0
0

PermissionService.cs 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377
  1. using Admin.Core.Common.Attributes;
  2. using Admin.Core.Common.BaseModel;
  3. using Admin.Core.Common.Cache;
  4. using Admin.Core.Common.Configs;
  5. using Admin.Core.Common.Output;
  6. using Admin.Core.Model.Admin;
  7. using Admin.Core.Repository;
  8. using Admin.Core.Repository.Admin;
  9. using Admin.Core.Service.Admin.Permission.Input;
  10. using Admin.Core.Service.Admin.Permission.Output;
  11. using Microsoft.Extensions.DependencyInjection;
  12. using System;
  13. using System.Collections.Generic;
  14. using System.Linq;
  15. using System.Threading.Tasks;
  16. namespace Admin.Core.Service.Admin.Permission
  17. {
  18. public class PermissionService : BaseService, IPermissionService
  19. {
  20. private readonly AppConfig _appConfig;
  21. private readonly IPermissionRepository _permissionRepository;
  22. private readonly IRoleRepository _roleRepository;
  23. private readonly IRolePermissionRepository _rolePermissionRepository;
  24. private readonly IUserRepository _userRepository;
  25. private readonly IRepositoryBase<TenantPermissionEntity> _tenantPermissionRepository;
  26. private readonly IRepositoryBase<UserRoleEntity> _userRoleRepository;
  27. private readonly IRepositoryBase<PermissionApiEntity> _permissionApiRepository;
  28. public PermissionService(
  29. AppConfig appConfig,
  30. IPermissionRepository permissionRepository,
  31. IRoleRepository roleRepository,
  32. IRolePermissionRepository rolePermissionRepository,
  33. IUserRepository userRepository,
  34. IRepositoryBase<TenantPermissionEntity> tenantPermissionRepository,
  35. IRepositoryBase<UserRoleEntity> userRoleRepository,
  36. IRepositoryBase<PermissionApiEntity> permissionApiRepository
  37. )
  38. {
  39. _appConfig = appConfig;
  40. _permissionRepository = permissionRepository;
  41. _roleRepository = roleRepository;
  42. _rolePermissionRepository = rolePermissionRepository;
  43. _userRepository = userRepository;
  44. _tenantPermissionRepository = tenantPermissionRepository;
  45. _userRoleRepository = userRoleRepository;
  46. _permissionApiRepository = permissionApiRepository;
  47. }
  48. public async Task<IResponseOutput> GetAsync(long id)
  49. {
  50. var result = await _permissionRepository.GetAsync(id);
  51. return ResponseOutput.Ok(result);
  52. }
  53. public async Task<IResponseOutput> GetGroupAsync(long id)
  54. {
  55. var result = await _permissionRepository.GetAsync<PermissionGetGroupOutput>(id);
  56. return ResponseOutput.Ok(result);
  57. }
  58. public async Task<IResponseOutput> GetMenuAsync(long id)
  59. {
  60. var result = await _permissionRepository.GetAsync<PermissionGetMenuOutput>(id);
  61. return ResponseOutput.Ok(result);
  62. }
  63. public async Task<IResponseOutput> GetApiAsync(long id)
  64. {
  65. var result = await _permissionRepository.GetAsync<PermissionGetApiOutput>(id);
  66. return ResponseOutput.Ok(result);
  67. }
  68. public async Task<IResponseOutput> GetDotAsync(long id)
  69. {
  70. var entity = await _permissionRepository.Select
  71. .WhereDynamic(id)
  72. .IncludeMany(a => a.Apis.Select(b => new ApiEntity { Id = b.Id }))
  73. .ToOneAsync();
  74. var output = Mapper.Map<PermissionGetDotOutput>(entity);
