0
0

UserService.cs 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600
  1. using System.Collections.Generic;
  2. using System.Linq;
  3. using System.Threading.Tasks;
  4. using Microsoft.AspNetCore.Mvc;
  5. using Microsoft.AspNetCore.Http;
  6. using Microsoft.Extensions.Options;
  7. using ZhonTai.Admin.Core.Attributes;
  8. using ZhonTai.Admin.Core.Configs;
  9. using ZhonTai.Admin.Core.Repositories;
  10. using ZhonTai.Common.Helpers;
  11. using ZhonTai.Admin.Core.Dto;
  12. using ZhonTai.Admin.Domain.Api;
  13. using ZhonTai.Admin.Domain.PermissionApi;
  14. using ZhonTai.Admin.Domain.Role;
  15. using ZhonTai.Admin.Domain.RolePermission;
  16. using ZhonTai.Admin.Domain.Tenant;
  17. using ZhonTai.Admin.Domain.User;
  18. using ZhonTai.Admin.Domain.UserRole;
  19. using ZhonTai.Admin.Services.Auth.Dto;
  20. using ZhonTai.Admin.Services.User.Dto;
  21. using ZhonTai.DynamicApi;
  22. using ZhonTai.DynamicApi.Attributes;
  23. using ZhonTai.Admin.Core.Helpers;
  24. using ZhonTai.Admin.Core.Consts;
  25. using ZhonTai.Admin.Domain.UserStaff;
  26. using ZhonTai.Admin.Domain;
  27. using ZhonTai.Admin.Domain.Org;
  28. using System.Data;
  29. using ZhonTai.Admin.Domain.TenantPermission;
  30. using FreeSql;
  31. using ZhonTai.Admin.Domain.User.Dto;
  32. namespace ZhonTai.Admin.Services.User;
  33. /// <summary>
  34. /// 用户服务
  35. /// </summary>
  36. [DynamicApi(Area = AdminConsts.AreaName)]
  37. public class UserService : BaseService, IUserService, IDynamicApi
  38. {
  39. private AppConfig _appConfig => LazyGetRequiredService<AppConfig>();
  40. private IUserRepository _userRepository => LazyGetRequiredService<IUserRepository>();
  41. private IOrgRepository _orgRepository => LazyGetRequiredService<IOrgRepository>();
  42. private ITenantRepository _tenantRepository => LazyGetRequiredService<ITenantRepository>();
  43. private IApiRepository _apiRepository => LazyGetRequiredService<IApiRepository>();
  44. private IUserStaffRepository _staffRepository => LazyGetRequiredService<IUserStaffRepository>();
  45. private IRepositoryBase<UserRoleEntity> _userRoleRepository => LazyGetRequiredService<IRepositoryBase<UserRoleEntity>>();
  46. private IRepositoryBase<RoleOrgEntity> _roleOrgRepository => LazyGetRequiredService<IRepositoryBase<RoleOrgEntity>>();
  47. private IRepositoryBase<UserOrgEntity> _userOrgRepository => LazyGetRequiredService<IRepositoryBase<UserOrgEntity>>();
  48. public UserService()
  49. {
  50. }
  51. /// <summary>
  52. /// 查询用户
  53. /// </summary>
  54. /// <param name="id"></param>
  55. /// <returns></returns>
  56. public async Task<IResultOutput> GetAsync(long id)
  57. {
  58. var userEntity = await _userRepository.Select
  59. .WhereDynamic(id)
  60. .IncludeMany(a => a.Roles.Select(b => new RoleEntity { Id = b.Id, Name = b.Name }))
  61. .IncludeMany(a => a.Orgs.Select(b => new OrgEntity { Id = b.Id, Name = b.Name }))
  62. .ToOneAsync(a => new
  63. {
  64. a.Id,
  65. a.Version,
  66. a.UserName,
  67. a.Name,
  68. a.Mobile,
  69. a.Email,
  70. a.Roles,
  71. a.Orgs,
