> apiResponse = new Gson().fromJson(response, t);
162
		if(apiResponse.getStatusCode()==HttpStatus.OK) {
163
			return (String)apiResponse.getBody().get("token");
164
		} else {
165
			throw new Exception("Unauthorise access");
166
		}
167
 
168
	}
24976 amit.gupta 169
	@RequestMapping(value = "/login-as-partner", method = RequestMethod.GET)
170
	public String adminLogin(HttpServletRequest request, Model model, HttpServletResponse response,
171
			@RequestParam int fofoId) throws Exception {
172
		LoginDetails fofoDetails = cookiesProcessor.getCookiesObject(request);
24984 amit.gupta 173
		if (roleManager.isAdmin(fofoDetails.getRoleIds())) {
174
			int userId = userAccountRepository.selectUserIdByRetailerId(fofoId);
175
			User user = userRepository.selectById(userId);
176
			Set<Integer> roleIds = userRoleRepository
177
					.selectByUserId(userId).stream()
178
					.map(x -> x.getRoleId()).collect(Collectors.toSet());
24976 amit.gupta 179
			LoginDetails newFofoDetails = new LoginDetails();
180
			newFofoDetails.setFofoId(fofoId);
181
			newFofoDetails.setRoleIds(roleIds);
24984 amit.gupta 182
			newFofoDetails.setEmailId(user.getEmailId());
24981 amit.gupta 183
			model.addAttribute("response", true);
24983 amit.gupta 184
			this.addCookiesToResponse(newFofoDetails, request, response);
24976 amit.gupta 185
		} else {
186
			throw new ProfitMandiBusinessException("", "", "");
187
		}
24981 amit.gupta 188
		return "response";
24976 amit.gupta 189
	}
190
 
21555 kshitij.so 191
	@RequestMapping(value = "/login", method = RequestMethod.POST)
24016 amit.gupta 192
	public String login(HttpServletRequest request, HttpServletResponse response,
24383 amit.gupta 193
			@RequestParam(name = ProfitMandiConstants.TOKEN) String token,
194
			@RequestParam(name = ProfitMandiConstants.EMAIL_ID_OR_MOBILE_NUMBER, defaultValue = "") String emailIdOrMobileNumber,
195
			@RequestParam(name = "password", defaultValue = "") String password, Model model) throws Exception {
196
 
22139 amit.gupta 197
		LoginDetails fofoDetails = new LoginDetails();
23784 ashik.ali 198
		Set<Integer> roleIds = new HashSet<>();
199
		fofoDetails.setRoleIds(roleIds);
24383 amit.gupta 200
		String emailId = null;
24976 amit.gupta 201
		String name = null;
24016 amit.gupta 202
		try {
203
			// if role is retailer then FOFO_ID is retailerId else it is userid as normal
204
			// user's wont have retailer id.
24383 amit.gupta 205
			if (token == "") {
206
				if (authService.authenticate(emailIdOrMobileNumber, password)) {
207
					AuthUser authUser = authRepository.selectByEmailOrMobile(emailIdOrMobileNumber);
24976 amit.gupta 208
					if (authUser == null) {
209
						throw new ProfitMandiBusinessException("Authentication", "Email or Mobile",
210
								"Invalid Email Or Mobile");
24383 amit.gupta 211
					}
212
					emailId = authUser.getEmailId();
24976 amit.gupta 213
					name = authUser.getFirstName() + " " + authUser.getLastName();
24383 amit.gupta 214
					authUser.setLastLoginTimestamp(LocalDateTime.now());
215
					authRepository.persist(authUser);
216
				}
217
 
