吾爱破解 - 52pojie.cn

 找回密码
 注册[Register]

QQ登录

只需一步,快速开始

查看: 868|回复: 28
收起左侧

[Python 原创] 用python写的单据申请管理系统,

  [复制链接]
milu1123 发表于 2025-3-20 16:32
本帖最后由 milu1123 于 2025-3-24 10:38 编辑

用AI写的一个单据申请管理。
有个BUG修改其他用户的时候会出现这个错误。

在将 nvarchar 值 'admin' 转换成数据类型 int 时失败。 (245) (SQLExecDirectW)")


完善了一些功能。。已瘫痪。。。下面连接里面是成品
https://wwqm.lanzouu.com/i7xCD2rgyira


解决不了了。。就是涂了红色点点的那一栏。。。也希望那个大兄弟修改完了发出来。。。谢谢
累了,毁灭吧。。。
博主只装了SQL server需要其他数据库的兄弟,自行更换。。
屎山一样的代码!!!!!






[Python] 纯文本查看 复制代码
0001
0002
0003
0004
0005
0006
0007
0008
0009
0010
0011
0012
0013
0014
0015
0016
0017
0018
0019
0020
0021
0022
0023
0024
0025
0026
0027
0028
0029
0030
0031
0032
0033
0034
0035
0036
0037
0038
0039
0040
0041
0042
0043
0044
0045
0046
0047
0048
0049
0050
0051
0052
0053
0054
0055
0056
0057
0058
0059
0060
0061
0062
0063
0064
0065
0066
0067
0068
0069
0070
0071
0072
0073
0074
0075
0076
0077
0078
0079
0080
0081
0082
0083
0084
0085
0086
0087
0088
0089
0090
0091
0092
0093
0094
0095
0096
0097
0098
0099
0100
0101
0102
0103
0104
0105
0106
0107
0108
0109
0110
0111
0112
0113
0114
0115
0116
0117
0118
0119
0120
0121
0122
0123
0124
0125
0126
0127
0128
0129
0130
0131
0132
0133
0134
0135
0136
0137
0138
0139
0140
0141
0142
0143
0144
0145
0146
0147
0148
0149
0150
0151
0152
0153
0154
0155
0156
0157
0158
0159
0160
0161
0162
0163
0164
0165
0166
0167
0168
0169
0170
0171
0172
0173
0174
0175
0176
0177
0178
0179
0180
0181
0182
0183
0184
0185
0186
0187
0188
0189
0190
0191
0192
0193
0194
0195
0196
0197
0198
0199
0200
0201
0202
0203
0204
0205
0206
0207
0208
0209
0210
0211
0212
0213
0214
0215
0216
0217
0218
0219
0220
0221
0222
0223
0224
0225
0226
0227
0228
0229
0230
0231
0232
0233
0234
0235
0236
0237
0238
0239
0240
0241
0242
0243
0244
0245
0246
0247
0248
0249
0250
0251
0252
0253
0254
0255
0256
0257
0258
0259
0260
0261
0262
0263
0264
0265
0266
0267
0268
0269
0270
0271
0272
0273
0274
0275
0276
0277
0278
0279
0280
0281
0282
0283
0284
0285
0286
0287
0288
0289
0290
0291
0292
0293
0294
0295
0296
0297
0298
0299
0300
0301
0302
0303
0304
0305
0306
0307
0308
0309
0310
0311
0312
0313
0314
0315
0316
0317
0318
0319
0320
0321
0322
0323
0324
0325
0326
0327
0328
0329
0330
0331
0332
0333
0334
0335
0336
0337
0338
0339
0340
0341
0342
0343
0344
0345
0346
0347
0348
0349
0350
0351
0352
0353
0354
0355
0356
0357
0358
0359
0360
0361
0362
0363
0364
0365
0366
0367
0368
0369
0370
0371
0372
0373
0374
0375
0376
0377
0378
0379
0380
0381
0382
0383
0384
0385
0386
0387
0388
0389
0390
0391
0392
0393
0394
0395
0396
0397
0398
0399
0400
0401
0402
0403
0404
0405
0406
0407
0408
0409
0410
0411
0412
0413
0414
0415
0416
0417
0418
0419
0420
0421
0422
0423
0424
0425
0426
0427
0428
0429
0430
0431
0432
0433
0434
0435
0436
0437
0438
0439
0440
0441
0442
0443
0444
0445
0446
0447
0448
0449
0450
0451
0452
0453
0454
0455
0456
0457
0458
0459
0460
0461
0462
0463
0464
0465
0466
0467
0468
0469
0470
0471
0472
0473
0474
0475
0476
0477
0478
0479
0480
0481
0482
0483
0484
0485
0486
0487
0488
0489
0490
0491
0492
0493
0494
0495
0496
0497
0498
0499
0500
0501
0502
0503
0504
0505
0506
0507
0508
0509
0510
0511
0512
0513
0514
0515
0516
0517
0518
0519
0520
0521
0522
0523
0524
0525
0526
0527
0528
0529
0530
0531
0532
0533
0534
0535
0536
0537
0538
0539
0540
0541
0542
0543
0544
0545
0546
0547
0548
0549
0550
0551
0552
0553
0554
0555
0556
0557
0558
0559
0560
0561
0562
0563
0564
0565
0566
0567
0568
0569
0570
0571
0572
0573
0574
0575
0576
0577
0578
0579
0580
0581
0582
0583
0584
0585
0586
0587
0588
0589
0590
0591
0592
0593
0594
0595
0596
0597
0598
0599
0600
0601
0602
0603
0604
0605
0606
0607
0608
0609
0610
0611
0612
0613
0614
0615
0616
0617
0618
0619
0620
0621
0622
0623
0624
0625
0626
0627
0628
0629
0630
0631
0632
0633
0634
0635
0636
0637
0638
0639
0640
0641
0642
0643
0644
0645
0646
0647
0648
0649
0650
0651
0652
0653
0654
0655
0656
0657
0658
0659
0660
0661
0662
0663
0664
0665
0666
0667
0668
0669
0670
0671
0672
0673
0674
0675
0676
0677
0678
0679
0680
0681
0682
0683
0684
0685
0686
0687
0688
0689
0690
0691
0692
0693
0694
0695
0696
0697
0698
0699
0700
0701
0702
0703
0704
0705
0706
0707
0708
0709
0710
0711
0712
0713
0714
0715
0716
0717
0718
0719
0720
0721
0722
0723
0724
0725
0726
0727
0728
0729
0730
0731
0732
0733
0734
0735
0736
0737
0738
0739
0740
0741
0742
0743
0744
0745
0746
0747
0748
0749
0750
0751
0752
0753
0754
0755
0756
0757
0758
0759
0760
0761
0762
0763
0764
0765
0766
0767
0768
0769
0770
0771
0772
0773
0774
0775
0776
0777
0778
0779
0780
0781
0782
0783
0784
0785
0786
0787
0788
0789
0790
0791
0792
0793
0794
0795
0796
0797
0798
0799
0800
0801
0802
0803
0804
0805
0806
0807
0808
0809
0810
0811
0812
0813
0814
0815
0816
0817
0818
0819
0820
0821
0822
0823
0824
0825
0826
0827
0828
0829
0830
0831
0832
0833
0834
0835
0836
0837
0838
0839
0840
0841
0842
0843
0844
0845
0846
0847
0848
0849
0850
0851
0852
0853
0854
0855
0856
0857
0858
0859
0860
0861
0862
0863
0864
0865
0866
0867
0868
0869
0870
0871
0872
0873
0874
0875
0876
0877
0878
0879
0880
0881
0882
0883
0884
0885
0886
0887
0888
0889
0890
0891
0892
0893
0894
0895
0896
0897
0898
0899
0900
0901
0902
0903
0904
0905
0906
0907
0908
0909
0910
0911
0912
0913
0914
0915
0916
0917
0918
0919
0920
0921
0922
0923
0924
0925
0926
0927
0928
0929
0930
0931
0932
0933
0934
0935
0936
0937
0938
0939
0940
0941
0942
0943
0944
0945
0946
0947
0948
0949
0950
0951
0952
0953
0954
0955
0956
0957
0958
0959
0960
0961
0962
0963
0964
0965
0966
0967
0968
0969
0970
0971
0972
0973
0974
0975
0976
0977
0978
0979
0980
0981
0982
0983
0984
0985
0986
0987
0988
0989
0990
0991
0992
0993
0994
0995
0996
0997
0998
0999
1000
1001
1002
1003
1004
1005
1006
1007
1008
1009
1010
1011
1012
1013
1014
1015
1016
1017
1018
1019
1020
1021
1022
1023
1024
1025
1026
1027
1028
1029
1030
1031
1032
1033
1034
1035
1036
1037
1038
1039
1040
1041
1042
import tkinter as tk
from tkinter import ttk, messagebox, scrolledtext
import pyodbc
from datetime import datetime
import hashlib
import os
import traceback
 
# ====================== 数据库配置 ======================
DB_CONFIG = {
    'server': '127.0.0.1',
    'database': 'sysobjects',
    'username': 'sa',
    'password': '123',
    'driver': '{ODBC Driver 17 for SQL Server}',
}
 
DEPARTMENTS = ["技术部", "市场部", "财务部", "人力资源部", "产品部", "销售部", "客服部"]
PERMISSIONS_LIST = ["申请", "审核", "撤销", "作废", "管理", "编辑"# 添加编辑权限
 
 
# ====================== 密码工具类 ======================
class PasswordUtils:
    @staticmethod
    def hash_password(password: str, salt: str = None) -> tuple:
        if not salt:
            salt = os.urandom(16).hex()  # 生成新盐
        else# 使用现有盐
            if len(salt) != 32:
                raise ValueError("盐值必须为32位十六进制字符串")
 
        salt_bytes = bytes.fromhex(salt)
        dk = hashlib.pbkdf2_hmac('sha256', password.encode(), salt_bytes, 100000)
        return dk.hex(), salt  # 始终返回传入的salt(当提供时)
 
 
# ====================== 数据库管理类 ======================
class DatabaseManager:
    def __init__(self):
        self.conn_str = (
            f'DRIVER={DB_CONFIG["driver"]};'
            f'SERVER={DB_CONFIG["server"]};'
            f'DATABASE={DB_CONFIG["database"]};'
            f'UID={DB_CONFIG["username"]};'
            f'PWD={DB_CONFIG["password"]}'
        )
        self.conn = None
        self.connect()
 
    def connect(self):
        try:
            self.conn = pyodbc.connect(self.conn_str)
            return True
        except Exception as e:
            messagebox.showerror("连接失败", f"数据库连接错误: {str(e)}")
            return False
 
    def init_db(self):
        try:
            with self.conn.cursor() as cursor:
                # 创建用户表(包含盐值字段)
                cursor.execute("""
                    IF NOT EXISTS (SELECT * FROM sysobjects WHERE name='users')
                    CREATE TABLE users (
                        user_id INT IDENTITY(1,1) PRIMARY KEY,
                        username NVARCHAR(50) UNIQUE NOT NULL,
                        password_hash NVARCHAR(128) NOT NULL,
                        name NVARCHAR(50) NOT NULL,
                        department NVARCHAR(50) NOT NULL,
                        salt NVARCHAR(32) NOT NULL,
                        permissions NVARCHAR(255) NOT NULL
                    )
                """)
                # 新增单据申请表(关键修复)
                cursor.execute("""
                    IF NOT EXISTS (SELECT * FROM sysobjects WHERE name='doc_applications')
                    CREATE TABLE doc_applications (
                        id INT IDENTITY(1,1) PRIMARY KEY,
                        doc_type NVARCHAR(50) NOT NULL,
                        applicant NVARCHAR(50) NOT NULL,
                        department NVARCHAR(50) NOT NULL,
                        apply_date DATETIME NOT NULL,
                        amount DECIMAL(18,2) NOT NULL,
                        reason NVARCHAR(MAX) NOT NULL,
                        status NVARCHAR(50) NOT NULL DEFAULT '待审核',
                        salt NVARCHAR(32) CHECK (LEN(salt)=32) NOT NULL 
                    )
                """)
                self.conn.commit()
            return True
        except Exception as e:
            self.conn.rollback()
            messagebox.showerror("初始化失败", f"数据库初始化错误: {str(e)}")
            print(e)
            return False
 
    def execute_query(self, query: str, params=None):
        try:
            with self.conn.cursor() as cursor:
                print(f"[DEBUG11111] 执行查询: {query}"# 添加调试信息
                print(f"[DEBUG11111] 参数: {params}"# 添加参数输出
                if params:
                    cursor.execute(query, params)
                else:
                    cursor.execute(query)
                if cursor.description:
                    return cursor.fetchall()
                else:
                    self.conn.commit()
                    return cursor.rowcount
                print(f"[DEBUG] 影响行数: {result}"# 输出影响行数
                return result
        except Exception as e:
            print(f"[ERROR] 数据库错误: {str(e)}"# 错误日志
            self.conn.rollback()
            messagebox.showerror("查询错误", f"执行SQL失败: {str(e)}")
            return None
 