  75. return ResponseOutput.Ok(output);
  76. }
  77. public async Task<IResponseOutput> ListAsync(string key, DateTime? start, DateTime? end)
  78. {
  79. if (end.HasValue)
  80. {
  81. end = end.Value.AddDays(1);
  82. }
  83. var data = await _permissionRepository
  84. .WhereIf(key.NotNull(), a => a.Path.Contains(key) || a.Label.Contains(key))
  85. .WhereIf(start.HasValue && end.HasValue, a => a.CreatedTime.Value.BetweenEnd(start.Value, end.Value))
  86. .OrderBy(a => a.ParentId)
  87. .OrderBy(a => a.Sort)
  88. .ToListAsync(a => new PermissionListOutput { ApiPath = a.Api.Path });
  89. return ResponseOutput.Ok(data);
  90. }
  91. public async Task<IResponseOutput> AddGroupAsync(PermissionAddGroupInput input)
  92. {
  93. var entity = Mapper.Map<PermissionEntity>(input);
  94. var id = (await _permissionRepository.InsertAsync(entity)).Id;
  95. return ResponseOutput.Ok(id > 0);
  96. }
  97. public async Task<IResponseOutput> AddMenuAsync(PermissionAddMenuInput input)
  98. {
  99. var entity = Mapper.Map<PermissionEntity>(input);
  100. var id = (await _permissionRepository.InsertAsync(entity)).Id;
  101. return ResponseOutput.Ok(id > 0);
  102. }
  103. public async Task<IResponseOutput> AddApiAsync(PermissionAddApiInput input)
  104. {
  105. var entity = Mapper.Map<PermissionEntity>(input);
  106. var id = (await _permissionRepository.InsertAsync(entity)).Id;
  107. return ResponseOutput.Ok(id > 0);
  108. }
  109. [Transaction]
  110. public async Task<IResponseOutput> AddDotAsync(PermissionAddDotInput input)
  111. {
  112. var entity = Mapper.Map<PermissionEntity>(input);
  113. var id = (await _permissionRepository.InsertAsync(entity)).Id;
  114. if (input.ApiIds != null && input.ApiIds.Any())
  115. {
  116. var permissionApis = input.ApiIds.Select(a => new PermissionApiEntity { PermissionId = id, ApiId = a });
  117. await _permissionApiRepository.InsertAsync(permissionApis);
  118. }
  119. return ResponseOutput.Ok(id > 0);
  120. }
  121. public async Task<IResponseOutput> UpdateGroupAsync(PermissionUpdateGroupInput input)
  122. {
  123. var result = false;
  124. if (input != null && input.Id > 0)
  125. {
  126. var entity = await _permissionRepository.GetAsync(input.Id);
  127. entity = Mapper.Map(input, entity);
  128. result = (await _permissionRepository.UpdateAsync(entity)) > 0;
  129. }
  130. return ResponseOutput.Result(result);
  131. }
  132. public async Task<IResponseOutput> UpdateMenuAsync(PermissionUpdateMenuInput input)
  133. {
  134. var result = false;
  135. if (input != null && input.Id > 0)
  136. {
  137. var entity = await _permissionRepository.GetAsync(input.Id);
  138. entity = Mapper.Map(input, entity);
  139. result = (await _permissionRepository.UpdateAsync(entity)) > 0;
  140. }
  141. return ResponseOutput.Result(result);
  142. }
  143. public async Task<IResponseOutput> UpdateApiAsync(PermissionUpdateApiInput input)
  144. {
  145. var result = false;
  146. if (input != null && input.Id > 0)
  147. {
  148. var entity = await _permissionRepository.GetAsync(input.Id);
  149. entity = Mapper.Map(input, entity);
  150. result = (await _permissionRepository.UpdateAsync(entity)) > 0;
  151. }
  152. return ResponseOutput.Result(result);
  153. }
  154. public async Task<IResponseOutput> UpdateDotAsync(PermissionUpdateDotInput input)