218
			} else {
219
				emailId = googleTokenUtil.getEmailId(token);
24976 amit.gupta 220
				if (ProfitMandiConstants.BLOCKED_EMAILS.contains(emailId)) {
24527 amit.gupta 221
				}
24383 amit.gupta 222
			}
22139 amit.gupta 223
			fofoDetails.setEmailId(emailId);
224
			fofoDetails.setFofoId(-1);
24016 amit.gupta 225
			// fofoDetails.setFofo(false);
22111 ashik.ali 226
			User user = null;
24016 amit.gupta 227
			try {
22111 ashik.ali 228
				user = userRepository.selectByEmailId(emailId);
24016 amit.gupta 229
			} catch (ProfitMandiBusinessException profitMandiBusinessException) {
23628 ashik.ali 230
				LOGGER.error("User not found with given emailId [{}]", emailId);
23203 ashik.ali 231
			}
24016 amit.gupta 232
			if (user == null) {
233
				try {
23203 ashik.ali 234
					user = userRepository.selectBySecondryEmailId(emailId);
24016 amit.gupta 235
				} catch (ProfitMandiBusinessException profitMandiBusinessException) {
23203 ashik.ali 236
					LOGGER.error("User not found with given emailId", profitMandiBusinessException);
24527 amit.gupta 237
					model.addAttribute("response", mvcResponseSender.createResponseString("RTLR_OK_1002", true,
24976 amit.gupta 238
							request.getContextPath() + "/login", "Email"));
24527 amit.gupta 239
					return "response";
23203 ashik.ali 240
				}
241
			}
24016 amit.gupta 242
			if (user != null) {
22139 amit.gupta 243
				fofoDetails.setFofoId(user.getId());
244
				try {
245
					List<UserRole> userRoles = userRoleRepository.selectByUserId(user.getId());
24016 amit.gupta 246
					for (int index = 0; index < userRoles.size(); index++) {
23784 ashik.ali 247
						roleIds.add(userRoles.get(index).getRoleId());
22139 amit.gupta 248
					}
23784 ashik.ali 249
					List<Role> roles = roleRepository.selectByIds(roleIds);
24016 amit.gupta 250
					for (Role role : roles) {
251
						if (role.getName().equals(RoleType.RETAILER.toString())) {
252
							UserAccount userAccounts = userAccountRepository.selectByUserIdType(user.getId(),
253
									AccountType.saholic);
23784 ashik.ali 254
							Retailer retailer = retailerRepository.selectById(userAccounts.getAccountKey());
255
							fofoDetails.setFofoId(retailer.getId());
24016 amit.gupta 256
							// fofoDetails.setFofo(retailer.isFofo());
23784 ashik.ali 257
						}
22166 amit.gupta 258
					}
24016 amit.gupta 259
				} catch (ProfitMandiBusinessException pmbe) {
22139 amit.gupta 260
					LOGGER.error("Data Inconsistent", pmbe);
261
				}
22111 ashik.ali 262
			}
23784 ashik.ali 263
			String redirectUrl = null;
24016 amit.gupta 264
 
23784 ashik.ali 265
			Role roleRetailer = roleRepository.selectByName(RoleType.RETAILER.toString());
266
			Role roleFofo = roleRepository.selectByName(RoleType.RETAILER.toString());
267
			Role roleFofoAdmin = roleRepository.selectByName(RoleType.RETAILER.toString());
24016 amit.gupta 268
 
269
			if ((fofoDetails.getRoleIds().contains(roleRetailer.getId())
270
					&& fofoDetails.getRoleIds().contains(roleFofo.getId())
271
					|| (fofoDetails.getRoleIds().contains(roleFofoAdmin.getId())))) {
23784 ashik.ali 272
				redirectUrl = "/dashboard";
273
			} else {
274
				redirectUrl = "/login";
275
			}
24016 amit.gupta 276
 
277
			if (!redirectUrl.equals("/login")) {
23419 ashik.ali 278
				user.setLoginTimestamp(LocalDateTime.now());
279
				userRepository.persist(user);
23173 ashik.ali 280
				this.addCookiesToResponse(fofoDetails, request, response);
24016 amit.gupta 281
				LOGGER.info("Requested token email_id is valid, user login to system, shoud be redirect to {}",
282
						redirectUrl);
283
				model.addAttribute("response", mvcResponseSender.createResponseString("RTLR_OK_1002", true,
24976 amit.gupta 284
						request.getContextPath() + redirectUrl, name));
24016 amit.gupta 285
			} else {
23173 ashik.ali 286
				LOGGER.error("Requested token email_id is not valid, please try to login");
24016 amit.gupta 287
				throw new ProfitMandiBusinessException(ProfitMandiConstants.EMAIL_ID, fofoDetails.getEmailId(),
288
						"RTLR_1000");
23173 ashik.ali 289
			}
21578 ashik.ali 290
			return "response";
24016 amit.gupta 291
		} catch (ProfitMandiBusinessException profitMandiBusinessException) {
21568 ashik.ali 292
			LOGGER.error("Error : ", profitMandiBusinessException);
24016 amit.gupta 293
			model.addAttribute("response",
294
					mvcResponseSender.createResponseString(profitMandiBusinessException.getCode(), false, "/error"));
21578 ashik.ali 295
			return "response";
21561 ashik.ali 296
		}
21555 kshitij.so 297
	}
24976 amit.gupta 298
 
24383 amit.gupta 299
	@PostMapping(value = "/forgetPassword")
24976 amit.gupta 300
	public String forgetPasswordPage(
301
			@RequestParam(name = ProfitMandiConstants.EMAIL_ID, defaultValue = "") String emailId, Model model)
302
			throws Exception {
24383 amit.gupta 303
		LOGGER.info(emailId);
304
		authService.resetPassword(emailId);
305
		model.addAttribute("response", mvcResponseSender.createResponseString(true));
306
		LOGGER.info("completed");
307
		return "response";
308
	}
24016 amit.gupta 309
 