    # 在DatabaseManager类中的authenticate方法增加错误处理
    def authenticate(self, username: str, password: str) -> tuple:
        result = self.execute_query(
            "SELECT password_hash, salt, name, department, permissions FROM users WHERE username = ?",
            (username)
        )
        if result:
            stored_hash = result[0].password_hash
            salt = result[0].salt
 
            print(f"[认证] 盐值: {salt} (长度: {len(salt)})")
            print(f"[认证] 存储哈希: {stored_hash} (长度: {len(stored_hash)})")
            try:
                # 确保salt为32位十六进制
                if len(salt) != 32:
                    raise ValueError(f"无效的盐值长度: {len(salt)},应为32位")
                input_hash, _ = PasswordUtils.hash_password(password, salt)
                print(f"[认证] 计算哈希: {input_hash} (长度: {len(input_hash)})")
                return (input_hash == stored_hash), result[0].name, result[0].department, result[0].permissions.split(
                    ",")
            except ValueError as e:
                print(f"[错误] 盐值验证失败: {str(e)}")
                return False, None, None, []
        return False, None, None, []
 
 
# ====================== 注册窗口 ======================
class RegisterWindow(tk.Toplevel):
    def __init__(self, parent, db):
        super().__init__(parent)
        self.db = db
        self.title("用户注册")
        self.geometry("400x300")
 
        # 主容器框架(实现双重视觉居中)
        main_frame = ttk.Frame(self)
        main_frame.place(relx=0.5, rely=0.5, anchor="center")
 
        # 表单容器
        form_frame = ttk.Frame(main_frame)
        form_frame.grid(row=0, column=0, sticky="")
 
        # 统一控件参数
        label_width = 8
        entry_width = 20
        combo_width = 18
        pad = 5
 
        # 用户名
        ttk.Label(form_frame, text="用户名:", width=label_width, anchor="e").grid(
            row=0, column=0, padx=pad, pady=pad, sticky="e")
        self.entry_username = ttk.Entry(form_frame, width=entry_width)
        self.entry_username.grid(row=0, column=1, padx=pad, pady=pad, sticky="w")
 
        # 密码
        ttk.Label(form_frame, text="密码:", width=label_width, anchor="e").grid(
            row=1, column=0, padx=pad, pady=pad, sticky="e")
        self.entry_password = ttk.Entry(form_frame, show="*", width=entry_width)
        self.entry_password.grid(row=1, column=1, padx=pad, pady=pad, sticky="w")
 
        # 确认密码
        ttk.Label(form_frame, text="确认密码:", width=label_width, anchor="e").grid(
            row=2, column=0, padx=pad, pady=pad, sticky="e")
        self.entry_confirm = ttk.Entry(form_frame, show="*", width=entry_width)
        self.entry_confirm.grid(row=2, column=1, padx=pad, pady=pad, sticky="w")
 
        # 姓名
        ttk.Label(form_frame, text="姓名:", width=label_width, anchor="e").grid(
            row=3, column=0, padx=pad, pady=pad, sticky="e")
        self.entry_name = ttk.Entry(form_frame, width=entry_width)
        self.entry_name.grid(row=3, column=1, padx=pad, pady=pad, sticky="w")
 
        # 部门
        ttk.Label(form_frame, text="部门:", width=label_width, anchor="e").grid(
            row=4, column=0, padx=pad, pady=pad, sticky="e")
        self.combo_department = ttk.Combobox(form_frame, width=combo_width,
                                             values=DEPARTMENTS, state="readonly")
        self.combo_department.grid(row=4, column=1, padx=pad, pady=pad, sticky="w")
 
        # 权限(最终修改版)
        ttk.Label(form_frame, text="权限:", width=label_width, anchor="e").grid(
            row=5, column=0, padx=pad, pady=pad, sticky="e"# 严格右对齐
 
        perm_frame = ttk.Frame(form_frame)
        perm_frame.grid(row=5, column=1, padx=(3, pad), pady=pad, sticky="w"# 左间距归零
 
        self.permission_vars = {perm: tk.BooleanVar() for perm in PERMISSIONS_LIST}
        for perm in PERMISSIONS_LIST:
            cb = ttk.Checkbutton(perm_frame, text=perm, variable=self.permission_vars[perm])
            cb.pack(side=tk.LEFT, padx=2)
 
        # 提交按钮(单独设置居中)
        btn_frame = ttk.Frame(main_frame)
        btn_frame.grid(row=1, column=0, pady=15)
        ttk.Button(btn_frame, text="提交注册", command=self.submit).pack()
 
        # 窗口居中
        self.update_idletasks()
        parent_x = parent.winfo_x()
        parent_y = parent.winfo_y()
        parent_width = parent.winfo_width()
        parent_height = parent.winfo_height()
 
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = parent_x + (parent_width - window_width) // 2
        y = parent_y + (parent_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
 
        # 保持窗口在最前
        self.transient(parent)
        self.grab_set()
        self.focus_force()
 
    def submit(self):
        # 获取所有字段
        name = self.entry_name.get().strip()
        username = self.entry_username.get().strip()
        password = self.entry_password.get().strip()
        confirm = self.entry_confirm.get().strip()
        department = self.combo_department.get()
        permissions = [perm for perm, var in self.permission_vars.items() if var.get()]
 
        # 验证字段
        if not all([name, username, password, confirm, department]):
            messagebox.showwarning("输入错误", "所有字段必须填写")
            return
        if password != confirm:
            messagebox.showwarning("输入错误", "两次密码不一致")
            return
        if not permissions:
            messagebox.showwarning("输入错误", "至少选择一个权限")
            return
 
        # 检查用户名是否存在
        if self.db.execute_query("SELECT username FROM users WHERE username = ?", (username,)):
            messagebox.showwarning("错误", "用户名已存在")
            return
 
        # 哈希密码并插入数据库
        hashed_pw, salt = PasswordUtils.hash_password(password)
        result = self.db.execute_query(
            "INSERT INTO users (username, password_hash, name, department, salt, permissions) VALUES (?, ?, ?, ?, ?, ?)",
            (username, hashed_pw, name, department, salt, ",".join(permissions))
        )
        if result is not None:
            messagebox.showinfo("成功", "用户注册成功")
            self.destroy()
 
 
# ====================== 用户管理窗口 ======================
class UserManagerWindow(tk.Toplevel):
    def __init__(self, parent, db):
        super().__init__(parent)
        self.db = db
        self.title("用户管理")
        self.geometry("1000x400")
 
        # 添加姓名列
        self.tree = ttk.Treeview(self, columns=("用户名", "姓名", "部门", "权限"), show="headings")
        self.tree.heading("用户名", text="用户名")
        self.tree.heading("姓名", text="姓名")
        self.tree.heading("部门", text="部门")
        self.tree.heading("权限", text="权限")
        self.tree.column("用户名", width=120)
        self.tree.column("姓名", width=100)
        self.tree.column("部门", width=120)
        self.tree.column("权限", width=600)
        self.tree.pack(fill=tk.BOTH, expand=True, padx=10, pady=10)
 
        btn_frame = ttk.Frame(self)
        btn_frame.pack(pady=5)
        ttk.Button(btn_frame, text="刷新", command=self.load_users).pack(side=tk.LEFT, padx=5)
        ttk.Button(btn_frame, text="修改权限", command=self.open_edit_window).pack(side=tk.LEFT, padx=5)
 
        self.load_users()
        self.center_window(parent)
 
    def center_window(self, parent):
        self.update_idletasks()
        parent_x = parent.winfo_x()
        parent_y = parent.winfo_y()
        parent_width = parent.winfo_width()
        parent_height = parent.winfo_height()
 
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = parent_x + (parent_width - window_width) // 2
        y = parent_y + (parent_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
 
    def load_users(self):
        for item in self.tree.get_children():
            self.tree.delete(item)
        # 确保查询字段包含username
        users = self.db.execute_query("SELECT username, name, department, permissions FROM users")
        if users:
            for user in users:
                print(f"用户名: {user.username}, 姓名: {user.name}"# 调试
                # 确认插入顺序为:用户名、姓名、部门、权限
                self.tree.insert("", tk.END, values=(
                    user.username,
                    user.name,
                    user.department,
                    user.permissions
                ))
 
    def open_edit_window(self):
        selected = self.tree.selection()
        if not selected:
            messagebox.showwarning("提示", "请先选择一个用户")
            return
        username = self.tree.item(selected[0])["values"][0]
        UserEditWindow(self, self.db, username)
        print(username, UserEditWindow, '#######################')
 
 
# ====================== 权限编辑窗口 ======================
class UserEditWindow(tk.Toplevel):
    def __init__(self, parent, db, username):
        super().__init__(parent)
        self.db = db
        self.username = username
        self.title(f"编辑用户权限 - {username}")
        self.geometry("400x300")
 
    
 
 
 
        ttk.Label(self, text="用户名:").pack(pady=5)
        ttk.Label(self, text=username).pack()
 
        ttk.Label(self, text="姓名:").pack(pady=5)
        ttk.Label(self, text=user_data.name).pack()
 
        ttk.Label(self, text="部门:").pack(pady=5)
        ttk.Label(self, text=user_data.department).pack()
 
        ttk.Label(self, text="权限:").pack(pady=5)
        self.permission_vars = {perm: tk.BooleanVar() for perm in PERMISSIONS_LIST}
        current_perms = user_data.permissions.split(",")
 
        perm_frame = ttk.Frame(self)
        perm_frame.pack()
        for perm in PERMISSIONS_LIST:
            cb = ttk.Checkbutton(perm_frame, text=perm, variable=self.permission_vars[perm])
            cb.pack(side=tk.LEFT, padx=5)
            if perm in current_perms:
                self.permission_vars[perm].set(True)
 
        ttk.Button(self, text="保存修改", command=self.save_changes).pack(pady=15)
        self.center_window(parent)
 
    def center_window(self, parent):
        self.update_idletasks()
        parent_x = parent.winfo_x()
        parent_y = parent.winfo_y()
        parent_width = parent.winfo_width()
        parent_height = parent.winfo_height()
 
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = parent_x + (parent_width - window_width) // 2
        y = parent_y + (parent_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
 
    def save_changes(self):
        new_perms = [perm for perm, var in self.permission_vars.items() if var.get()]
 
        print((",".join(new_perms), self.username), '~~~~~~~~~~~~~~~'# 添加调试输出
 
        if not new_perms:
            messagebox.showwarning("错误", "必须至少选择一个权限")
            return
 