  72. a.OrgId,
  73. Staff = new
  74. {
  75. a.Staff.JobNumber,
  76. a.Staff.Sex,
  77. a.Staff.Position,
  78. a.Staff.Introduce,
  79. a.Staff.Version
  80. }
  81. });
  82. var output = Mapper.Map<UserGetOutput>(userEntity);
  83. return ResultOutput.Ok(output);
  84. }
  85. /// <summary>
  86. /// 查询分页
  87. /// </summary>
  88. /// <param name="input"></param>
  89. /// <returns></returns>
  90. [HttpPost]
  91. public async Task<IResultOutput> GetPageAsync(PageInput<long?> input)
  92. {
  93. var orgId = input.Filter;
  94. var list = await _userRepository.Select
  95. .WhereIf(orgId.HasValue && orgId > 0, a => _userOrgRepository.Where(b => b.UserId == a.Id && b.OrgId == orgId).Any())
  96. .WhereDynamicFilter(input.DynamicFilter)
  97. .Count(out var total)
  98. .OrderByDescending(true, a => a.Id)
  99. .IncludeMany(a => a.Roles.Select(b => new RoleEntity { Name = b.Name }))
  100. .Page(input.CurrentPage, input.PageSize)
  101. .ToListAsync(a=>new UserGetPageOutput { Roles = a.Roles });
  102. var data = new PageOutput<UserGetPageOutput>()
  103. {
  104. List = Mapper.Map<List<UserGetPageOutput>>(list),
  105. Total = total
  106. };
  107. return ResultOutput.Ok(data);
  108. }
  109. /// <summary>
  110. /// 查询登录用户信息
  111. /// </summary>
  112. /// <param name="id"></param>
  113. /// <returns></returns>
  114. [NonAction]
  115. public async Task<ResultOutput<AuthLoginOutput>> GetLoginUserAsync(long id)
  116. {
  117. var output = new ResultOutput<AuthLoginOutput>();
  118. var entityDto = await _userRepository.Select.DisableGlobalFilter(FilterNames.Tenant)
  119. .WhereDynamic(id).ToOneAsync<AuthLoginOutput>();
  120. if (_appConfig.Tenant && entityDto?.TenantId.Value > 0)
  121. {
  122. var tenant = await _tenantRepository.Select.DisableGlobalFilter(FilterNames.Tenant)
  123. .WhereDynamic(entityDto.TenantId).ToOneAsync(a => new { a.TenantType, a.DbKey });
  124. entityDto.TenantType = tenant.TenantType;
  125. entityDto.DbKey = tenant.DbKey;
  126. }
  127. return output.Ok(entityDto);
  128. }
  129. /// <summary>
  130. /// 获得数据权限
  131. /// </summary>
  132. /// <returns></returns>
  133. [NonAction]
  134. public async Task<DataPermissionDto> GetDataPermissionAsync()
  135. {
  136. if (!(User?.Id > 0))
  137. {
  138. return null;
  139. }
  140. var key = CacheKeys.DataPermission + User.Id;
  141. return await Cache.GetOrSetAsync(key, async () =>
  142. {
  143. using (_userRepository.DataFilter.Disable(FilterNames.Self, FilterNames.Data))
  144. {
  145. var user = await _userRepository.Select
  146. .IncludeMany(a => a.Roles.Select(b => new RoleEntity
  147. {
  148. Id = b.Id,
  149. DataScope = b.DataScope
  150. }))
  151. .WhereDynamic(User.Id)
  152. .ToOneAsync(a => new
  153. {
  154. a.OrgId,
  155. a.Roles
  156. });
  157. if (user == null)
  158. return null;
  159. //数据范围
  160. DataScope dataScope = DataScope.Self;
  161. var customRoleIds = new List<long>();
  162. user.Roles?.ToList().ForEach(role =>
  163. {
  164. if (role.DataScope == DataScope.Custom)
  165. {