310
	private void addCookiesToResponse(LoginDetails fofoDetails, HttpServletRequest request,
311
			HttpServletResponse response) {
23784 ashik.ali 312
		List<String> roleIds = new ArrayList<>();
24016 amit.gupta 313
 
314
		for (int roleId : fofoDetails.getRoleIds()) {
23784 ashik.ali 315
			roleIds.add(String.valueOf(roleId));
22139 amit.gupta 316
		}
23784 ashik.ali 317
		Cookie cookieRoleIds = new Cookie(ProfitMandiConstants.ROLE_IDS, String.join(",", roleIds));
318
		cookieRoleIds.setDomain(request.getServerName());
319
		cookieRoleIds.setPath(request.getContextPath());
24016 amit.gupta 320
 
22139 amit.gupta 321
		Cookie cookieFofoId = new Cookie(ProfitMandiConstants.FOFO_ID, String.valueOf(fofoDetails.getFofoId()));
322
		cookieFofoId.setDomain(request.getServerName());
22160 amit.gupta 323
		cookieFofoId.setPath(request.getContextPath());
24016 amit.gupta 324
 
22139 amit.gupta 325
		Cookie cookieEmailId = new Cookie(ProfitMandiConstants.EMAIL_ID, fofoDetails.getEmailId());
326
		cookieEmailId.setDomain(request.getServerName());
22160 amit.gupta 327
		cookieEmailId.setPath(request.getContextPath());
24984 amit.gupta 328
 
22139 amit.gupta 329
		response.addCookie(cookieFofoId);
330
		response.addCookie(cookieEmailId);
23784 ashik.ali 331
		response.addCookie(cookieRoleIds);
22139 amit.gupta 332
	}
24016 amit.gupta 333
 
22069 ashik.ali 334
	@RequestMapping(value = "/logout", method = RequestMethod.GET)
24016 amit.gupta 335
	public String logout(HttpServletRequest request, @ModelAttribute("model") ModelMap model,
336
			HttpServletResponse response) throws Exception {
337
		try {
23419 ashik.ali 338
			LoginDetails loginDetails = cookiesProcessor.getCookiesObject(request);
339
			User user = null;
24016 amit.gupta 340
			try {
23419 ashik.ali 341
				user = userRepository.selectByEmailId(loginDetails.getEmailId());
24016 amit.gupta 342
			} catch (ProfitMandiBusinessException profitMandiBusinessException) {
23419 ashik.ali 343
				LOGGER.error("User not found with given emailId", profitMandiBusinessException);
344
			}
24016 amit.gupta 345
			if (user == null) {
23419 ashik.ali 346
				user = userRepository.selectBySecondryEmailId(loginDetails.getEmailId());
347
			}
348
			user.setLogoutTimestamp(LocalDateTime.now());
349
			userRepository.persist(user);
22069 ashik.ali 350
			cookiesProcessor.removeCookies(request, response);
351
			LOGGER.info("Logout is successfull, should be redirect to /login");
22085 amit.gupta 352
			return "redirect:/login";
24016 amit.gupta 353
		} catch (ProfitMandiBusinessException profitMandiBusinessException) {
22069 ashik.ali 354
			LOGGER.info("Error occured while removing requested cookies, should be redirect to /login");
22085 amit.gupta 355
			return "redirect:/login";
22069 ashik.ali 356
		}
357
	}
24016 amit.gupta 358
 
359
	@RequestMapping(value = "/partner/location", method = RequestMethod.PUT)
360
	public String setLocation(HttpServletRequest request, Model model, @RequestBody Location location)
361
			throws Exception {
362
		LoginDetails loginDetails = cookiesProcessor.getCookiesObject(request);
363
		boolean response = true;
24976 amit.gupta 364
		try {
365
			FofoStore fs = fofoStoreRepository.selectByRetailerId(loginDetails.getFofoId());
366
			if (fs.getLatitude() == null) {
367
				fs.setLatitude(location.getLatitude());
368
				fs.setLongitude(location.getLongitude());
369
				fofoStoreRepository.persist(fs);
370
			}
371
			model.addAttribute("response", response);
372
		} catch (Exception e) {
24383 amit.gupta 373
			LOGGER.error("FofoStore Code not found of fofoId {}", loginDetails.getFofoId());
374
		}
24016 amit.gupta 375
		return "response";
376
	}
21555 kshitij.so 377
}