        # 修改后的代码
        result = self.db.execute_query(
            "UPDATE users SET permissions = ? WHERE username = ?",
            (",".join(new_perms), self.username)
 
        )
        print(f"[DEBUG] 更新权限结果: {result}"# 添加调试输出
 
        if result == 1:
            messagebox.showinfo("成功", "权限已更新")
            self.master.load_users()
            self.destroy()
        elif result == 0:
            messagebox.showerror("错误", "用户不存在或更新失败")
        else:
            messagebox.showerror("错误", f"更新失败,数据库错误: {result}")
 
 
# ====================== 登录窗口 ======================
class LoginWindow(tk.Toplevel):
    def __init__(self, parent, db):
        super().__init__(parent)
        self.db = db
        self.parent = parent
        self.title("用户登录")
        self.geometry("300x200")
 
        ttk.Label(self, text="用户名:").pack(pady=5)
        self.entry_username = ttk.Entry(self)
        self.entry_username.pack()
 
        ttk.Label(self, text="密码:").pack(pady=5)
        self.entry_password = ttk.Entry(self, show="*")
        self.entry_password.pack()
 
        ttk.Button(self, text="登录", command=self.authenticate).pack(pady=10)
        self.protocol("WM_DELETE_WINDOW", self.on_close)
 
        # 窗口居中
        self.update_idletasks()
        screen_width = self.winfo_screenwidth()
        screen_height = self.winfo_screenheight()
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = (screen_width - window_width) // 2
        y = (screen_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
 
    def authenticate(self):
        username = self.entry_username.get().strip()
        password = self.entry_password.get().strip()
 
        valid, name, department, permissions = self.db.authenticate(username, password)
        if valid:
            self.destroy()
            self.parent.deiconify()
            MainApplication(self.parent, self.db, name, department, permissions)
        else:
            messagebox.showerror("登录失败", "用户名或密码错误")
 
    def on_close(self):
        self.parent.destroy()
 
 
# ====================== 新增修改申请窗口 ======================
class ModifyWindow(tk.Toplevel):
    def __init__(self, parent, db, app_id, current_reason, user_name, user_perms, callback):
        super().__init__(parent)
        self.db = db
        self.app_id = app_id
        self.user_name = user_name
        self.callback = callback
        self.user_perms = user_perms
        self.title("修改申请事由")
        self.geometry("600x400")
 
        ttk.Label(self, text="申请事由:").pack(pady=5)
        self.text_reason = scrolledtext.ScrolledText(self, wrap=tk.WORD, height=10)
        self.text_reason.insert(tk.INSERT, current_reason)
        self.text_reason.pack(fill=tk.BOTH, expand=True, padx=10, pady=5)
 
        btn_frame = ttk.Frame(self)
        btn_frame.pack(pady=10)
        ttk.Button(btn_frame, text="提交修改", command=self.submit).pack(side=tk.LEFT, padx=5)
        ttk.Button(btn_frame, text="取消", command=self.destroy).pack(side=tk.LEFT, padx=5)
 
        # 窗口居中
        self.center_window(parent)
 
    def center_window(self, parent):
        self.update_idletasks()
        parent_x = parent.winfo_x()
        parent_y = parent.winfo_y()
        parent_width = parent.winfo_width()
        parent_height = parent.winfo_height()
 
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = parent_x + (parent_width - window_width) // 2
        y = parent_y + (parent_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
 
    def submit(self):
        new_reason = self.text_reason.get("1.0", tk.END).strip()
        if not new_reason:
            messagebox.showwarning("错误", "申请事由不能为空")
            return
 
        # 动态生成SQL条件
        if "管理" in self.user_perms:
            query = "UPDATE doc_applications SET reason=? WHERE id=? AND status='待审核'"
            params = (new_reason, self.app_id)
        else:
            query = """UPDATE doc_applications
                       SET reason=?
                       WHERE id=?
                         AND status='待审核'
                         AND applicant=?"""
            params = (new_reason, self.app_id, self.user_name)
 
        result = self.db.execute_query(query, params)
        if result == 1:
            messagebox.showinfo("成功", "修改申请成功")
            self.callback()
            self.destroy()
        else:
            messagebox.showerror("错误", "修改失败,请检查申请状态")
 
 
class ChangePasswordWindow(tk.Toplevel):
    def __init__(self, parent, db, username):
        super().__init__(parent)
        self.db = db
        self.username = username
        self.title("修改密码")
        self.geometry("350x220")
 
 
        form_frame = ttk.Frame(self)
        form_frame.pack(padx=10, pady=10, fill=tk.BOTH, expand=True)
 
        # 当前密码
        ttk.Label(form_frame, text="当前密码:").grid(row=0, column=0, padx=5, pady=5, sticky="e")
        self.entry_current = ttk.Entry(form_frame, show="*")
        self.entry_current.grid(row=0, column=1, padx=5, pady=5)
 
        # 新密码
        ttk.Label(form_frame, text="新密码:").grid(row=1, column=0, padx=5, pady=5, sticky="e")
        self.entry_new = ttk.Entry(form_frame, show="*")
        self.entry_new.grid(row=1, column=1, padx=5, pady=5)
 
        # 确认密码
        ttk.Label(form_frame, text="确认密码:").grid(row=2, column=0, padx=5, pady=5, sticky="e")
        self.entry_confirm = ttk.Entry(form_frame, show="*")
        self.entry_confirm.grid(row=2, column=1, padx=5, pady=5)
 
        btn_frame = ttk.Frame(self)
        btn_frame.pack(pady=5)
        ttk.Button(btn_frame, text="提交", command=self.submit).pack(side=tk.LEFT, padx=5)
        ttk.Button(btn_frame, text="取消", command=self.destroy).pack(side=tk.LEFT, padx=5)
 
    def submit(self):
        current_pw = self.entry_current.get().strip()
        new_pw = self.entry_new.get().strip()
        confirm_pw = self.entry_confirm.get().strip()
 
        if not all([current_pw, new_pw, confirm_pw]):
            messagebox.showwarning("错误", "所有字段必须填写")
            return
        if new_pw != confirm_pw:
            messagebox.showwarning("错误", "新密码不一致")
            self.clear_entries()
            return
 
        try:
            # 获取存储的哈希和盐
            result = self.db.execute_query(
                "SELECT password_hash, salt FROM users WHERE name = ?",
                (self.username,)
            )
            if result is None:
                messagebox.showerror("错误", "数据库查询失败,请检查连接")
                self.clear_entries()
                return
 
            stored_hash = result[0].password_hash
            old_salt = result[0].salt
 
            # 调试输出
            print(f"[DEBUG] 旧盐值: {old_salt} (长度: {len(old_salt)})")
            print(f"[DEBUG] 存储的哈希: {stored_hash}")
 
            # 验证当前密码
            current_hash, _ = PasswordUtils.hash_password(current_pw, old_salt)
            if current_hash != stored_hash:
                messagebox.showerror("错误", "当前密码不正确")
                self.clear_entries()
                return
            print(f"[DEBUG] 计算出的当前哈希: {current_hash}")
 
            # 生成新盐和新哈希
            new_salt = os.urandom(16).hex()
            new_hash, _ = PasswordUtils.hash_password(new_pw, new_salt)
 
            # 更新数据库并检查结果
            result = self.db.execute_query(
                "UPDATE users SET password_hash = ?, salt = ? WHERE name = ?",
                (new_hash, new_salt, self.username)
            )
            print(f"[DEBUG] 更新结果: {result} 行受影响")
 
            if result == 1:
                messagebox.showinfo("成功", "密码修改成功")
                self.destroy()
            else:
                messagebox.showerror("错误", "密码修改失败,请重试")
                self.clear_entries()
 
        except Exception as e:
            messagebox.showerror("错误", f"发生错误: {str(e)}")
            self.clear_entries()
            traceback.print_exc()
 
    def clear_entries(self):
        """清空所有输入框"""
        self.entry_current.delete(0, tk.END)
        self.entry_new.delete(0, tk.END)
        self.entry_confirm.delete(0, tk.END)
 
 
# ====================== 主应用程序界面 ======================
class MainApplication:
    def __init__(self, root, db, name, department, permissions):
        self.root = root
        self.db = db
        self.user_name = name
        self.department = department
        self.permissions = permissions
        self.root.title(f"单据管理系统 - {self.user_name} ({department})")
        self.root.geometry("1200x680")
        self.center_window()
 
        # 顶部操作栏
        self.top_frame = ttk.Frame(self.root)
        self.top_frame.pack(fill=tk.X, padx=10, pady=5)
 
 
 
        ttk.Label(self.top_frame, text=f"当前用户: {self.user_name} | 部门: {department}").pack(side=tk.LEFT)
        if "管理" in self.permissions:
            ttk.Button(self.top_frame, text="注册用户", command=self.open_register).pack(side=tk.LEFT, padx=5)
            ttk.Button(self.top_frame, text="用户管理", command=self.open_user_manager).pack(side=tk.LEFT)
 
        ttk.Button(self.top_frame, text="修改密码", command=self.open_change_password).pack(side=tk.LEFT, padx=5)
 
        # 初始化界面组件
        self.create_form()
        self.create_table()
        self.create_actions()
        self.load_data()
 
    def open_change_password(self):
        ChangePasswordWindow(self.root, self.db, self.user_name)
 
    def center_window(self):
        self.root.update_idletasks()
        screen_width = self.root.winfo_screenwidth()
        screen_height = self.root.winfo_screenheight()
        window_width = 1200
        window_height = 680
        x = (screen_width - window_width) // 2
        y = (screen_height - window_height) // 2
        self.root.geometry(f"{window_width}x{window_height}+{x}+{y}")
 
    def create_actions(self):
        btn_frame = ttk.Frame(self.root)
        btn_frame.pack(pady=10)
 
        self.action_buttons = {}
        actions = {
            "批准": ("审核", self.approve_application),
            "撤销": ("撤销", self.revoke_approval),
            "作废": ("作废", self.void_application),
            "修改": ("编辑", self.modify_application),  # 绑定编辑权限
            "刷新": (None, self.load_data),
            "详情": (None, self.show_detail)
        }
 
        # 只创建有权限的按钮
        for text, (perm, cmd) in actions.items():
            if perm is None or perm in self.permissions:
                btn = ttk.Button(btn_frame, text=text, command=cmd)
                btn.pack(side=tk.LEFT, padx=5)
                self.action_buttons[text] = btn
 
    # ======================
    def update_buttons(self, event=None):
        selection = self.tree.selection()
        current_status = ""
        current_applicant = ""
        if selection:
            values = self.tree.item(selection[0])["values"]
            current_status = values[-1].split()[-1# 获取状态
            current_applicant = values[2# 获取申请人
 
        # 更新修改按钮状态
        if "修改" in self.action_buttons:
            btn = self.action_buttons["修改"]
            has_edit = "编辑" in self.permissions
            is_self = current_applicant == self.user_name
            valid_status = current_status == "待审核"
 
            # 启用条件:有权限+待审核+(自己申请或管理权限)
            enable = has_edit and valid_status and (is_self or "管理" in self.permissions)
            btn.config(state=tk.NORMAL if enable else tk.DISABLED)
 
    #   ====================== 新增修改方法 ======================
 
    def modify_application(self):
        selected_id = self.get_selected_id()
        if not selected_id:
            return
 
        # 获取记录详情
        record = self.db.execute_query(
            "SELECT * FROM doc_applications WHERE id = ?",
            (selected_id,)
        )
        if not record:
            return
        record = record[0]
 
        # 权限验证(双重校验)
        if "编辑" not in self.permissions and "管理" not in self.permissions:
            messagebox.showwarning("权限不足", "您没有权限修改申请")
            return
 