  166. customRoleIds.Add(role.Id);
  167. }
  168. else if (role.DataScope <= dataScope)
  169. {
  170. dataScope = role.DataScope;
  171. }
  172. });
  173. //部门列表
  174. var orgIds = new List<long>();
  175. if (dataScope != DataScope.All)
  176. {
  177. //本部门
  178. if (dataScope == DataScope.Dept)
  179. {
  180. orgIds.Add(user.OrgId);
  181. }
  182. //本部门和下级部门
  183. else if (dataScope == DataScope.DeptWithChild)
  184. {
  185. orgIds = await _orgRepository
  186. .Where(a => a.Id == user.OrgId)
  187. .AsTreeCte()
  188. .ToListAsync(a => a.Id);
  189. }
  190. //指定部门
  191. if (customRoleIds.Count > 0)
  192. {
  193. var customRoleOrgIds = await _roleOrgRepository.Select.Where(a => customRoleIds.Contains(a.RoleId)).ToListAsync(a => a.OrgId);
  194. orgIds = orgIds.Concat(customRoleOrgIds).ToList();
  195. }
  196. }
  197. return new DataPermissionDto
  198. {
  199. OrgId = user.OrgId,
  200. OrgIds = orgIds.Distinct().ToList(),
  201. DataScope = dataScope
  202. };
  203. }
  204. });
  205. }
  206. /// <summary>
  207. /// 查询用户基本信息
  208. /// </summary>
  209. /// <returns></returns>
  210. public async Task<IResultOutput> GetBasicAsync()
  211. {
  212. if (!(User?.Id > 0))
  213. {
  214. return ResultOutput.NotOk("未登录!");
  215. }
  216. var data = await _userRepository.GetAsync<UserUpdateBasicInput>(User.Id);
  217. return ResultOutput.Ok(data);
  218. }
  219. /// <summary>
  220. /// 查询用户权限信息
  221. /// </summary>
  222. /// <returns></returns>
  223. public async Task<IList<UserPermissionsOutput>> GetPermissionsAsync()
  224. {
  225. var key = CacheKeys.UserPermissions + User.Id;
  226. var result = await Cache.GetOrSetAsync(key, async () =>
  227. {
  228. if (User.TenantAdmin)
  229. {
  230. var cloud = LazyGetRequiredService<FreeSqlCloud>();
  231. var db = cloud.Use(DbKeys.MasterDb);
  232. return await db.Select<ApiEntity>()
  233. .Where(a => db.Select<TenantPermissionEntity, PermissionApiEntity>()
  234. .InnerJoin((b, c) => b.PermissionId == c.PermissionId && b.TenantId == User.TenantId)
  235. .Where((b, c) => c.ApiId == a.Id).Any())
  236. .ToListAsync<UserPermissionsOutput>();
  237. }
  238. return await _apiRepository
  239. .Where(a => _apiRepository.Orm.Select<UserRoleEntity, RolePermissionEntity, PermissionApiEntity>()
  240. .InnerJoin((b, c, d) => b.RoleId == c.RoleId && b.UserId == User.Id)
  241. .InnerJoin((b, c, d) => c.PermissionId == d.PermissionId)
  242. .Where((b, c, d) => d.ApiId == a.Id).Any())
  243. .ToListAsync<UserPermissionsOutput>();
  244. });
  245. return result;
  246. }
  247. /// <summary>
  248. /// 新增用户
  249. /// </summary>
  250. /// <param name="input"></param>
  251. /// <returns></returns>
  252. [Transaction]
  253. public virtual async Task<IResultOutput> AddAsync(UserAddInput input)
  254. {
  255. if (await _userRepository.Select.AnyAsync(a => a.UserName == input.UserName))
  256. {
  257. return ResultOutput.NotOk($"账号已存在");
  258. }
  259. if (input.Mobile.NotNull() && await _userRepository.Select.AnyAsync(a => a.Mobile == input.Mobile))
  260. {
