views.py 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479
  1. # coding=utf-8
  2. import traceback
  3. import json
  4. from django.db.models import Q
  5. from rest_framework.decorators import action
  6. from django.db import transaction
  7. from rest_framework.views import APIView
  8. from rest_framework.serializers import ValidationError
  9. from utils.permission import permission_required, isLogin, check_permission
  10. from django.contrib.auth.models import Group, Permission
  11. from rest_framework_jwt.views import ObtainJSONWebToken, RefreshJSONWebToken
  12. from utils import response_error, response_ok
  13. from django.contrib.auth import get_user_model
  14. from django.utils import timezone
  15. User = get_user_model()
  16. from apps.account.serializers import JWTSerializer, EmployeeSerializer, GroupDictSerializer, GroupSerializer
  17. from utils.custom_modelviewset import CustomModelViewSet
  18. from apps.account.filters import UserFilter, GroupFilter
  19. from apps.account.models import ManageStoreUser,OfficeStoreUser
  20. from apps.log.models import BizLog
  21. from apps.account.consts import PermissionMenu
  22. from collections import OrderedDict
  23. from apps.agent.models import Store, Agent,GeneralAgent
  24. from utils.exceptions import CustomError
  25. from apps.customer.models import ReportCustomer
  26. class LoginView(ObtainJSONWebToken):
  27. serializer_class = JWTSerializer
  28. def post(self, request, *args, **kwargs):
  29. try:
  30. ser = self.serializer_class(data=request.data)
  31. ser.request = request
  32. # 判断门店是否在用、在有效期内
  33. if ser.is_valid(raise_exception=True):
  34. user = User.objects.filter(id=ser.validated_data['user_id']).first()
  35. store = Store.objects.filter(id=user.store_id).first()
  36. if store and (store.enable == False or (store.end_date.strftime('%Y-%m-%d')) < (timezone.now().strftime('%Y-%m-%d')) ):
  37. raise CustomError(u'当前店面不可用,请联系管理员!')
  38. return response_ok(ser.validated_data)
  39. except ValidationError as e:
  40. return response_error(e.detail['error'][0])
  41. except CustomError as e:
  42. return response_error(str(e))
  43. class RefreshTokenView(RefreshJSONWebToken):
  44. def post(self, request, *args, **kwargs):
  45. try:
  46. ser = self.serializer_class(data=request.data)
  47. if ser.is_valid(raise_exception=True):
  48. user = ser.validated_data['user']
  49. store = Store.objects.filter(id=user.store_id).first()
  50. if store and (store.enable == False or (store.end_date.strftime('%Y-%m-%d')) < (
  51. timezone.now().strftime('%Y-%m-%d')) ):
  52. raise CustomError(u'当前店面不可用,请联系管理员!')
  53. return response_ok({'token': ser.validated_data['token']})
  54. except ValidationError as e:
  55. return response_ok({'error':True})
  56. except CustomError as e:
  57. return response_error(str(e))
  58. class ChangePassword(APIView):
  59. def post(self, request, *args, **kwargs):
  60. id = request.GET.get('id')
  61. data = json.loads(request.body)
  62. try:
  63. with transaction.atomic():
  64. user = User.objects.filter(id=id).first()
  65. if not user:
  66. raise CustomError(u'用户信息错误,请刷新重试!')
  67. user.change_password(data['new_password'], data['confirm_password'], data['old_password'])
  68. BizLog.objects.addnew(request.user, BizLog.UPDATE, u"修改密码[%s],id=%d" % (user.username, user.id))
  69. except CustomError as e:
  70. return response_error(str(e))
  71. except Exception as e:
  72. traceback.print_exc()
  73. return response_error(u'保存失败!')