        # 状态验证
        if record.status != "待审核":
            messagebox.showwarning("操作无效", "只能修改待审核的申请")
            return
 
        # 申请人验证(管理员可跳过)
        if record.applicant != self.user_name and "管理" not in self.permissions:
            messagebox.showwarning("操作受限", "只能修改自己提交的申请")
            return
 
        # 打开修改窗口(传递权限参数)
        ModifyWindow(
            self.root,
            self.db,
            selected_id,
            record.reason,
            self.user_name,
            self.permissions,  # 传递当前用户权限
            self.load_data
        )
 
    def update_buttons(self, event=None):
        selection = self.tree.selection()
        current_status = ""
        current_applicant = ""
        if selection:
            values = self.tree.item(selection[0])["values"]
            current_status = values[-1].split()[-1# 获取状态
            current_applicant = values[2# 获取申请人
 
        # 更新修改按钮状态
        if "修改" in self.action_buttons:
            btn = self.action_buttons["修改"]
            has_edit = "编辑" in self.permissions
            is_self = current_applicant == self.user_name
            valid_status = current_status == "待审核"
 
            # 启用条件:有权限+待审核+(自己申请或管理权限)
            enable = valid_status and ( (has_edit and is_self) or ("管理" in self.permissions) )
            btn.config(state=tk.NORMAL if enable else tk.DISABLED)
 
    def create_form(self):
        form_frame = ttk.LabelFrame(self.root, text="新建申请")
        form_frame.pack(fill=tk.X, padx=10, pady=5)
 
        fields = [
            ("单据类型", "combobox", ["差旅费", "办公用品", "采购", "其他"]),
            ("申请人", "entry"),
            ("申请部门", "combobox", DEPARTMENTS),
            ("申请金额", "entry"),
            ("申请事由", "text")
        ]
 
        self.widgets = {}
        for row, (label, widget_type, *args) in enumerate(fields):
            ttk.Label(form_frame, text=f"{label}:").grid(row=row, column=0, padx=5, pady=5, sticky=tk.E)
            if widget_type == "combobox":
                widget = ttk.Combobox(form_frame, values=args[0], state="readonly")
                if label == "申请部门":
                    widget.set(self.department)
                    # 设置为禁用状态
                    widget.config(state="disabled"# 修改点1
            elif widget_type == "entry":
                widget = ttk.Entry(form_frame)
                # 新增默认值设置
                if label == "申请金额":
                    widget.insert(0, "0"# 添加这行设置默认值
                # 自动填充申请人
                if label == "申请人":
                    widget.insert(0, self.user_name)
                    # 设置为禁用状态
                    widget.config(state="disabled"# 修改点2
            elif widget_type == "text":
                widget = tk.Text(form_frame, height=5, width=40)
            widget.grid(row=row, column=1, padx=5, pady=5, sticky=tk.W)
            self.widgets[label] = widget
 
        submit_btn = ttk.Button(form_frame, text="提交申请", command=self.submit_application,
                                state=tk.NORMAL if "申请" in self.permissions else tk.DISABLED)
        submit_btn.grid(row=5, column=1, pady=10, sticky=tk.W)
 
    def create_table(self):
        table_frame = ttk.LabelFrame(self.root, text="申请记录")
        table_frame.pack(fill=tk.BOTH, expand=True, padx=10, pady=5)
 
        columns = ("申请编号", "单据类型", "申请人", "申请部门", "申请日期", "申请金额", "申请事由", "审批状态")
        self.tree = ttk.Treeview(table_frame, columns=columns, show="headings")
 
        col_widths = [80, 100, 90, 110, 150, 90, 250, 120]
        for col, width in zip(columns, col_widths):
            self.tree.column(col, width=width, anchor=tk.CENTER)
            self.tree.heading(col, text=col)
 
        vsb = ttk.Scrollbar(table_frame, orient="vertical", command=self.tree.yview)
        self.tree.configure(yscrollcommand=vsb.set)
        self.tree.pack(side=tk.LEFT, fill=tk.BOTH, expand=True)
        vsb.pack(side=tk.RIGHT, fill=tk.Y)
 
        self.tree.bind("<<TreeviewSelect>>", self.update_buttons)
        self.tree.bind("<Double-1>", lambda e: self.show_detail())
 
    def load_data(self):
        for item in self.tree.get_children():
            self.tree.delete(item)
        records = self.db.execute_query("SELECT * FROM doc_applications ORDER BY apply_date DESC")
        if records:
            status_map = {
                '待审核': ('&#128993;', '待审核'),
                '已审核': ('&#128994;', '已批准'),
                'Rejected': ('&#128308;', '已驳回'),
                'Voided': ('&#9899;', '已作废')
            }
 
            for row in records:
                icon, text = status_map.get(row.status, ('&#9898;', row.status))
                # 处理金额显示
                amount_display = "***" if row.status == 'Voided' else f"&#165;{row.amount:.2f}"
                # 处理事由显示
                reason_display = "*****" if row.status == 'Voided' else (
                    row.reason[:35] + "..." if len(row.reason) > 35 else row.reason)
 
                self.tree.insert("", tk.END, values=(
                    row.id,
                    row.doc_type,
                    row.applicant,
                    row.department,
                    row.apply_date.strftime("%Y-%m-%d %H:%M"),
                    amount_display,  # 修改后的金额显示
                    reason_display,  # 修改后的事由显示
                    f"{icon} {text}"
                ))
 
    def submit_application(self):
        data = {
            "单据类型": self.widgets["单据类型"].get(),
            "申请人": self.widgets["申请人"].get().strip(),
            "申请部门": self.widgets["申请部门"].get(),
            "申请金额": self.widgets["申请金额"].get().strip(),
            "申请事由": self.widgets["申请事由"].get("1.0", tk.END).strip()
        }
 
        # 生成32位随机盐值
        salt = os.urandom(16).hex()  # 生成16字节随机数并转换为32位十六进制字符串
 
        try:
            amount = float(data["申请金额"])
            if amount <= 0# 修改为<=0
                raise ValueError
        except ValueError:
            messagebox.showwarning("输入错误", "金额必须为大于0的有效数字"# 修改提示信息
            return
 
        # 输入验证
        for field, value in data.items():
            if not value:
                messagebox.showwarning("输入错误", f"请填写{field}")
                return
 
        try:
            amount = float(data["申请金额"])
            if amount < 0:
                raise ValueError
        except ValueError:
            messagebox.showwarning("输入错误", "金额必须为有效正数")
            return
 
        # 修改插入语句包含salt字段
        result = self.db.execute_query(
            "INSERT INTO doc_applications (doc_type, applicant, department, apply_date, amount, reason, salt) "
            "VALUES (?, ?, ?, ?, ?, ?, ?)"# 添加salt字段
            (
                data["单据类型"],
                data["申请人"],
                data["申请部门"],
                datetime.now(),
                amount,
                data["申请事由"],
                salt  # 添加生成的盐值
            )
        )
 
        if result:
            messagebox.showinfo("提交成功", "申请已成功提交!")
            self.clear_form()
            self.load_data()
 
    def clear_form(self):
        for label, widget in self.widgets.items():
            if isinstance(widget, ttk.Combobox):
                if label == "申请部门":
                    widget.set(self.department)
                else:
                    widget.set('')
            elif isinstance(widget, tk.Text):
                widget.delete("1.0", tk.END)
            else:
                widget.delete(0, tk.END)
 
    def approve_application(self):
        selected_id = self.get_selected_id()
        if selected_id:
            result = self.db.execute_query(
                "UPDATE doc_applications SET status='已审核' WHERE id=? AND status='待审核'",
                (selected_id,)
            )
            if result == 1:
                self.load_data()
                messagebox.showinfo("操作成功", "申请已批准")
 
    def revoke_approval(self):
        selected_id = self.get_selected_id()
        if selected_id:
            result = self.db.execute_query(
                "UPDATE doc_applications SET status='待审核' WHERE id=? AND status='已审核'",
                (selected_id,)
            )
            if result == 1:
                self.load_data()
                messagebox.showinfo("操作成功", "批准已撤销")
 
    def void_application(self):
        selected_id = self.get_selected_id()
        if selected_id:
            if messagebox.askyesno("确认作废", "确定要作废此申请吗?"):
                result = self.db.execute_query(
                    "UPDATE doc_applications SET status='Voided' WHERE id=? AND status IN ('待审核', '已审核')",
                    (selected_id,)
                )
                if result == 1:
                    self.load_data()
                    messagebox.showinfo("操作成功", "申请已作废")
 
    def show_detail(self):
        selected_id = self.get_selected_id()
        if selected_id:
            record = self.db.execute_query(
                "SELECT * FROM doc_applications WHERE id = ?",
                (selected_id,)
            )
            if record:
                detail_win = tk.Toplevel(self.root)
                detail_win.title(f"申请详情 - ID: {selected_id}")
 
                text_area = scrolledtext.ScrolledText(detail_win, wrap=tk.WORD, width=80, height=20)
                text_area.pack(padx=10, pady=10)
 
                details = (
                        f"申请编号: {record[0].id}\n"
                        f"单据类型: {record[0].doc_type}\n"
                        f"申请人: {record[0].applicant}\n"
                        f"申请部门: {record[0].department}\n"
                        f"申请时间: {record[0].apply_date.strftime('%Y-%m-%d %H:%M:%S')}\n"
                        f"申请金额: &#165;{record[0].amount:.2f}\n"
                        f"当前状态: {record[0].status}\n\n"
                        "申请事由:\n" + record[0].reason
                )
                text_area.insert(tk.INSERT, details)
                text_area.config(state=tk.DISABLED)
 
    def get_selected_id(self):
        selection = self.tree.selection()
        if not selection:
            messagebox.showwarning("提示", "请先选择一条记录")
            return None
        return self.tree.item(selection[0])["values"][0]
 
    def open_register(self):
        RegisterWindow(self.root, self.db)
 
    def open_user_manager(self):
        UserManagerWindow(self.root, self.db)
 
 
# ====================== 主程序初始化 ======================
if __name__ == "__main__":
    try:
        def init_admin(db):
 
            # 清理旧管理员账户
            existing = db.execute_query("SELECT * FROM users WHERE username='admin'")
            password = "admin123"
            hashed_pw, salt = PasswordUtils.hash_password(password)
            print(f"[初始化] 管理员盐值: {salt} (长度: {len(salt)})")
            print(f"[初始化] 管理员哈希: {hashed_pw} (长度: {len(hashed_pw)})")
 
 
            # 仅当不存在时创建
            if not existing:
                print(f"[初始化] 创建管理员账户")
                db.execute_query(
                    "INSERT INTO users (username, password_hash, name, department, salt, permissions) "
                    "VALUES (?, ?, ?, ?, ?, ?)",
                    ("admin", hashed_pw, "系统管理员", "技术部", salt, "申请,审核,撤销,作废,管理")
                )
            else:
                print(f"[初始化] 管理员账户已存在,跳过创建")
 
 
        root = tk.Tk()
        root.withdraw()
 
        db = DatabaseManager()
        if db.connect() and db.init_db():
            init_admin(db)
            login_window = LoginWindow(root, db)
            login_window.mainloop()  # 新增登录窗口启动
        else:
            root.destroy()
    except Exception as e:
        traceback.print_exc()
        input("程序崩溃,按回车查看错误详情")
屏幕截图 2025-03-20 162432.png
屏幕截图 2025-03-20 1625131111111.png
屏幕截图 2025-03-20 162458.png

免费评分

参与人数 1威望 +1 吾爱币 +20 热心值 +1 收起 理由
苏紫方璇 + 1 + 20 + 1 感谢发布原创作品,吾爱破解论坛因你更精彩!