  261. return ResultOutput.NotOk($"手机号已存在");
  262. }
  263. if (input.Email.NotNull() && await _userRepository.Select.AnyAsync(a => a.Email == input.Email))
  264. {
  265. return ResultOutput.NotOk($"邮箱已存在");
  266. }
  267. // 用户信息
  268. if (input.Password.IsNull())
  269. {
  270. input.Password = _appConfig.DefaultPassword;
  271. }
  272. input.Password = MD5Encrypt.Encrypt32(input.Password);
  273. var entity = Mapper.Map<UserEntity>(input);
  274. var user = await _userRepository.InsertAsync(entity);
  275. if (!(user?.Id > 0))
  276. {
  277. return ResultOutput.NotOk("新增用户失败");
  278. }
  279. var userId = user.Id;
  280. //用户角色
  281. if (input.RoleIds != null && input.RoleIds.Any())
  282. {
  283. var roles = input.RoleIds.Select(roleId => new UserRoleEntity
  284. {
  285. UserId = userId,
  286. RoleId = roleId
  287. }).ToList();
  288. await _userRoleRepository.InsertAsync(roles);
  289. }
  290. // 员工信息
  291. var staff = Mapper.Map<UserStaffEntity>(input.Staff);
  292. staff.Id = userId;
  293. await _staffRepository.InsertAsync(staff);
  294. //所属部门
  295. if (input.OrgIds != null && input.OrgIds.Any())
  296. {
  297. var orgs = input.OrgIds.Select(orgId => new UserOrgEntity
  298. {
  299. UserId = userId,
  300. OrgId = orgId
  301. }).ToList();
  302. await _userOrgRepository.InsertAsync(orgs);
  303. }
  304. return ResultOutput.Ok();
  305. }
  306. /// <summary>
  307. /// 修改用户
  308. /// </summary>
  309. /// <param name="input"></param>
  310. /// <returns></returns>
  311. [Transaction]
  312. public virtual async Task<IResultOutput> UpdateAsync(UserUpdateInput input)
  313. {
  314. var user = await _userRepository.GetAsync(input.Id);
  315. if (!(user?.Id > 0))
  316. {
  317. return ResultOutput.NotOk("用户不存在");
  318. }
  319. if (await _userRepository.Select.AnyAsync(a => a.Id != input.Id && a.UserName == input.UserName))
  320. {
  321. return ResultOutput.NotOk($"账号已存在");
  322. }
  323. if (input.Mobile.NotNull() && await _userRepository.Select.AnyAsync(a => a.Id != input.Id && a.Mobile == input.Mobile))
  324. {
  325. return ResultOutput.NotOk($"手机号已存在");
  326. }
  327. if (input.Email.NotNull() && await _userRepository.Select.AnyAsync(a => a.Id != input.Id && a.Email == input.Email))
  328. {
  329. return ResultOutput.NotOk($"邮箱已存在");
  330. }
  331. Mapper.Map(input, user);
  332. await _userRepository.UpdateAsync(user);
  333. var userId = user.Id;
  334. // 用户角色
  335. await _userRoleRepository.DeleteAsync(a => a.UserId == userId);
  336. if (input.RoleIds != null && input.RoleIds.Any())
  337. {
  338. var roles = input.RoleIds.Select(roleId => new UserRoleEntity
  339. {
  340. UserId = userId,
  341. RoleId = roleId
  342. }).ToList();
  343. await _userRoleRepository.InsertAsync(roles);
  344. }
  345. // 员工信息
  346. var staff = await _staffRepository.GetAsync(userId);
  347. if(staff == null)
  348. {
  349. staff = new UserStaffEntity();
  350. }
  351. Mapper.Map(input.Staff, staff);
  352. staff.Id = userId;
  353. await _staffRepository.InsertOrUpdateAsync(staff);
  354. //所属部门
