trigger-user-save.js 7.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228
  1. // https://docs.authing.co/v2/reference/sdk-for-node/management/UsersManagementClient.html
  2. const { ManagementClient } = require('authing-node-sdk')
  3. const managementClient = new ManagementClient({
  4. accessKeyId: '6686bffb373d06911e24a969',
  5. accessKeySecret: "4e978331675938d1bc81fb109e67d59a",
  6. host: 'https://textbook.u2-dev.hep.com.cn', // 应用的认证地址
  7. })
  8. /**
  9. * 用户创建前,创建用户至Authing
  10. * @desc 仅同步注册信息及密码,资料在afterSave中同步
  11. */
  12. export function defineUserBeforeSave(){
  13. Parse.Cloud.beforeSave("_User", async (request) => {
  14. request.object = appendUserACL(request.object)
  15. let user = request.object;
  16. // 仅首次注册/创建用户/修改密码有password属性,同步Authing账号
  17. let password = user?.get("password");
  18. if(password){
  19. let mobile = user?.get("mobile");
  20. let email = user?.get("email");
  21. let username = user?.get("username");
  22. let externalId = user?.id;
  23. let authingUserExists = await findUserByMobileEmailUserName(user)
  24. if(authingUserExists?.statusCode==404){ // 创建用户
  25. let newuser = {
  26. status:"Activated",
  27. }
  28. if(mobile){newuser.phone = mobile}
  29. if(email){newuser.email = email}
  30. if(username){newuser.username = username}
  31. if(externalId){newuser.externalId = externalId}
  32. result = await managementClient.createUser(newuser)
  33. }
  34. if(authingUserExists?.statusCode==200){
  35. let existsUser = authingUserExists?.data;
  36. try{
  37. let updateRes = await managementClient.updateUser({
  38. userId:existsUser?.userId,
  39. password:password,
  40. })
  41. // console.log(result)
  42. }catch(err){console.log(err)}
  43. }
  44. }
  45. });
  46. }
  47. function appendUserACL(user){
  48. let acl = user?.getACL();
  49. if(!acl) acl = new Parse.ACL();
  50. // 添加superadmin用户的可读可写权限
  51. acl.setWriteAccess("superadmin", true);
  52. acl.setReadAccess("superadmin", true);
  53. // 添加admin用户的可读可写权限
  54. acl.setWriteAccess("admin", true);
  55. acl.setReadAccess("admin", true);
  56. // 添加manager用户的可读可写权限
  57. acl.setWriteAccess("manager", true);
  58. acl.setReadAccess("manager", true);
  59. // 添加公共可读权限
  60. acl.setPublicReadAccess(true);
  61. user.setACL(acl);
  62. return user
  63. }
  64. /**
  65. * 用户删除前,删除用户从Authing
  66. */
  67. export function defineUserBeforeDelete(){
  68. Parse.Cloud.beforeDelete("_User", async (request) => {
  69. let user = request.object;
  70. // console.log(user.toJSON());
  71. // console.log(user?.get("password"))
  72. try{
  73. let authingUserExists = await findUserByMobileEmailUserName(user)
  74. if(authingUserExists?.statusCode==200){
  75. let existsUser = authingUserExists?.data;
  76. let deleteRes = await managementClient.deleteUsersBatch({
  77. // 替换用户 ID 数组
  78. userIds: [existsUser.userId],
  79. options: {
  80. userIdType: "user_id"
  81. }
  82. });
  83. }
  84. }catch(deleteErr){}
  85. });
  86. }
  87. /**
  88. * 用户保存后同步数据至Authing
  89. */
  90. export function defineUserAfterSave(){
  91. Parse.Cloud.afterSave("_User", async (request) => {
  92. // console.log("save _User",request?.object?.id)
  93. let query = new Parse.Query("Profile");
  94. query.equalTo("user",request?.object?.id)
  95. let profile = await query.first();
  96. syncUserProfileToAuthing(request?.object,profile)
  97. });
  98. Parse.Cloud.afterSave("Profile", async (request) => {
  99. // console.log("save Profile",request?.object?.id)