查看全部评分

本帖被以下淘专辑推荐:

发帖前要善用论坛搜索功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。

kexing 发表于 2025-3-21 14:54
我改用sqlite3数据库,简单运行了一下

[Python] 纯文本查看 复制代码
0001
0002
0003
0004
0005
0006
0007
0008
0009
0010
0011
0012
0013
0014
0015
0016
0017
0018
0019
0020
0021
0022
0023
0024
0025
0026
0027
0028
0029
0030
0031
0032
0033
0034
0035
0036
0037
0038
0039
0040
0041
0042
0043
0044
0045
0046
0047
0048
0049
0050
0051
0052
0053
0054
0055
0056
0057
0058
0059
0060
0061
0062
0063
0064
0065
0066
0067
0068
0069
0070
0071
0072
0073
0074
0075
0076
0077
0078
0079
0080
0081
0082
0083
0084
0085
0086
0087
0088
0089
0090
0091
0092
0093
0094
0095
0096
0097
0098
0099
0100
0101
0102
0103
0104
0105
0106
0107
0108
0109
0110
0111
0112
0113
0114
0115
0116
0117
0118
0119
0120
0121
0122
0123
0124
0125
0126
0127
0128
0129
0130
0131
0132
0133
0134
0135
0136
0137
0138
0139
0140
0141
0142
0143
0144
0145
0146
0147
0148
0149
0150
0151
0152
0153
0154
0155
0156
0157
0158
0159
0160
0161
0162
0163
0164
0165
0166
0167
0168
0169
0170
0171
0172
0173
0174
0175
0176
0177
0178
0179
0180
0181
0182
0183
0184
0185
0186
0187
0188
0189
0190
0191
0192
0193
0194
0195
0196
0197
0198
0199
0200
0201
0202
0203
0204
0205
0206
0207
0208
0209
0210
0211
0212
0213
0214
0215
0216
0217
0218
0219
0220
0221
0222
0223
0224
0225
0226
0227
0228
0229
0230
0231
0232
0233
0234
0235
0236
0237
0238
0239
0240
0241
0242
0243
0244
0245
0246
0247
0248
0249
0250
0251
0252
0253
0254
0255
0256
0257
0258
0259
0260
0261
0262
0263
0264
0265
0266
0267
0268
0269
0270
0271
0272
0273
0274
0275
0276
0277
0278
0279
0280
0281
0282
0283
0284
0285
0286
0287
0288
0289
0290
0291
0292
0293
0294
0295
0296
0297
0298
0299
0300
0301
0302
0303
0304
0305
0306
0307
0308
0309
0310
0311
0312
0313
0314
0315
0316
0317
0318
0319
0320
0321
0322
0323
0324
0325
0326
0327
0328
0329
0330
0331
0332
0333
0334
0335
0336
0337
0338
0339
0340
0341
0342
0343
0344
0345
0346
0347
0348
0349
0350
0351
0352
0353
0354
0355
0356
0357
0358
0359
0360
0361
0362
0363
0364
0365
0366
0367
0368
0369
0370
0371
0372
0373
0374
0375
0376
0377
0378
0379
0380
0381
0382
0383
0384
0385
0386
0387
0388
0389
0390
0391
0392
0393
0394
0395
0396
0397
0398
0399
0400
0401
0402
0403
0404
0405
0406
0407
0408
0409
0410
0411
0412
0413
0414
0415
0416
0417
0418
0419
0420
0421
0422
0423
0424
0425
0426
0427
0428
0429
0430
0431
0432
0433
0434
0435
0436
0437
0438
0439
0440
0441
0442
0443
0444
0445
0446
0447
0448
0449
0450
0451
0452
0453
0454
0455
0456
0457
0458
0459
0460
0461
0462
0463
0464
0465
0466
0467
0468
0469
0470
0471
0472
0473
0474
0475
0476
0477
0478
0479
0480
0481
0482
0483
0484
0485
0486
0487
0488
0489
0490
0491
0492
0493
0494
0495
0496
0497
0498
0499
0500
0501
0502
0503
0504
0505
0506
0507
0508
0509
0510
0511
0512
0513
0514
0515
0516
0517
0518
0519
0520
0521
0522
0523
0524
0525
0526
0527
0528
0529
0530
0531
0532
0533
0534
0535
0536
0537
0538
0539
0540
0541
0542
0543
0544
0545
0546
0547
0548
0549
0550
0551
0552
0553
0554
0555
0556
0557
0558
0559
0560
0561
0562
0563
0564
0565
0566
0567
0568
0569
0570
0571
0572
0573
0574
0575
0576
0577
0578
0579
0580
0581
0582
0583
0584
0585
0586
0587
0588
0589
0590
0591
0592
0593
0594
0595
0596
0597
0598
0599
0600
0601
0602
0603
0604
0605
0606
0607
0608
0609
0610
0611
0612
0613
0614
0615
0616
0617
0618
0619
0620
0621
0622
0623
0624
0625
0626
0627
0628
0629
0630
0631
0632
0633
0634
0635
0636
0637
0638
0639
0640
0641
0642
0643
0644
0645
0646
0647
0648
0649
0650
0651
0652
0653
0654
0655
0656
0657
0658
0659
0660
0661
0662
0663
0664
0665
0666
0667
0668
0669
0670
0671
0672
0673
0674
0675
0676
0677
0678
0679
0680
0681
0682
0683
0684
0685
0686
0687
0688
0689
0690
0691
0692
0693
0694
0695
0696
0697
0698
0699
0700
0701
0702
0703
0704
0705
0706
0707
0708
0709
0710
0711
0712
0713
0714
0715
0716
0717
0718
0719
0720
0721
0722
0723
0724
0725
0726
0727
0728
0729
0730
0731
0732
0733
0734
0735
0736
0737
0738
0739
0740
0741
0742
0743
0744
0745
0746
0747
0748
0749
0750
0751
0752
0753
0754
0755
0756
0757
0758
0759
0760
0761
0762
0763
0764
0765
0766
0767
0768
0769
0770
0771
0772
0773
0774
0775
0776
0777
0778
0779
0780
0781
0782
0783
0784
0785
0786
0787
0788
0789
0790
0791
0792
0793
0794
0795
0796
0797
0798
0799
0800
0801
0802
0803
0804
0805
0806
0807
0808
0809
0810
0811
0812
0813
0814
0815
0816
0817
0818
0819
0820
0821
0822
0823
0824
0825
0826
0827
0828
0829
0830
0831
0832
0833
0834
0835
0836
0837
0838
0839
0840
0841
0842
0843
0844
0845
0846
0847
0848
0849
0850
0851
0852
0853
0854
0855
0856
0857
0858
0859
0860
0861
0862
0863
0864
0865
0866
0867
0868
0869
0870
0871
0872
0873
0874
0875
0876
0877
0878
0879
0880
0881
0882
0883
0884
0885
0886
0887
0888
0889
0890
0891
0892
0893
0894
0895
0896
0897
0898
0899
0900
0901
0902
0903
0904
0905
0906
0907
0908
0909
0910
0911
0912
0913
0914
0915
0916
0917
0918
0919
0920
0921
0922
0923
0924
0925
0926
0927
0928
0929
0930
0931
0932
0933
0934
0935
0936
0937
0938
0939
0940
0941
0942
0943
0944
0945
0946
0947
0948
0949
0950
0951
0952
0953
0954
0955
0956
0957
0958
0959
0960
0961
0962
0963
0964
0965
0966
0967
0968
0969
0970
0971
0972
0973
0974
0975
0976
0977
0978
0979
0980
0981
0982
0983
0984
0985
0986
0987
0988
0989
0990
0991
0992
0993
0994
0995
0996
0997
0998
0999
1000
1001
1002
1003
1004
1005
1006
1007
1008
1009
1010
1011
1012
1013
1014
1015
1016
1017
1018
1019
1020
1021
1022
1023
1024
1025
1026
1027
1028
1029
1030
import tkinter as tk
from tkinter import ttk, messagebox, scrolledtext
from datetime import datetime
import hashlib
import os
import traceback
import sqlite3
from sqlite3 import Error
  
# ====================== 数据库配置 ======================
DB_CONFIG = {
    'database': 'sysobjects.db',
}
 
DEPARTMENTS = ["技术部", "市场部", "财务部", "人力资源部", "产品部", "销售部", "客服部"]
PERMISSIONS_LIST = ["申请", "审核", "撤销", "作废", "管理", "编辑"# 添加编辑权限
  
  
# ====================== 密码工具类 ======================
class PasswordUtils:
    @staticmethod
    def hash_password(password: str, salt: str = None) -> tuple:
        if not salt:
            salt = os.urandom(16).hex()  # 生成新盐
        else# 使用现有盐
            if len(salt) != 32:
                raise ValueError("盐值必须为32位十六进制字符串")
  
        salt_bytes = bytes.fromhex(salt)
        dk = hashlib.pbkdf2_hmac('sha256', password.encode(), salt_bytes, 100000)
        return dk.hex(), salt  # 始终返回传入的salt(当提供时)
  
  
# ====================== 数据库管理类 ======================
class DatabaseManager:
    def __init__(self):
        self.conn_str = DB_CONFIG['database']
        self.conn = None
        self.connect()
 
    def connect(self):
        try:
            self.conn = sqlite3.connect(self.conn_str)
            return True
        except Error as e:
            messagebox.showerror("连接失败", f"数据库连接错误: {str(e)}")
            return False
 
    def init_db(self):
        try:
            cursor = self.conn.cursor()
            # 创建用户表(包含盐值字段)
            cursor.execute("""
                CREATE TABLE IF NOT EXISTS users (
                    user_id INTEGER PRIMARY KEY AUTOINCREMENT,
                    username TEXT UNIQUE NOT NULL,
                    password_hash TEXT NOT NULL,
                    name TEXT NOT NULL,
                    department TEXT NOT NULL,
                    salt TEXT NOT NULL,
                    permissions TEXT NOT NULL
                )
            """)
            # 新增单据申请表(关键修复)
            cursor.execute("""
                CREATE TABLE IF NOT EXISTS doc_applications (
                    id INTEGER PRIMARY KEY AUTOINCREMENT,
                    doc_type TEXT NOT NULL,
                    applicant TEXT NOT NULL,
                    department TEXT NOT NULL,
                    apply_date DATETIME NOT NULL,
                    amount REAL NOT NULL,
                    reason TEXT NOT NULL,
                    status TEXT NOT NULL DEFAULT '待审核',
                    salt TEXT CHECK (LENGTH(salt)=32) NOT NULL 
                )
            """)
            self.conn.commit()
            return True
        except Error as e:
            self.conn.rollback()
            messagebox.showerror("初始化失败", f"数据库初始化错误: {str(e)}")
            print(e)
            return False
 
    def execute_query(self, query: str, params=None):
        try:
            cursor = self.conn.cursor()
            print(f"[DEBUG] 执行查询: {query}")
            print(f"[DEBUG] 参数: {params}"
            if params:
                cursor.execute(query, params)
            else:
                cursor.execute(query)
            if cursor.description:
                result = cursor.fetchall()
                print(f"[DEBUG] 查询结果: {result}")
            else:
                self.conn.commit()
                result = cursor.rowcount
            return result
        except Error as e:
            print(f"[ERROR] 数据库错误: {str(e)}")
            self.conn.rollback()
            messagebox.showerror("查询错误", f"执行SQL失败: {str(e)}")
            return None
 
    def authenticate(self, username: str, password: str) -> tuple:
        result = self.execute_query(
            "SELECT password_hash, salt, name, department, permissions FROM users WHERE username = ?",
            (username,)
        )
        if result:
            stored_hash = result[0][0]
            salt = result[0][1]
 
            print(f"[认证] 盐值: {salt} (长度: {len(salt)})")
            print(f"[认证] 存储哈希: {stored_hash} (长度: {len(stored_hash)})")
            try:
                # 确保salt为32位十六进制
                if len(salt) != 32:
                    raise ValueError(f"无效的盐值长度: {len(salt)},应为32位")
                input_hash, _ = PasswordUtils.hash_password(password, salt)
                print(f"[认证] 计算哈希: {input_hash} (长度: {len(input_hash)})")
                return (input_hash == stored_hash), result[0][2], result[0][3], result[0][4].split(",")
            except ValueError as e:
                print(f"[错误] 盐值验证失败: {str(e)}")
                return False, None, None, []
        return False, None, None, []
  
