You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

EepController.php 3.9KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145
  1. <?php
  2. namespace App\Http\Controllers\Auth;
  3. use Illuminate\Http\Request;
  4. use App\Http\Controllers\Controller;
  5. use Illuminate\Support\Facades\Auth;
  6. use Illuminate\Support\Facades\Log;
  7. use App\Staff;
  8. use App\Model\StaffDetail;
  9. Use Hash;
  10. use Carbon\Carbon;
  11. use Gate;
  12. class EepController extends Controller
  13. {
  14. //
  15. public function get_guard(){
  16. if(Auth::guard('eephr')->check())
  17. {return "eephr";}
  18. elseif(Auth::guard('eepsales')->check()){
  19. {return "eepsales";}
  20. }
  21. }
  22. public function showFormAdminEep(){
  23. return view('login_eep');
  24. }
  25. public function encryptPassword($action, $string) {
  26. $output = false;
  27. $encrypt_method = "AES-256-CBC";
  28. $secret_key = '28472B4B6250655368566D5970337336';
  29. $secret_iv = md5(md5($string)); //'This is my secret iv';
  30. // hash
  31. $key = hash('sha256', $secret_key);
  32. $iv = substr(hash('sha256', $secret_iv), 0, 16);
  33. if ( $action == 'encrypt' ) {
  34. $output = openssl_encrypt($string, $encrypt_method, $key, 0, $iv);
  35. $output = base64_encode($output);
  36. } else if( $action == 'decrypt' ) {
  37. $output = openssl_decrypt(base64_decode($string), $encrypt_method, $key, 0, $iv);
  38. }
  39. return $output;
  40. }
  41. public function requestLoginAdminEep(Request $request) {
  42. $this->validate($request, [
  43. 'email' => 'required|email'
  44. // 'password' => 'required|min:6'
  45. ]);
  46. $user = '';
  47. $roles_access = '';
  48. if($request->roles == 'eephr'){
  49. $roles_access = 'Allo HR';
  50. }else if($request->roles == 'eepsales'){
  51. $roles_access = 'Sales';
  52. }
  53. try {
  54. $message = trans('messages.invalid_login_credentials');
  55. $rememberMe = false;
  56. $user = Staff::where('email', $request->email)->where('roles_access',$roles_access)->first();
  57. if (!empty($user)) {
  58. if($this->encryptPassword('encrypt', $request->password) == $user->password){
  59. // Update last_login & last ip
  60. $user->last_login_at = Carbon::now(new \DateTimeZone('Asia/Kuala_Lumpur'))->toDateTimeString();
  61. $user->last_login_ip = $request->getClientIp();
  62. $user->save();
  63. if($user->roles_access == "Allo HR"){
  64. Auth::guard('eephr')->loginUsingId($user->_id, $rememberMe);
  65. if (Carbon::now()->diffInDays($user->created_at) >= 90) {
  66. return $this->expired($user->_id);
  67. }
  68. else{
  69. return redirect('/eep-hr');
  70. }
  71. }
  72. else if($user->roles_access == "Sales"){
  73. Auth::guard('eepsales')->loginUsingId($user->_id, $rememberMe);
  74. if (Carbon::now()->diffInDays($user->created_at) >= 90) {
  75. return $this->expired($user->_id);
  76. }else{
  77. return redirect('/eep-sales');
  78. }
  79. }
  80. }
  81. }
  82. }
  83. } catch (\Exception $e) {
  84. Log::error(__CLASS__ . "::" . __METHOD__ . " " . $e->getMessage() . "on line" . $e->getLine());
  85. }
  86. return redirect('/login/dashboard/eep')->with('error_msg', $message);
  87. }
  88. public function requestlogout(){
  89. // Get Current member id
  90. $id = Auth::guard($this->get_guard())->id();
  91. if (Auth::guard($this->get_guard())->check()) {
  92. $user = Staff::find($id);
  93. // Update last_login & last ip
  94. $user->last_login_at = Carbon::now(new \DateTimeZone('Asia/Kuala_Lumpur'))->toDateTimeString();
  95. $user->last_login_ip = \Request::getClientIp();
  96. $user->save();
  97. // Proceed to Log Out
  98. Auth::guard($this->get_guard())->logout();
  99. return redirect('/');
  100. }
  101. }
  102. public function expired($_id)
  103. {
  104. $user = Staff::where('_id',$_id)->first();
  105. return view('expiredPassword', compact ('user'));
  106. }
  107. public function postExpired(Request $request)
  108. {
  109. $user = Staff::where('_id',$request->_id)->first();
  110. $user->password = $this->encryptPassword('encrypt', $request->password);
  111. $user->created_at = Carbon::now()->toDateTimeString();
  112. $user->save();
  113. if($user->roles_access == "Allo HR"){
  114. return redirect('/eep-hr');
  115. }
  116. else if($user->roles_access == "Sales"){
  117. return redirect('/eep-sales');
  118. }
  119. }
  120. }