  155. {
  156. if (!(input?.Id > 0))
  157. {
  158. return ResponseOutput.NotOk();
  159. }
  160. var entity = await _permissionRepository.GetAsync(input.Id);
  161. if (!(entity?.Id > 0))
  162. {
  163. return ResponseOutput.NotOk("权限点不存在!");
  164. }
  165. Mapper.Map(input, entity);
  166. await _permissionRepository.UpdateAsync(entity);
  167. await _permissionApiRepository.DeleteAsync(a => a.PermissionId == entity.Id);
  168. if (input.ApiIds != null && input.ApiIds.Any())
  169. {
  170. var permissionApis = input.ApiIds.Select(a => new PermissionApiEntity { PermissionId = entity.Id, ApiId = a });
  171. await _permissionApiRepository.InsertAsync(permissionApis);
  172. }
  173. return ResponseOutput.Ok();
  174. }
  175. public async Task<IResponseOutput> DeleteAsync(long id)
  176. {
  177. var result = false;
  178. if (id > 0)
  179. {
  180. result = (await _permissionRepository.DeleteAsync(m => m.Id == id)) > 0;
  181. }
  182. return ResponseOutput.Result(result);
  183. }
  184. public async Task<IResponseOutput> SoftDeleteAsync(long id)
  185. {
  186. var result = await _permissionRepository.SoftDeleteAsync(id);
  187. return ResponseOutput.Result(result);
  188. }
  189. [Transaction]
  190. public async Task<IResponseOutput> AssignAsync(PermissionAssignInput input)
  191. {
  192. //分配权限的时候判断角色是否存在
  193. var exists = await _roleRepository.Select.DisableGlobalFilter("Tenant").WhereDynamic(input.RoleId).AnyAsync();
  194. if (!exists)
  195. {
  196. return ResponseOutput.NotOk("该角色不存在或已被删除!");
  197. }
  198. //查询角色权限
  199. var permissionIds = await _rolePermissionRepository.Select.Where(d => d.RoleId == input.RoleId).ToListAsync(m => m.PermissionId);
  200. //批量删除权限
  201. var deleteIds = permissionIds.Where(d => !input.PermissionIds.Contains(d));
  202. if (deleteIds.Any())
  203. {
  204. await _rolePermissionRepository.DeleteAsync(m => m.RoleId == input.RoleId && deleteIds.Contains(m.PermissionId));
  205. }
  206. //批量插入权限
  207. var insertRolePermissions = new List<RolePermissionEntity>();
  208. var insertPermissionIds = input.PermissionIds.Where(d => !permissionIds.Contains(d));
  209. //防止租户非法授权
  210. if (_appConfig.Tenant && User.TenantType == TenantType.Tenant)
  211. {
  212. var masterDb = ServiceProvider.GetRequiredService<IFreeSql>();
  213. var tenantPermissionIds = await masterDb.GetRepository<TenantPermissionEntity>().Select.Where(d => d.TenantId == User.TenantId).ToListAsync(m => m.PermissionId);
  214. insertPermissionIds = insertPermissionIds.Where(d => tenantPermissionIds.Contains(d));
  215. }
  216. if (insertPermissionIds.Any())
  217. {
  218. foreach (var permissionId in insertPermissionIds)
  219. {
  220. insertRolePermissions.Add(new RolePermissionEntity()
  221. {
  222. RoleId = input.RoleId,
  223. PermissionId = permissionId,
  224. });
  225. }
  226. await _rolePermissionRepository.InsertAsync(insertRolePermissions);
  227. }
  228. //清除角色下关联的用户权限缓存
  229. var userIds = await _userRoleRepository.Select.Where(a => a.RoleId == input.RoleId).ToListAsync(a => a.UserId);
  230. foreach (var userId in userIds)
  231. {
  232. await Cache.DelAsync(string.Format(CacheKey.UserPermissions, userId));
  233. }
  234. return ResponseOutput.Ok();
  235. }
  236. [Transaction]