  
# ====================== 注册窗口 ======================
class RegisterWindow(tk.Toplevel):
    def __init__(self, parent, db):
        super().__init__(parent)
        self.db = db
        self.title("用户注册")
        self.geometry("400x300")
  
        # 主容器框架(实现双重视觉居中)
        main_frame = ttk.Frame(self)
        main_frame.place(relx=0.5, rely=0.5, anchor="center")
  
        # 表单容器
        form_frame = ttk.Frame(main_frame)
        form_frame.grid(row=0, column=0, sticky="")
  
        # 统一控件参数
        label_width = 8
        entry_width = 20
        combo_width = 18
        pad = 5
  
        # 用户名
        ttk.Label(form_frame, text="用户名:", width=label_width, anchor="e").grid(
            row=0, column=0, padx=pad, pady=pad, sticky="e")
        self.entry_username = ttk.Entry(form_frame, width=entry_width)
        self.entry_username.grid(row=0, column=1, padx=pad, pady=pad, sticky="w")
  
        # 密码
        ttk.Label(form_frame, text="密码:", width=label_width, anchor="e").grid(
            row=1, column=0, padx=pad, pady=pad, sticky="e")
        self.entry_password = ttk.Entry(form_frame, show="*", width=entry_width)
        self.entry_password.grid(row=1, column=1, padx=pad, pady=pad, sticky="w")
  
        # 确认密码
        ttk.Label(form_frame, text="确认密码:", width=label_width, anchor="e").grid(
            row=2, column=0, padx=pad, pady=pad, sticky="e")
        self.entry_confirm = ttk.Entry(form_frame, show="*", width=entry_width)
        self.entry_confirm.grid(row=2, column=1, padx=pad, pady=pad, sticky="w")
  
        # 姓名
        ttk.Label(form_frame, text="姓名:", width=label_width, anchor="e").grid(
            row=3, column=0, padx=pad, pady=pad, sticky="e")
        self.entry_name = ttk.Entry(form_frame, width=entry_width)
        self.entry_name.grid(row=3, column=1, padx=pad, pady=pad, sticky="w")
  
        # 部门
        ttk.Label(form_frame, text="部门:", width=label_width, anchor="e").grid(
            row=4, column=0, padx=pad, pady=pad, sticky="e")
        self.combo_department = ttk.Combobox(form_frame, width=combo_width,
                                             values=DEPARTMENTS, state="readonly")
        self.combo_department.grid(row=4, column=1, padx=pad, pady=pad, sticky="w")
  
        # 权限(最终修改版)
        ttk.Label(form_frame, text="权限:", width=label_width, anchor="e").grid(
            row=5, column=0, padx=pad, pady=pad, sticky="e"
  
        perm_frame = ttk.Frame(form_frame)
        perm_frame.grid(row=5, column=1, padx=(3, pad), pady=pad, sticky="w"
  
        self.permission_vars = {perm: tk.BooleanVar() for perm in PERMISSIONS_LIST}
        for perm in PERMISSIONS_LIST:
            cb = ttk.Checkbutton(perm_frame, text=perm, variable=self.permission_vars[perm])
            cb.pack(side=tk.LEFT, padx=2)
  
        # 提交按钮(单独设置居中)
        btn_frame = ttk.Frame(main_frame)
        btn_frame.grid(row=1, column=0, pady=15)
        ttk.Button(btn_frame, text="提交注册", command=self.submit).pack()
  
        # 窗口居中
        self.update_idletasks()
        parent_x = parent.winfo_x()
        parent_y = parent.winfo_y()
        parent_width = parent.winfo_width()
        parent_height = parent.winfo_height()
  
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = parent_x + (parent_width - window_width) // 2
        y = parent_y + (parent_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
  
        # 保持窗口在最前
        self.transient(parent)
        self.grab_set()
        self.focus_force()
  
    def submit(self):
        # 获取所有字段
        name = self.entry_name.get().strip()
        username = self.entry_username.get().strip()
        password = self.entry_password.get().strip()
        confirm = self.entry_confirm.get().strip()
        department = self.combo_department.get()
        permissions = [perm for perm, var in self.permission_vars.items() if var.get()]
  
        # 验证字段
        if not all([name, username, password, confirm, department]):
            messagebox.showwarning("输入错误", "所有字段必须填写")
            return
        if password != confirm:
            messagebox.showwarning("输入错误", "两次密码不一致")
            return
        if not permissions:
            messagebox.showwarning("输入错误", "至少选择一个权限")
            return
  
        # 检查用户名是否存在
        if self.db.execute_query("SELECT username FROM users WHERE username = ?", (username,)):
            messagebox.showwarning("错误", "用户名已存在")
            return
  
        # 哈希密码并插入数据库
        hashed_pw, salt = PasswordUtils.hash_password(password)
        result = self.db.execute_query(
            "INSERT INTO users (username, password_hash, name, department, salt, permissions) VALUES (?, ?, ?, ?, ?, ?)",
            (username, hashed_pw, name, department, salt, ",".join(permissions))
        )
        if result is not None:
            messagebox.showinfo("成功", "用户注册成功")
            self.destroy()
  
  
# ====================== 用户管理窗口 ======================
class UserManagerWindow(tk.Toplevel):
    def __init__(self, parent, db):
        super().__init__(parent)
        self.db = db
        self.title("用户管理")
        self.geometry("1000x400")
  
        # 添加姓名列
        self.tree = ttk.Treeview(self, columns=("用户名", "姓名", "部门", "权限"), show="headings")
        self.tree.heading("用户名", text="用户名")
        self.tree.heading("姓名", text="姓名")
        self.tree.heading("部门", text="部门")
        self.tree.heading("权限", text="权限")
        self.tree.column("用户名", width=120)
        self.tree.column("姓名", width=100)
        self.tree.column("部门", width=120)
        self.tree.column("权限", width=600)
        self.tree.pack(fill=tk.BOTH, expand=True, padx=10, pady=10)
  
        btn_frame = ttk.Frame(self)
        btn_frame.pack(pady=5)
        ttk.Button(btn_frame, text="刷新", command=self.load_users).pack(side=tk.LEFT, padx=5)
        ttk.Button(btn_frame, text="修改权限", command=self.open_edit_window).pack(side=tk.LEFT, padx=5)
  
        self.load_users()
        self.center_window(parent)
  
    def center_window(self, parent):
        self.update_idletasks()
        parent_x = parent.winfo_x()
        parent_y = parent.winfo_y()
        parent_width = parent.winfo_width()
        parent_height = parent.winfo_height()
  
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = parent_x + (parent_width - window_width) // 2
        y = parent_y + (parent_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
  
    def load_users(self):
        for item in self.tree.get_children():
            self.tree.delete(item)
        users = self.db.execute_query("SELECT username, name, department, permissions FROM users")
        if users:
            for user in users:
                print(f"用户名: {user[0]}, 姓名: {user[1]}"
                # 确认插入顺序为:用户名、姓名、部门、权限
                self.tree.insert("", tk.END, values=(
                    user[0],  # username
                    user[1],  # name
                    user[2],  # department
                    user[3]   # permissions
                ))
  
    def open_edit_window(self):
        selected = self.tree.selection()
        if not selected:
            messagebox.showwarning("提示", "请先选择一个用户")
            return
        username = self.tree.item(selected[0])["values"][0]
        UserEditWindow(self, self.db, username)
        print(username, UserEditWindow, '#######################')
  
  
# ====================== 权限编辑窗口 ======================
class UserEditWindow(tk.Toplevel):
    def __init__(self, parent, db, username):
        super().__init__(parent)
        self.db = db
        self.username = username
        self.title(f"编辑用户权限 - {username}")
        self.geometry("400x300")
 
        ttk.Label(self, text="用户名:").pack(pady=5)
        ttk.Label(self, text=username).pack()
 
        # 获取用户数据
        user_data = self.db.execute_query(
            "SELECT name, department, permissions FROM users WHERE username = ?",
            (username,)
        )[0]
 
        ttk.Label(self, text="姓名:").pack(pady=5)
        ttk.Label(self, text=user_data[0]).pack()
 
        ttk.Label(self, text="部门:").pack(pady=5)
        ttk.Label(self, text=user_data[1]).pack()
 
        ttk.Label(self, text="权限:").pack(pady=5)
        self.permission_vars = {perm: tk.BooleanVar() for perm in PERMISSIONS_LIST}
        current_perms = user_data[2].split(",")
 
        perm_frame = ttk.Frame(self)
        perm_frame.pack()
        for perm in PERMISSIONS_LIST:
            cb = ttk.Checkbutton(perm_frame, text=perm, variable=self.permission_vars[perm])
            cb.pack(side=tk.LEFT, padx=5)
            if perm in current_perms:
                self.permission_vars[perm].set(True)
 
        ttk.Button(self, text="保存修改", command=self.save_changes).pack(pady=15)
        self.center_window(parent)
 
    def center_window(self, parent):
        self.update_idletasks()
        parent_x = parent.winfo_x()
        parent_y = parent.winfo_y()
        parent_width = parent.winfo_width()
        parent_height = parent.winfo_height()
 
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = parent_x + (parent_width - window_width) // 2
        y = parent_y + (parent_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
 
    def save_changes(self):
        new_perms = [perm for perm, var in self.permission_vars.items() if var.get()]
 
        print((",".join(new_perms), self.username), '~~~~~~~~~~~~~~~')
 
        if not new_perms:
            messagebox.showwarning("错误", "必须至少选择一个权限")
            return
 
        # 修改后的代码
        result = self.db.execute_query(
            "UPDATE users SET permissions = ? WHERE username = ?",
            (",".join(new_perms), self.username)
        )
        print(f"[DEBUG] 更新权限结果: {result}")
 
        if result == 1:
            messagebox.showinfo("成功", "权限已更新")
            self.master.load_users()
            self.destroy()
        elif result == 0:
            messagebox.showerror("错误", "用户不存在或更新失败")
        else:
            messagebox.showerror("错误", f"更新失败,数据库错误: {result}")
  
  
# ====================== 登录窗口 ======================
class LoginWindow(tk.Toplevel):
    def __init__(self, parent, db):
        super().__init__(parent)
        self.db = db
        self.parent = parent
        self.title("用户登录")
        self.geometry("300x200")
  
        ttk.Label(self, text="用户名:").grid(row=1, column=0, padx=30, pady=20, sticky=(tk.E))
        self.entry_username = ttk.Entry(self)
        self.entry_username.grid(row=1, column=1)
  
        ttk.Label(self, text="密码:").grid(row=2, column=0, padx=30, pady=10, sticky=(tk.E))
        self.entry_password = ttk.Entry(self, show="*")
        self.entry_password.grid(row=2, column=1)
  
        ttk.Button(self, text="登录", command=self.authenticate).grid(row=3, column=1, pady=20, sticky=(tk.W))
        self.protocol("WM_DELETE_WINDOW", self.on_close)
  