  355. await _userOrgRepository.DeleteAsync(a => a.UserId == userId);
  356. if (input.OrgIds != null && input.OrgIds.Any())
  357. {
  358. var orgs = input.OrgIds.Select(orgId => new UserOrgEntity
  359. {
  360. UserId = userId,
  361. OrgId = orgId
  362. }).ToList();
  363. await _userOrgRepository.InsertAsync(orgs);
  364. }
  365. await Cache.DelAsync(CacheKeys.DataPermission + user.Id);
  366. return ResultOutput.Ok();
  367. }
  368. /// <summary>
  369. /// 更新用户基本信息
  370. /// </summary>
  371. /// <param name="input"></param>
  372. /// <returns></returns>
  373. public async Task<IResultOutput> UpdateBasicAsync(UserUpdateBasicInput input)
  374. {
  375. var entity = await _userRepository.GetAsync(input.Id);
  376. entity = Mapper.Map(input, entity);
  377. await _userRepository.UpdateAsync(entity);
  378. return ResultOutput.Ok();
  379. }
  380. /// <summary>
  381. /// 修改用户密码
  382. /// </summary>
  383. /// <param name="input"></param>
  384. /// <returns></returns>
  385. public async Task<IResultOutput> ChangePasswordAsync(UserChangePasswordInput input)
  386. {
  387. if (input.ConfirmPassword != input.NewPassword)
  388. {
  389. return ResultOutput.NotOk("新密码和确认密码不一致");
  390. }
  391. var entity = await _userRepository.GetAsync(input.Id);
  392. var oldPassword = MD5Encrypt.Encrypt32(input.OldPassword);
  393. if (oldPassword != entity.Password)
  394. {
  395. return ResultOutput.NotOk("旧密码不正确");
  396. }
  397. input.Password = MD5Encrypt.Encrypt32(input.NewPassword);
  398. entity = Mapper.Map(input, entity);
  399. await _userRepository.UpdateAsync(entity);
  400. return ResultOutput.Ok();
  401. }
  402. /// <summary>
  403. /// 彻底删除用户
  404. /// </summary>
  405. /// <param name="id"></param>
  406. /// <returns></returns>
  407. [Transaction]
  408. public virtual async Task<IResultOutput> DeleteAsync(long id)
  409. {
  410. var user = await _userRepository.Select.WhereDynamic(id).ToOneAsync(a => new { a.Type });
  411. if(user == null)
  412. {
  413. return ResultOutput.NotOk("用户不存在");
  414. }
  415. if(user.Type == UserType.PlatformAdmin || user.Type == UserType.TenantAdmin)
  416. {
  417. return ResultOutput.NotOk("平台管理员禁止删除");
  418. }
  419. //删除用户角色
  420. await _userRoleRepository.DeleteAsync(a => a.UserId == id);
  421. //删除用户所属部门
  422. await _userOrgRepository.DeleteAsync(a => a.UserId == id);
  423. //删除员工
  424. await _staffRepository.DeleteAsync(a => a.Id == id);
  425. //删除用户
  426. await _userRepository.DeleteAsync(a => a.Id == id);
  427. await Cache.DelAsync(CacheKeys.DataPermission + id);
  428. return ResultOutput.Ok();
  429. }
  430. /// <summary>
  431. /// 批量彻底删除用户
  432. /// </summary>
  433. /// <param name="ids"></param>
  434. /// <returns></returns>
  435. [Transaction]
  436. public virtual async Task<IResultOutput> BatchDeleteAsync(long[] ids)
  437. {
  438. var admin = await _userRepository.Select.Where(a => ids.Contains(a.Id) &&
  439. (a.Type == UserType.PlatformAdmin || a.Type == UserType.TenantAdmin)).AnyAsync();
  440. if (admin)
  441. {