  74. return response_ok()
  75. class EmployeeViewSet(CustomModelViewSet):
  76. permission_classes = [isLogin, ]
  77. queryset = User.objects.filter()
  78. serializer_class = EmployeeSerializer
  79. @permission_required('account.browse_user')
  80. def filter_queryset(self, queryset):
  81. queryset = queryset.filter()
  82. user = self.request.user
  83. queryset = queryset.filter(
  84. Q(store_id__in=self.request.user.get_manager_range()) |
  85. Q(id=user.id) |
  86. Q(create_user=user) |
  87. Q(agent__create_user=user) |
  88. Q(general_agent__create_user=user)
  89. )
  90. f = UserFilter(self.request.GET, queryset=queryset)
  91. return f.qs
  92. @permission_required('account.add_user')
  93. def perform_create(self, serializer):
  94. super(EmployeeViewSet, self).perform_create(serializer)
  95. instance = serializer.instance
  96. validated_data = serializer.validated_data
  97. BizLog.objects.addnew(self.request.user, BizLog.INSERT,
  98. u'添加用户[%s],id=%d' % (instance.name, instance.id), validated_data)
  99. @permission_required('account.add_user')
  100. def perform_update(self, serializer):
  101. super(EmployeeViewSet, self).perform_update(serializer)
  102. instance = serializer.instance
  103. validated_data = serializer.validated_data
  104. BizLog.objects.addnew(self.request.user, BizLog.UPDATE,
  105. u'修改用户[%s],id=%d' % (instance.name, instance.id), validated_data)
  106. @permission_required('account.delete_user')
  107. def perform_destroy(self, instance):
  108. ManageStoreUser.objects.filter(manage_user=instance).delete()
  109. BizLog.objects.filter(user=instance).delete()
  110. BizLog.objects.addnew(self.request.user, BizLog.DELETE,
  111. u'删除账号[%s],id=%d' % (instance.username, instance.id))
  112. super(EmployeeViewSet, self).perform_destroy(instance)
  113. @action(methods=['post'], detail=True)
  114. def join(self, request, pk):
  115. check_permission(request, 'account.check_user')
  116. try:
  117. with transaction.atomic():
  118. instance = self.get_object()
  119. instance.check_user = request.user
  120. instance.status = User.INSERVICE
  121. instance.save()
  122. BizLog.objects.addnew(self.request.user, BizLog.INSERT,
  123. u'员工[%s]入职,id=%d' % (instance.name, instance.id))
  124. return response_ok()
  125. except Exception as e:
  126. traceback.print_exc()
  127. return response_error(u'入职失败')
  128. @action(methods=['post'], detail=True)
  129. def branch(self, request, pk):
  130. check_permission(request, 'account.manager_store')
  131. data = json.loads(request.POST.get('stores'))
  132. try:
  133. with transaction.atomic():
  134. instance = self.get_object()
  135. ManageStoreUser.objects.filter(manage_user_id=pk).delete()
  136. for row in data:
  137. ManageStoreUser.objects.create(store_id=row, manage_user_id=pk)
  138. BizLog.objects.addnew(self.request.user, BizLog.INSERT,
  139. u'设置账号[%s]管理门店,id=%d' % (instance.username, instance.id), data)
  140. return response_ok()
  141. except Exception as e:
  142. traceback.print_exc()
  143. return response_error(u'保存失败')
  144. @action(methods=['post'], detail=True)
  145. def office(self, request, pk):
  146. check_permission(request, 'account.manager_store')
  147. data = json.loads(request.POST.get('stores'))
  148. try:
  149. with transaction.atomic():
  150. instance = self.get_object()
  151. OfficeStoreUser.objects.filter(office_user_id=pk).delete()
  152. for row in data:
  153. OfficeStoreUser.objects.create(store_id=row, office_user_id=pk)
  154. BizLog.objects.addnew(self.request.user, BizLog.INSERT,
  155. u'设置账号[%s]任职门店,id=%d' % (instance.username, instance.id), data)
  156. return response_ok()
  157. except Exception as e:
  158. traceback.print_exc()