        # 窗口居中
        self.update_idletasks()
        screen_width = self.winfo_screenwidth()
        screen_height = self.winfo_screenheight()
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = (screen_width - window_width) // 2
        y = (screen_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
  
    def authenticate(self):
        username = self.entry_username.get().strip()
        password = self.entry_password.get().strip()
  
        valid, name, department, permissions = self.db.authenticate(username, password)
        if valid:
            self.destroy()
            self.parent.deiconify()
            MainApplication(self.parent, self.db, name, department, permissions)
        else:
            messagebox.showerror("登录失败", "用户名或密码错误")
  
    def on_close(self):
        self.parent.destroy()
  
  
# ====================== 新增修改申请窗口 ======================
class ModifyWindow(tk.Toplevel):
    def __init__(self, parent, db, app_id, current_reason, user_name, user_perms, callback):
        super().__init__(parent)
        self.db = db
        self.app_id = app_id
        self.user_name = user_name
        self.callback = callback
        self.user_perms = user_perms
        self.title("修改申请事由")
        self.geometry("600x400")
  
        ttk.Label(self, text="申请事由:").pack(pady=5)
        self.text_reason = scrolledtext.ScrolledText(self, wrap=tk.WORD, height=10)
        self.text_reason.insert(tk.INSERT, current_reason)
        self.text_reason.pack(fill=tk.BOTH, expand=True, padx=10, pady=5)
  
        btn_frame = ttk.Frame(self)
        btn_frame.pack(pady=10)
        ttk.Button(btn_frame, text="提交修改", command=self.submit).pack(side=tk.LEFT, padx=5)
        ttk.Button(btn_frame, text="取消", command=self.destroy).pack(side=tk.LEFT, padx=5)
  
        # 窗口居中
        self.center_window(parent)
  
    def center_window(self, parent):
        self.update_idletasks()
        parent_x = parent.winfo_x()
        parent_y = parent.winfo_y()
        parent_width = parent.winfo_width()
        parent_height = parent.winfo_height()
  
        window_width = self.winfo_reqwidth()
        window_height = self.winfo_reqheight()
        x = parent_x + (parent_width - window_width) // 2
        y = parent_y + (parent_height - window_height) // 2
        self.geometry(f"+{x}+{y}")
  
    def submit(self):
        new_reason = self.text_reason.get("1.0", tk.END).strip()
        if not new_reason:
            messagebox.showwarning("错误", "申请事由不能为空")
            return
  
        # 动态生成SQL条件
        if "管理" in self.user_perms:
            query = "UPDATE doc_applications SET reason=? WHERE id=? AND status='待审核'"
            params = (new_reason, self.app_id)
        else:
            query = """UPDATE doc_applications
                       SET reason=?
                       WHERE id=?
                         AND status='待审核'
                         AND applicant=?"""
            params = (new_reason, self.app_id, self.user_name)
  
        result = self.db.execute_query(query, params)
        if result == 1:
            messagebox.showinfo("成功", "修改申请成功")
            self.callback()
            self.destroy()
        else:
            messagebox.showerror("错误", "修改失败,请检查申请状态")
  
  
class ChangePasswordWindow(tk.Toplevel):
    def __init__(self, parent, db, username):
        super().__init__(parent)
        self.db = db
        self.username = username
        self.title("修改密码")
        self.geometry("350x220")
 
        form_frame = ttk.Frame(self)
        form_frame.pack(padx=10, pady=10, fill=tk.BOTH, expand=True)
 
        # 当前密码
        ttk.Label(form_frame, text="当前密码:").grid(row=0, column=0, padx=10, pady=10, sticky="e")
        self.entry_current = ttk.Entry(form_frame, show="*")
        self.entry_current.grid(row=0, column=1, padx=10, pady=10)
 
        # 新密码
        ttk.Label(form_frame, text="新密码:").grid(row=1, column=0, padx=10, pady=10, sticky="e")
        self.entry_new = ttk.Entry(form_frame, show="*")
        self.entry_new.grid(row=1, column=1, padx=10, pady=10)
 
        # 确认密码
        ttk.Label(form_frame, text="确认密码:").grid(row=2, column=0, padx=10, pady=10, sticky="e")
        self.entry_confirm = ttk.Entry(form_frame, show="*")
        self.entry_confirm.grid(row=2, column=1, padx=10, pady=10)
 
        btn_frame = ttk.Frame(self)
        btn_frame.pack(pady=5)
        ttk.Button(btn_frame, text="提交", command=self.submit).pack(side=tk.LEFT, padx=5)
        ttk.Button(btn_frame, text="取消", command=self.destroy).pack(side=tk.LEFT, padx=5)
 
    def submit(self):
        current_pw = self.entry_current.get().strip()
        new_pw = self.entry_new.get().strip()
        confirm_pw = self.entry_confirm.get().strip()
 
        if not all([current_pw, new_pw, confirm_pw]):
            messagebox.showwarning("错误", "所有字段必须填写")
            return
        if new_pw != confirm_pw:
            messagebox.showwarning("错误", "新密码不一致")
            self.clear_entries()
            return
 
        try:
            # 获取存储的哈希和盐
            result = self.db.execute_query(
                "SELECT password_hash, salt FROM users WHERE username = ?",
                (self.username,)
            )
            if result is None:
                messagebox.showerror("错误", "数据库查询失败,请检查连接")
                self.clear_entries()
                return
 
            stored_hash = result[0][0]
            old_salt = result[0][1]
 
            # 调试输出
            print(f"[DEBUG] 旧盐值: {old_salt} (长度: {len(old_salt)})")
            print(f"[DEBUG] 存储的哈希: {stored_hash}")
 
            # 验证当前密码
            current_hash, _ = PasswordUtils.hash_password(current_pw, old_salt)
            if current_hash != stored_hash:
                messagebox.showerror("错误", "当前密码不正确")
                self.clear_entries()
                return
            print(f"[DEBUG] 计算出的当前哈希: {current_hash}")
 
            # 生成新盐和新哈希
            new_salt = os.urandom(16).hex()
            new_hash, _ = PasswordUtils.hash_password(new_pw, new_salt)
 
            # 更新数据库并检查结果
            result = self.db.execute_query(
                "UPDATE users SET password_hash = ?, salt = ? WHERE username = ?",
                (new_hash, new_salt, self.username)
            )
            print(f"[DEBUG] 更新结果: {result} 行受影响")
 
            if result == 1:
                messagebox.showinfo("成功", "密码修改成功")
                self.destroy()
            else:
                messagebox.showerror("错误", "密码修改失败,请重试")
                self.clear_entries()
 
        except Exception as e:
            messagebox.showerror("错误", f"发生错误: {str(e)}")
            self.clear_entries()
            traceback.print_exc()
 
    def clear_entries(self):
        """清空所有输入框"""
        self.entry_current.delete(0, tk.END)
        self.entry_new.delete(0, tk.END)
        self.entry_confirm.delete(0, tk.END)
  
  
# ====================== 主应用程序界面 ======================
class MainApplication:
    def __init__(self, root, db, name, department, permissions):
        self.root = root
        self.db = db
        self.user_name = name
        self.department = department
        self.permissions = permissions
        self.root.title(f"单据管理系统 - {self.user_name} ({department})")
        self.root.geometry("1200x680")
        self.center_window()
  
        # 顶部操作栏
        self.top_frame = ttk.Frame(self.root)
        self.top_frame.pack(fill=tk.X, padx=10, pady=5)
 
        ttk.Label(self.top_frame, text=f"当前用户: {self.user_name} | 部门: {department}").pack(side=tk.LEFT)
        if "管理" in self.permissions:
            ttk.Button(self.top_frame, text="注册用户", command=self.open_register).pack(side=tk.LEFT, padx=5)
            ttk.Button(self.top_frame, text="用户管理", command=self.open_user_manager).pack(side=tk.LEFT)
  
        ttk.Button(self.top_frame, text="修改密码", command=self.open_change_password).pack(side=tk.LEFT, padx=5)
  
        # 初始化界面组件
        self.create_form()
        self.create_table()
        self.create_actions()
        self.load_data()
  
    def open_change_password(self):
        ChangePasswordWindow(self.root, self.db, self.user_name)
  
    def center_window(self):
        self.root.update_idletasks()
        screen_width = self.root.winfo_screenwidth()
        screen_height = self.root.winfo_screenheight()
        window_width = 1200
        window_height = 680
        x = (screen_width - window_width) // 2
        y = (screen_height - window_height) // 2
        self.root.geometry(f"{window_width}x{window_height}+{x}+{y}")
  
    def create_actions(self):
        btn_frame = ttk.Frame(self.root)
        btn_frame.pack(pady=10)
  
        self.action_buttons = {}
        actions = {
            "批准": ("审核", self.approve_application),
            "撤销": ("撤销", self.revoke_approval),
            "作废": ("作废", self.void_application),
            "修改": ("编辑", self.modify_application),  # 绑定编辑权限
            "刷新": (None, self.load_data),
            "详情": (None, self.show_detail)
        }
  
        # 只创建有权限的按钮
        for text, (perm, cmd) in actions.items():
            if perm is None or perm in self.permissions:
                btn = ttk.Button(btn_frame, text=text, command=cmd)
                btn.pack(side=tk.LEFT, padx=5)
                self.action_buttons[text] = btn
  
    # ======================
    def update_buttons(self, event=None):
        selection = self.tree.selection()
        current_status = ""
        current_applicant = ""
        if selection:
            values = self.tree.item(selection[0])["values"]
            current_status = values[-1].split()[-1# 获取状态
            current_applicant = values[2# 获取申请人
  
        # 更新修改按钮状态
        if "修改" in self.action_buttons:
            btn = self.action_buttons["修改"]
            has_edit = "编辑" in self.permissions
            is_self = current_applicant == self.user_name
            valid_status = current_status == "待审核"
  
            # 启用条件:有权限+待审核+(自己申请或管理权限)
            enable = has_edit and valid_status and (is_self or "管理" in self.permissions)
            btn.config(state=tk.NORMAL if enable else tk.DISABLED)
  
    #   ====================== 新增修改方法 ======================
  
    def modify_application(self):
        selected_id = self.get_selected_id()
        if not selected_id:
            return
  
        # 获取记录详情
        record = self.db.execute_query(
            "SELECT * FROM doc_applications WHERE id = ?",
            (selected_id,)
        )
        if not record:
            return
        record = record[0]
  
        # 权限验证(双重校验)
        if "编辑" not in self.permissions and "管理" not in self.permissions:
            messagebox.showwarning("权限不足", "您没有权限修改申请")
            return
  
        # 状态验证
        if record.status != "待审核":
            messagebox.showwarning("操作无效", "只能修改待审核的申请")
            return
  
        # 申请人验证(管理员可跳过)
        if record.applicant != self.user_name and "管理" not in self.permissions:
            messagebox.showwarning("操作受限", "只能修改自己提交的申请")
            return
  
        # 打开修改窗口(传递权限参数)
        ModifyWindow(
            self.root,
            self.db,
            selected_id,
            record.reason,
            self.user_name,
            self.permissions,  # 传递当前用户权限
            self.load_data
        )
  
    def update_buttons(self, event=None):
        selection = self.tree.selection()
        current_status = ""
        current_applicant = ""
        if selection:
            values = self.tree.item(selection[0])["values"]
            current_status = values[-1].split()[-1# 获取状态
            current_applicant = values[2# 获取申请人
  
        # 更新修改按钮状态
        if "修改" in self.action_buttons:
            btn = self.action_buttons["修改"]
            has_edit = "编辑" in self.permissions
            is_self = current_applicant == self.user_name
            valid_status = current_status == "待审核"
  
