datascope.go 2.7 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182
  1. package models
  2. import (
  3. "IotAdmin/core/sdk/pkg"
  4. "errors"
  5. "gorm.io/gorm"
  6. log "IotAdmin/core/logger"
  7. "IotAdmin/core/sdk/config"
  8. )
  9. type DataPermission struct {
  10. DataScope string
  11. UserId int
  12. OrgId int
  13. RoleId int
  14. }
  15. func (e *DataPermission) GetDataScope(tableName string, db *gorm.DB) (*gorm.DB, error) {
  16. if !config.ApplicationConfig.EnabledDP {
  17. usageStr := `数据权限已经为您` + pkg.Green(`关闭`) + `,如需开启请参考配置文件字段说明`
  18. log.Debugf("%s\n", usageStr)
  19. return db, nil
  20. }
  21. user := new(SysUser)
  22. role := new(SysRole)
  23. err := db.Find(user, e.UserId).Error
  24. if err != nil {
  25. return nil, errors.New("获取用户数据出错 msg:" + err.Error())
  26. }
  27. err = db.Find(role, user.RoleId).Error
  28. if err != nil {
  29. return nil, errors.New("获取用户数据出错 msg:" + err.Error())
  30. }
  31. if role.DataScope == "2" {
  32. db = db.Where(tableName+".create_by in (select sys_user.user_id from sys_role_org left join sys_user on sys_user.org_id=sys_role_org.org_id where sys_role_org.role_id = ?)", user.RoleId)
  33. }
  34. if role.DataScope == "3" {
  35. db = db.Where(tableName+".create_by in (SELECT user_id from sys_user where org_id = ? )", user.OrgId)
  36. }
  37. if role.DataScope == "4" {
  38. db = db.Where(tableName+".create_by in (SELECT user_id from sys_user where sys_user.org_id in(select org_id from sys_org where org_path like ? ))", "%"+pkg.IntToString(user.OrgId)+"%")
  39. }
  40. if role.DataScope == "5" || role.DataScope == "" {
  41. db = db.Where(tableName+".create_by = ?", e.UserId)
  42. }
  43. return db, nil
  44. }
  45. //func DataScopes(tableName string, userId int) func(db *gorm.DB) *gorm.DB {
  46. // return func(db *gorm.DB) *gorm.DB {
  47. // user := new(SysUser)
  48. // role := new(SysRole)
  49. // user.UserId = userId
  50. // err := db.Find(user, userId).Error
  51. // if err != nil {
  52. // db.Error = errors.New("获取用户数据出错 msg:" + err.Error())
  53. // return db
  54. // }
  55. // err = db.Find(role, user.RoleId).Error
  56. // if err != nil {
  57. // db.Error = errors.New("获取用户数据出错 msg:" + err.Error())
  58. // return db
  59. // }
  60. // if role.DataScope == "2" {
  61. // return db.Where(tableName+".create_by in (select sys_user.user_id from sys_role_org left join sys_user on sys_user.org_id=sys_role_org.org_id where sys_role_org.role_id = ?)", user.RoleId)
  62. // }
  63. // if role.DataScope == "3" {
  64. // return db.Where(tableName+".create_by in (SELECT user_id from sys_user where org_id = ? )", user.OrgId)
  65. // }
  66. // if role.DataScope == "4" {
  67. // return db.Where(tableName+".create_by in (SELECT user_id from sys_user where sys_user.org_id in(select org_id from sys_org where org_path like ? ))", "%"+pkg.IntToString(user.OrgId)+"%")
  68. // }
  69. // if role.DataScope == "5" || role.DataScope == "" {
  70. // return db.Where(tableName+".create_by = ?", userId)
  71. // }
  72. // return db
  73. // }
  74. //}