  159. return response_error(u'保存失败')
  160. class GroupsViewSet(CustomModelViewSet):
  161. permission_classes = [isLogin, ]
  162. queryset = Group.objects.filter()
  163. serializer_class = GroupSerializer
  164. @permission_required('account.manager_permissions')
  165. def filter_queryset(self, queryset):
  166. if not self.request.user.is_superuser:
  167. groups = self.request.user.groups.all()
  168. queryset = queryset.filter(id__in=[g.id for g in groups])
  169. f = GroupFilter(self.request.GET, queryset=queryset)
  170. return f.qs
  171. @permission_required('account.manager_permissions')
  172. def perform_create(self, serializer):
  173. super(GroupsViewSet, self).perform_create(serializer)
  174. instance = serializer.instance
  175. validated_data = serializer.validated_data
  176. BizLog.objects.addnew(self.request.user, BizLog.INSERT,
  177. u'添加权限组[%s],id=%d' % (instance.name, instance.id), validated_data)
  178. @permission_required('account.manager_permissions')
  179. def perform_update(self, serializer):
  180. super(GroupsViewSet, self).perform_update(serializer)
  181. instance = serializer.instance
  182. validated_data = serializer.validated_data
  183. BizLog.objects.addnew(self.request.user, BizLog.UPDATE,
  184. u'修改权限组[%s],id=%d' % (instance.name, instance.id), validated_data)
  185. @permission_required('account.manager_permissions')
  186. def destroy(self, request, *args, **kwargs):
  187. with transaction.atomic():
  188. instance = self.get_object()
  189. # user_count = instance.user_set.all().count()
  190. # if user_count:
  191. # raise CustomError(u'该权限组已分配给用户,禁止删除!')
  192. BizLog.objects.addnew(self.request.user, BizLog.DELETE,
  193. u'删除权限组[%s],id=%d' % (instance.name, instance.id))
  194. instance.delete()
  195. return response_ok()
  196. class PermissionsListView(APIView):
  197. permission_classes = [isLogin, ]
  198. @permission_required('account.manager_permissions')
  199. def get(self, request):
  200. rows = Permission.objects.all().exclude(name__startswith='Can')
  201. perms_menus = PermissionMenu()
  202. rows = perms_menus.sort_perms(rows)
  203. menus = OrderedDict()
  204. for row in rows:
  205. item = {'id': row.id, 'name': row.name}
  206. mn = perms_menus.get_menuname_of_contenttype(row.content_type.app_label, row.content_type.model)
  207. if mn in menus:
  208. permissions = menus[mn]
  209. else:
  210. permissions = menus[mn] = OrderedDict()
  211. if row.content_type.name in permissions:
  212. if not item in permissions[row.content_type.name]:
  213. permissions[row.content_type.name].append(item)
  214. else:
  215. permissions[row.content_type.name] = [item, ]
  216. return response_ok(menus)
  217. class PermissionDictView(APIView):
  218. permission_classes = [isLogin, ]
  219. @permission_required('account.add_user')
  220. def get(self, request):
  221. rows = Group.objects.filter()
  222. if not request.user.is_superuser:
  223. groups = request.user.groups.all()
  224. rows = rows.filter(id__in=[g.id for g in groups])
  225. serializer = GroupDictSerializer(rows, many=True)
  226. return response_ok(serializer.data)
  227. class StoreTreeView(APIView):
  228. permission_classes = [isLogin, ]
  229. @permission_required('account.manager_store')
  230. def get(self, request):
  231. id = request.GET.get('id')
  232. store_data = []
  233. # 查询当前用户的代理商和管理的门店
  234. general_agents = GeneralAgent.objects.filter()
  235. if not request.user.is_superuser:
  236. general_agents = GeneralAgent.objects.filter(id=request.user.general_agent_id)
  237. general_agents = general_agents.values('id', 'name')
  238. for general_agent in general_agents:
  239. general_agent_item = {
  240. 'title': general_agent['name'],