            # 启用条件:有权限+待审核+(自己申请或管理权限)
            enable = valid_status and ( (has_edit and is_self) or ("管理" in self.permissions) )
            btn.config(state=tk.NORMAL if enable else tk.DISABLED)
  
    def create_form(self):
        form_frame = ttk.LabelFrame(self.root, text="新建申请")
        form_frame.pack(fill=tk.X, padx=10, pady=5)
  
        fields = [
            ("单据类型", "combobox", ["差旅费", "办公用品", "采购", "其他"]),
            ("申请人", "entry"),
            ("申请部门", "combobox", DEPARTMENTS),
            ("申请金额", "entry"),
            ("申请事由", "text")
        ]
  
        self.widgets = {}
        for row, (label, widget_type, *args) in enumerate(fields):
            ttk.Label(form_frame, text=f"{label}:").grid(row=row, column=0, padx=10, pady=10, sticky=tk.E)
            if widget_type == "combobox":
                widget = ttk.Combobox(form_frame, values=args[0], state="readonly")
                if label == "申请部门":
                    widget.set(self.department)
                    # 设置为禁用状态
                    widget.config(state="disabled"
            elif widget_type == "entry":
                widget = ttk.Entry(form_frame)
                # 新增默认值设置
                if label == "申请金额":
                    widget.insert(0, "0")
                # 自动填充申请人
                if label == "申请人":
                    widget.insert(0, self.user_name)
                    # 设置为禁用状态
                    widget.config(state="disabled")
            elif widget_type == "text":
                widget = tk.Text(form_frame, height=5, width=40)
            widget.grid(row=row, column=1, padx=10, pady=10, sticky=tk.W)
            self.widgets[label] = widget
  
        submit_btn = ttk.Button(form_frame, text="提交申请", command=self.submit_application,
                                state=tk.NORMAL if "申请" in self.permissions else tk.DISABLED)
        submit_btn.grid(row=5, column=1, pady=10, sticky=tk.W)
  
    def create_table(self):
        table_frame = ttk.LabelFrame(self.root, text="申请记录")
        table_frame.pack(fill=tk.BOTH, expand=True, padx=10, pady=5)
  
        columns = ("申请编号", "单据类型", "申请人", "申请部门", "申请日期", "申请金额", "申请事由", "审批状态")
        self.tree = ttk.Treeview(table_frame, columns=columns, show="headings")
  
        col_widths = [80, 100, 90, 110, 150, 90, 250, 120]
        for col, width in zip(columns, col_widths):
            self.tree.column(col, width=width, anchor=tk.CENTER)
            self.tree.heading(col, text=col)
  
        vsb = ttk.Scrollbar(table_frame, orient="vertical", command=self.tree.yview)
        self.tree.configure(yscrollcommand=vsb.set)
        self.tree.pack(side=tk.LEFT, fill=tk.BOTH, expand=True)
        vsb.pack(side=tk.RIGHT, fill=tk.Y)
  
        self.tree.bind("<<TreeviewSelect>>", self.update_buttons)
        self.tree.bind("<Double-1>", lambda e: self.show_detail())
  
    def load_data(self):
        for item in self.tree.get_children():
            self.tree.delete(item)
        records = self.db.execute_query("SELECT * FROM doc_applications ORDER BY apply_date DESC")
        if records:
            status_map = {
                '待审核': ('&#128276;', '待审核'), 
                '已审核': ('&#128277;', '已批准'),
                'Rejected': ('&#10060;', '已驳回'), 
                'Voided': ('&#10008;', '已作废')   
            }
 
            for row in records:
                icon, text = status_map.get(row[7], ('☆', row[7])) 
                # 处理金额显示
                amount_display = "***" if row[7] == 'Voided' else f"&#165;{row[5]:.2f}" 
                # 处理事由显示
                reason_display = "*****" if row[7] == 'Voided' else (
                    row[6][:35] + "..." if len(row[6]) > 35 else row[6
                )
 
                print("row4", row[4], type(row[4]))
                # 将 apply_date 从字符串转换为 datetime 对象
                apply_date = datetime.strptime(row[4], "%Y-%m-%d %H:%M:%S")
 
                self.tree.insert("", tk.END, values=(
                    row[0],  # id
                    row[1],  # doc_type
                    row[2],  # applicant
                    row[3],  # department
                    row[4],  # apply_date
                    amount_display,  # 修改后的金额显示
                    reason_display,  # 修改后的事由显示
                    f"{icon} {text}"
                ))
  
    def submit_application(self):
        data = {
            "单据类型": self.widgets["单据类型"].get(),
            "申请人": self.widgets["申请人"].get().strip(),
            "申请部门": self.widgets["申请部门"].get(),
            "申请金额": self.widgets["申请金额"].get().strip(),
            "申请事由": self.widgets["申请事由"].get("1.0", tk.END).strip()
        }
  
        # 生成32位随机盐值
        salt = os.urandom(16).hex()  # 生成16字节随机数并转换为32位十六进制字符串
  
        try:
            amount = float(data["申请金额"])
            if amount <= 0# 修改为<=0
                raise ValueError
        except ValueError:
            messagebox.showwarning("输入错误", "金额必须为大于0的有效数字"# 修改提示信息
            return
  
        # 输入验证
        for field, value in data.items():
            if not value:
                messagebox.showwarning("输入错误", f"请填写{field}")
                return
  
        try:
            amount = float(data["申请金额"])
            if amount < 0:
                raise ValueError
        except ValueError:
            messagebox.showwarning("输入错误", "金额必须为有效正数")
            return
  
        # 修改插入语句包含salt字段
        result = self.db.execute_query(
            "INSERT INTO doc_applications (doc_type, applicant, department, apply_date, amount, reason, salt) "
            "VALUES (?, ?, ?, ?, ?, ?, ?)"# 添加salt字段
            (
                data["单据类型"],
                data["申请人"],
                data["申请部门"],
                datetime.now().replace(microsecond=0),
                amount,
                data["申请事由"],
                salt  # 添加生成的盐值
            )
        )
  
        if result:
            messagebox.showinfo("提交成功", "申请已成功提交!")
            self.clear_form()
            self.load_data()
  
    def clear_form(self):
        for label, widget in self.widgets.items():
            if isinstance(widget, ttk.Combobox):
                if label == "申请部门":
                    widget.set(self.department)
                else:
                    widget.set('')
            elif isinstance(widget, tk.Text):
                widget.delete("1.0", tk.END)
            else:
                widget.delete(0, tk.END)
  
    def approve_application(self):
        selected_id = self.get_selected_id()
        if selected_id:
            result = self.db.execute_query(
                "UPDATE doc_applications SET status='已审核' WHERE id=? AND status='待审核'",
                (selected_id,)
            )
            if result == 1:
                self.load_data()
                messagebox.showinfo("操作成功", "申请已批准")
  
    def revoke_approval(self):
        selected_id = self.get_selected_id()
        if selected_id:
            result = self.db.execute_query(
                "UPDATE doc_applications SET status='待审核' WHERE id=? AND status='已审核'",
                (selected_id,)
            )
            if result == 1:
                self.load_data()
                messagebox.showinfo("操作成功", "批准已撤销")
  
    def void_application(self):
        selected_id = self.get_selected_id()
        if selected_id:
            if messagebox.askyesno("确认作废", "确定要作废此申请吗?"):
                result = self.db.execute_query(
                    "UPDATE doc_applications SET status='Voided' WHERE id=? AND status IN ('待审核', '已审核')",
                    (selected_id,)
                )
                if result == 1:
                    self.load_data()
                    messagebox.showinfo("操作成功", "申请已作废")
  
    def show_detail(self):
        selected_id = self.get_selected_id()
        if selected_id:
            record = self.db.execute_query(
                "SELECT * FROM doc_applications WHERE id = ?",
                (selected_id,)
            )
            if record:
                detail_win = tk.Toplevel(self.root)
                detail_win.title(f"申请详情 - ID: {selected_id}")
 
                text_area = scrolledtext.ScrolledText(detail_win, wrap=tk.WORD, width=80, height=20)
                text_area.pack(padx=10, pady=10)
                apply_date = datetime.strptime(record[0][4], "%Y-%m-%d %H:%M:%S")
 
                details = (
                        f"申请编号: {record[0][0]}\n"
                        f"单据类型: {record[0][1]}\n"
                        f"申请人: {record[0][2]}\n"
                        f"申请部门: {record[0][3]}\n"
                        f"申请时间: {apply_date.strftime('%Y-%m-%d %H:%M:%S')}\n"
                        f"申请金额: &#165;{record[0][5]:.2f}\n"
                        f"当前状态: {record[0][7]}\n\n"
                        "申请事由:\n" + record[0][6]
                )
                text_area.insert(tk.INSERT, details)
                text_area.config(state=tk.DISABLED)
  
    def get_selected_id(self):
        selection = self.tree.selection()
        if not selection:
            messagebox.showwarning("提示", "请先选择一条记录")
            return None
        return self.tree.item(selection[0])["values"][0]
  
    def open_register(self):
        RegisterWindow(self.root, self.db)
  
    def open_user_manager(self):
        UserManagerWindow(self.root, self.db)
  
  
# ====================== 主程序初始化 ======================
if __name__ == "__main__":
    try:
        def init_admin(db):
            # 清理旧管理员账户
            existing = db.execute_query("SELECT * FROM users WHERE username = ?", ("admin",))
            password = "admin123"
            hashed_pw, salt = PasswordUtils.hash_password(password)
            print(f"[初始化] 管理员盐值: {salt} (长度: {len(salt)})")
            print(f"[初始化] 管理员哈希: {hashed_pw} (长度: {len(hashed_pw)})")
 
            # 仅当不存在时创建
            if not existing:
                print(f"[初始化] 创建管理员账户")
                db.execute_query(
                    "INSERT INTO users (username, password_hash, name, department, salt, permissions) "
                    "VALUES (?, ?, ?, ?, ?, ?)",
                    ("admin", hashed_pw, "系统管理员", "技术部", salt, "申请,审核,撤销,作废,管理")
                )
            else:
                print(f"[初始化] 管理员账户已存在,跳过创建")
  
  
        root = tk.Tk()
        root.withdraw()
  
        db = DatabaseManager()
        if db.connect() and db.init_db():
            init_admin(db)
            login_window = LoginWindow(root, db)
            login_window.mainloop()  # 新增登录窗口启动
        else:
            root.destroy()
    except Exception as e:
        traceback.print_exc()
        input("程序崩溃,按回车查看错误详情")
mmji 发表于 2025-3-20 20:36
在将 nvarchar 值 'admin' 转换成数据类型 int 时失败。 (245) (SQLExecDirectW)")
试试修改数据库字段格式,将int改成char
pingyian 发表于 2025-3-20 16:43
anning666 发表于 2025-3-20 16:49
写个小型桌面应用,用Python足够了,如果是大型桌面应用,感觉用C#更好
 楼主| milu1123 发表于 2025-3-20 16:53
anning666 发表于 2025-3-20 16:49
写个小型桌面应用,用Python足够了,如果是大型桌面应用,感觉用C#更好

不会画画啊,,AI只能是辅助,修改代码还是得靠人。。哈哈哈哈
额微粒波地 发表于 2025-3-20 17:06
感谢分享!
doraitoronn 发表于 2025-3-20 17:32
感觉很有用
kingc138 发表于 2025-3-20 17:47
这是做什么的?
ubugdebug 发表于 2025-3-20 17:58
真不错啊好工具
52soft 发表于 2025-3-20 18:37
这是AI作品吗
 楼主| milu1123 发表于 2025-3-20 18:45

是的是的是的是的是的是的是的是的是的是的是的是的是的是的是的
您需要登录后才可以回帖 登录 | 注册[Register]

本版积分规则

返回列表

RSS订阅|小黑屋|处罚记录|联系我们|吾爱破解 - LCG - LSG ( 京ICP备16042023号 | 京公网安备 11010502030087号 )

GMT+8, 2025-4-3 03:46

Powered by Discuz!

Copyright © 2001-2020, Tencent Cloud.

快速回复 返回顶部 返回列表