  237. public async Task<IResponseOutput> SaveTenantPermissionsAsync(PermissionSaveTenantPermissionsInput input)
  238. {
  239. //获得租户db
  240. var ib = ServiceProvider.GetRequiredService<IdleBus<IFreeSql>>();
  241. var tenantDb = ib.GetTenantFreeSql(ServiceProvider, input.TenantId);
  242. //查询租户权限
  243. var permissionIds = await _tenantPermissionRepository.Select.Where(d => d.TenantId == input.TenantId).ToListAsync(m => m.PermissionId);
  244. //批量删除租户权限
  245. var deleteIds = permissionIds.Where(d => !input.PermissionIds.Contains(d));
  246. if (deleteIds.Any())
  247. {
  248. await _tenantPermissionRepository.DeleteAsync(m => m.TenantId == input.TenantId && deleteIds.Contains(m.PermissionId));
  249. //删除租户下关联的角色权限
  250. await tenantDb.GetRepository<RolePermissionEntity>().DeleteAsync(a => deleteIds.Contains(a.PermissionId));
  251. }
  252. //批量插入租户权限
  253. var tenatPermissions = new List<TenantPermissionEntity>();
  254. var insertPermissionIds = input.PermissionIds.Where(d => !permissionIds.Contains(d));
  255. if (insertPermissionIds.Any())
  256. {
  257. foreach (var permissionId in insertPermissionIds)
  258. {
  259. tenatPermissions.Add(new TenantPermissionEntity()
  260. {
  261. TenantId = input.TenantId,
  262. PermissionId = permissionId,
  263. });
  264. }
  265. await _tenantPermissionRepository.InsertAsync(tenatPermissions);
  266. }
  267. //清除租户下所有用户权限缓存
  268. var userIds = await tenantDb.GetRepository<UserEntity>().Select.Where(a => a.TenantId == input.TenantId).ToListAsync(a => a.Id);
  269. if(userIds.Any())
  270. {
  271. foreach (var userId in userIds)
  272. {
  273. await Cache.DelAsync(string.Format(CacheKey.UserPermissions, userId));
  274. }
  275. }
  276. return ResponseOutput.Ok();
  277. }
  278. public async Task<IResponseOutput> GetPermissionList()
  279. {
  280. var permissions = await _permissionRepository.Select
  281. .WhereIf(_appConfig.Tenant && User.TenantType == TenantType.Tenant, a =>
  282. _tenantPermissionRepository
  283. .Where(b => b.PermissionId == a.Id && b.TenantId == User.TenantId)
  284. .Any()
  285. )
  286. .OrderBy(a => a.ParentId)
  287. .OrderBy(a => a.Sort)
  288. .ToListAsync(a => new { a.Id, a.ParentId, a.Label, a.Type });
  289. var apis = permissions
  290. .Where(a => a.Type == PermissionType.Dot)
  291. .Select(a => new { a.Id, a.ParentId, a.Label });
  292. var menus = permissions
  293. .Where(a => (new[] { PermissionType.Group, PermissionType.Menu }).Contains(a.Type))
  294. .Select(a => new
  295. {
  296. a.Id,
  297. a.ParentId,
  298. a.Label,
  299. Apis = apis.Where(b => b.ParentId == a.Id).Select(b => new { b.Id, b.Label })
  300. });
  301. return ResponseOutput.Ok(menus);
  302. }
  303. public async Task<IResponseOutput> GetRolePermissionList(long roleId = 0)
  304. {
  305. var permissionIds = await _rolePermissionRepository
  306. .Select.Where(d => d.RoleId == roleId)
  307. .ToListAsync(a => a.PermissionId);
  308. return ResponseOutput.Ok(permissionIds);
  309. }
  310. public async Task<IResponseOutput> GetTenantPermissionList(long tenantId)
  311. {
  312. var permissionIds = await _tenantPermissionRepository
  313. .Select.Where(d => d.TenantId == tenantId)
  314. .ToListAsync(a => a.PermissionId);
  315. return ResponseOutput.Ok(permissionIds);
  316. }
  317. }
  318. }