  241. 'id': general_agent['id'],
  242. 'field': 'general_agent',
  243. 'children': [],
  244. }
  245. agents = Agent.objects.filter(general_agent_id=general_agent['id'])
  246. if request.user.agent:
  247. agents = agents.filter(id=request.user.agent_id)
  248. agents = agents.values('id', 'name')
  249. for agent in agents:
  250. agent_item= {
  251. 'title': agent['name'],
  252. 'id': agent['id'],
  253. 'field': 'agent',
  254. 'children': [],
  255. }
  256. general_agent_item['children'].append(agent_item)
  257. stores = Store.objects.filter(agent_id=agent['id'], id__in=request.user.get_manager_range(),
  258. check_user__isnull=False, enable=True).values('id', 'name')
  259. for store in stores:
  260. manage_store = ManageStoreUser.objects.filter(manage_user_id=id, store_id=store['id']).first()
  261. checked = manage_store and True or False
  262. store_item = {
  263. 'title': store['name'],
  264. 'id': store['id'],
  265. 'checked': checked,
  266. 'field': 'store_{}'.format(store['id']),
  267. }
  268. agent_item['children'].append(store_item)
  269. store_data.append(general_agent_item)
  270. return response_ok(store_data)
  271. class EmployeeTreeView(APIView):
  272. permission_classes = [isLogin, ]
  273. def get(self, request):
  274. # 查询当前用户管理门店树形结构
  275. agent_dict = {}
  276. general_agent_dict = {}
  277. data = []
  278. exist_agents = []
  279. manage_storess = request.user.get_manager_range()
  280. for store_id in manage_storess:
  281. store = Store.objects.filter(id=store_id, check_user__isnull=False, enable=True).values('name','agent_id')
  282. if not store:
  283. continue
  284. store_item = {
  285. 'title': store[0]['name'],
  286. 'id': store_id,
  287. 'field': 'store',
  288. 'children': [],
  289. }
  290. office_user_id = OfficeStoreUser.objects.filter(store_id=store_id).values('office_user_id')
  291. employees = User.objects.filter(Q(store_id=store_id) | Q(id__in=office_user_id), is_active=True).values('id', 'name')
  292. for employee in employees:
  293. user_item = {
  294. 'title': employee['name'],
  295. 'id': employee['id'],
  296. 'field': 'user',
  297. }
  298. store_item['children'].append(user_item)
  299. try:
  300. agent_dict[store[0]['agent_id']].append(store_item)
  301. except:
  302. agent_dict[store[0]['agent_id']] = [store_item]
  303. exist_agents.append(store[0]['agent_id'])
  304. ######## 代理
  305. exist_agents = list(set(exist_agents))
  306. exist_general_agents = []
  307. agents = Agent.objects.filter(id__in=exist_agents).values('id', 'name', 'general_agent_id')
  308. for agent in agents:
  309. agent_item = {
  310. 'title': agent['name'],
  311. 'id': agent['id'],
  312. 'field': 'agent',
  313. 'children': agent_dict[agent['id']] ,
  314. }
  315. if not request.user.agent:
  316. # 当前用户有代理商。此时加载和总代理平行的账号
  317. agent_users = User.objects.filter(agent__isnull=False, is_active=True, store__isnull=True)
  318. elif not request.user.store:
  319. # 当前用户有门店。此时加载和代理商平行的账号
  320. agent_users = User.objects.filter(agent_id=agent['id'], is_active=True, store__isnull=True)
  321. else:
  322. # 有门店和代理商,这是店内人员。不需要在加载任何账号
  323. agent_users = []
  324. for agent_user in agent_users:
  325. if agent_user.has_perm('customer.inner_review'):
  326. agent_user_item = {
  327. 'title': agent_user.name,
  328. 'id': agent_user.id,
  329. 'field': 'user',
  330. }
  331. agent_item['children'].insert(0,agent_user_item)
  332. try:
  333. general_agent_dict[agent['general_agent_id']].append(agent_item)
  334. except:
  335. general_agent_dict[agent['general_agent_id']] = [agent_item]
  336. exist_general_agents.append(agent['general_agent_id'])
  337. ###### 总代理
  338. exist_general_agents = list(set(exist_general_agents))