  100. let query = new Parse.Query("Profile");
  101. query.include("user");
  102. profile = await query.get(request?.object?.id);
  103. syncUserProfileToAuthing(profile.get("user"),profile)
  104. });
  105. }
  106. /**
  107. * 查询用户
  108. * @param {*} user
  109. * @returns
  110. * 不存在:
  111. * {
  112. statusCode: 404,
  113. apiCode: 2004,
  114. message: '用户不存在',
  115. requestId: 'e59cb407-f2d9-4bd8-ac93-d2dbc8d6ab72'
  116. }
  117. {
  118. statusCode: 200,
  119. message: '',
  120. data: {
  121. userId: '669676e5a3a9ac870bfff2a3',
  122. createdAt: '2024-07-16T13:34:29.789Z',
  123. updatedAt: '2024-07-16T13:34:29.789Z',
  124. status: 'Activated'
  125. }
  126. }
  127. */
  128. async function findUserByMobileEmailUserName(user){
  129. let mobile = user?.get("mobile");
  130. let email = user?.get("email");
  131. let username = user?.get("username");
  132. let externalId = user?.id;
  133. let result;
  134. if(email){
  135. try{
  136. result = await managementClient.getUser({userIdType:`email`,userId:email})
  137. // console.log(email,result)
  138. }catch(err){}
  139. }
  140. if(mobile&&(!result || result?.statusCode==404)){
  141. try{
  142. result = await managementClient.getUser({userIdType:`phone`,userId:mobile})
  143. // console.log(mobile,result)
  144. }catch(err){}
  145. }
  146. if(username&&(!result || result?.statusCode==404)){
  147. try{
  148. result = await managementClient.getUser({userIdType:`username`,userId:username})
  149. // console.log("username",username,result)
  150. }catch(err){}
  151. }
  152. if(externalId&&(!result || result?.statusCode==404)){
  153. try{
  154. result = await managementClient.getUser({userIdType:`external_id`,userId:externalId})
  155. // console.log(externalId,result)
  156. }catch(err){}
  157. }
  158. return result
  159. }
  160. async function syncUserProfileToAuthing(user,profile){
  161. if(!user?.id) return
  162. let userInfo = user.toJSON();
  163. userInfo = fixJsonFileds(userInfo)
  164. if(profile?.id){
  165. let pjson = profile.toJSON();
  166. delete pjson.objectId;
  167. pjson= fixJsonFileds(pjson)
  168. Object.keys(pjson).forEach(key=>{
  169. userInfo[key] = pjson[key]
  170. })
  171. }
  172. // 映射对应字段
  173. userInfo.company = userInfo.companyName
  174. delete userInfo.companyName
  175. userInfo.userType = userInfo.identity
  176. delete userInfo.identity
  177. userInfo.userId = userInfo.objectId
  178. let authingUserExists = await findUserByMobileEmailUserName(user)
  179. if(authingUserExists?.statusCode==200){
  180. let existsUser = authingUserExists?.data;
  181. userInfo.userId = existsUser.userId
  182. }
  183. delete userInfo.objectId
  184. userInfo.identifyStatus = userInfo.accountState
  185. // 自定义数据全量同步
  186. userInfo.customData = JSON.parse(JSON.stringify(userInfo))
  187. // {
  188. // identifyStatus : userInfo.accountState
  189. // }
  190. // console.log(userInfo)
  191. // 同步数据至Authing用户池
  192. let result
  193. try{
  194. result = await managementClient.updateUser(userInfo)
  195. // console.log(result)
  196. }catch(err){console.log(err)}
  197. }
  198. function fixJsonFileds(json){
  199. // Parse独有关系数据
  200. delete json.ACL
  201. delete json.className
  202. delete json.sessionToken
  203. delete json.company
  204. delete json.user
  205. delete json.createdAt
  206. delete json.updatedAt
  207. // 来自Authing的数据
  208. delete json?.loginsCount
  209. delete json?.lastIP
  210. delete json?.lastLogin
  211. return json
  212. }