  442. return ResultOutput.NotOk("平台管理员禁止删除");
  443. }
  444. //删除用户角色
  445. await _userRoleRepository.DeleteAsync(a => ids.Contains(a.UserId));
  446. //删除用户所属部门
  447. await _userOrgRepository.DeleteAsync(a => ids.Contains(a.UserId));
  448. //删除员工
  449. await _staffRepository.DeleteAsync(a => ids.Contains(a.Id));
  450. //删除用户
  451. await _userRepository.DeleteAsync(a => ids.Contains(a.Id));
  452. foreach (var userId in ids)
  453. {
  454. await Cache.DelAsync(CacheKeys.DataPermission + userId);
  455. }
  456. return ResultOutput.Ok();
  457. }
  458. /// <summary>
  459. /// 删除用户
  460. /// </summary>
  461. /// <param name="id"></param>
  462. /// <returns></returns>
  463. [Transaction]
  464. public virtual async Task<IResultOutput> SoftDeleteAsync(long id)
  465. {
  466. var user = await _userRepository.Select.WhereDynamic(id).ToOneAsync(a => new { a.Type });
  467. if (user == null)
  468. {
  469. return ResultOutput.NotOk("用户不存在");
  470. }
  471. if (user.Type == UserType.PlatformAdmin || user.Type == UserType.TenantAdmin)
  472. {
  473. return ResultOutput.NotOk("平台管理员禁止删除");
  474. }
  475. await _userRoleRepository.DeleteAsync(a => a.UserId == id);
  476. await _userOrgRepository.DeleteAsync(a => a.UserId == id);
  477. await _staffRepository.SoftDeleteAsync(a => a.Id == id);
  478. await _userRepository.SoftDeleteAsync(id);
  479. await Cache.DelAsync(CacheKeys.DataPermission + id);
  480. return ResultOutput.Ok();
  481. }
  482. /// <summary>
  483. /// 批量删除用户
  484. /// </summary>
  485. /// <param name="ids"></param>
  486. /// <returns></returns>
  487. [Transaction]
  488. public virtual async Task<IResultOutput> BatchSoftDeleteAsync(long[] ids)
  489. {
  490. var admin = await _userRepository.Select.Where(a => ids.Contains(a.Id) &&
  491. (a.Type == UserType.PlatformAdmin || a.Type == UserType.TenantAdmin)).AnyAsync();
  492. if (admin)
  493. {
  494. return ResultOutput.NotOk("平台管理员禁止删除");
  495. }
  496. await _userRoleRepository.DeleteAsync(a => ids.Contains(a.UserId));
  497. await _userOrgRepository.DeleteAsync(a => ids.Contains(a.UserId));
  498. await _staffRepository.SoftDeleteAsync(a => ids.Contains(a.Id));
  499. await _userRepository.SoftDeleteAsync(ids);
  500. foreach (var userId in ids)
  501. {
  502. await Cache.DelAsync(CacheKeys.DataPermission + userId);
  503. }
  504. return ResultOutput.Ok();
  505. }
  506. /// <summary>
  507. /// 上传头像
  508. /// </summary>
  509. /// <param name="file"></param>
  510. /// <returns></returns>
  511. [HttpPost]
  512. [Login]
  513. public async Task<IResultOutput> AvatarUpload([FromForm] IFormFile file)
  514. {
  515. var uploadConfig = LazyGetRequiredService<IOptionsMonitor<UploadConfig>>().CurrentValue;
  516. var uploadHelper = LazyGetRequiredService<UploadHelper>();
  517. var config = uploadConfig.Avatar;
  518. var res = await uploadHelper.UploadAsync(file, config, new { User.Id });
  519. if (res.Success)
  520. {
  521. return ResultOutput.Ok(res.Data.FileRelativePath);
  522. }
  523. return ResultOutput.NotOk(res.Msg ?? "上传失败!");
  524. }
  525. }