  339. general_agents = GeneralAgent.objects.filter(id__in=exist_general_agents).values('id', 'name')
  340. for general_agent in general_agents:
  341. general_agent_item = {
  342. 'title': general_agent['name'],
  343. 'id': general_agent['id'],
  344. 'field': 'general_agent',
  345. 'children': general_agent_dict[general_agent['id']],
  346. }
  347. # 当前用户没有代理商,则是总代理账号。此时加载和总代理平行的账号
  348. if not request.user.agent:
  349. general_agent_users = User.objects.filter(general_agent_id=general_agent['id'], agent__isnull=True, store__isnull=True, is_active=True)
  350. for general_agent_user in general_agent_users:
  351. if general_agent_user.has_perm('customer.inner_review'):
  352. general_agent_user_item = {
  353. 'title': general_agent_user.name,
  354. 'id': general_agent_user.id,
  355. 'field': 'user',
  356. }
  357. general_agent_item['children'].insert(0, general_agent_user_item)
  358. data.append(general_agent_item)
  359. # 总代理只有一级,去掉总代理
  360. # if len(data) == 1:
  361. # data = data[0]['children']
  362. # 代理只有一级,去掉代理
  363. # if len(data) == 1:
  364. # data = data[0]['children']
  365. return response_ok(data)
  366. class HomeStatisticsView(APIView):
  367. # 首页统计
  368. permission_classes = [isLogin, ]
  369. def get(self, request):
  370. statistics = {
  371. 'today_report': 0, # 本日新增报备
  372. 'mouth_report': 0, # 本月新增报备
  373. 'general_report': 0, # 总报备
  374. }
  375. if request.user or request.user.is_authenticated:
  376. today = timezone.now().date()
  377. reports = ReportCustomer.objects.filter(store__in=request.user.get_manager_range(),
  378. report_status=ReportCustomer.CHECKED)
  379. statistics['today_report'] = reports.filter(check_time__gte=str(today) + ' 00:00:00').count()
  380. statistics['mouth_report'] = reports.filter(check_time__year=today.year, check_time__month=today.month).count()
  381. statistics['general_report'] = reports.count()
  382. return response_ok(statistics)
  383. else:
  384. return response_ok(statistics)
  385. class OfficeStoreView(APIView):
  386. permission_classes = [isLogin, ]
  387. @permission_required('account.manager_store')
  388. def get(self, request):
  389. id = request.GET.get('id')
  390. store_data = []
  391. # 查询当前用户的代理商和管理的门店
  392. general_agents = GeneralAgent.objects.filter()
  393. if not request.user.is_superuser:
  394. general_agents = GeneralAgent.objects.filter(id=request.user.general_agent_id)
  395. general_agents = general_agents.values('id', 'name')
  396. for general_agent in general_agents:
  397. general_agent_item = {
  398. 'title': general_agent['name'],
  399. 'id': general_agent['id'],
  400. 'field': 'general_agent',
  401. 'children': [],
  402. }
  403. agents = Agent.objects.filter(general_agent_id=general_agent['id'])
  404. if request.user.agent:
  405. agents = agents.filter(id=request.user.agent_id)
  406. agents = agents.values('id', 'name')
  407. for agent in agents:
  408. agent_item = {
  409. 'title': agent['name'],
  410. 'id': agent['id'],
  411. 'field': 'agent',
  412. 'children': [],
  413. }
  414. general_agent_item['children'].append(agent_item)
  415. stores = Store.objects.filter(agent_id=agent['id'], id__in=request.user.get_manager_range(),
  416. check_user__isnull=False, enable=True).values('id', 'name')
  417. for store in stores:
  418. office_store = OfficeStoreUser.objects.filter(office_user_id=id, store_id=store['id']).first()
  419. checked = office_store and True or False
  420. store_item = {
  421. 'title': store['name'],
  422. 'id': store['id'],
  423. 'checked': checked,
  424. 'field': 'store_{}'.format(store['id']),
  425. }
  426. agent_item['children'].append(store_item)
  427. store_data.append(general_agent_item)
  428. return response_ok(store_data)