SysRoleService.cs 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254
  1. // Admin.NET 项目的版权、商标、专利和其他相关权利均受相应法律法规的保护。使用本项目应遵守相关法律法规和许可证的要求。
  2. //
  3. // 本项目主要遵循 MIT 许可证和 Apache 许可证(版本 2.0)进行分发和使用。许可证位于源代码树根目录中的 LICENSE-MIT 和 LICENSE-APACHE 文件。
  4. //
  5. // 不得利用本项目从事危害国家安全、扰乱社会秩序、侵犯他人合法权益等法律法规禁止的活动!任何基于本项目二次开发而产生的一切法律纠纷和责任,我们不承担任何责任!
  6. namespace Admin.NET.Core.Service;
  7. /// <summary>
  8. /// 系统角色服务 🧩
  9. /// </summary>
  10. [ApiDescriptionSettings(Order = 480)]
  11. public class SysRoleService : IDynamicApiController, ITransient
  12. {
  13. private readonly UserManager _userManager;
  14. private readonly SqlSugarRepository<SysRole> _sysRoleRep;
  15. private readonly SysRoleOrgService _sysRoleOrgService;
  16. private readonly SysRoleMenuService _sysRoleMenuService;
  17. private readonly SysOrgService _sysOrgService;
  18. private readonly SysUserRoleService _sysUserRoleService;
  19. public SysRoleService(UserManager userManager,
  20. SqlSugarRepository<SysRole> sysRoleRep,
  21. SysRoleOrgService sysRoleOrgService,
  22. SysRoleMenuService sysRoleMenuService,
  23. SysOrgService sysOrgService,
  24. SysUserRoleService sysUserRoleService)
  25. {
  26. _userManager = userManager;
  27. _sysRoleRep = sysRoleRep;
  28. _sysRoleOrgService = sysRoleOrgService;
  29. _sysRoleMenuService = sysRoleMenuService;
  30. _sysOrgService = sysOrgService;
  31. _sysUserRoleService = sysUserRoleService;
  32. }
  33. /// <summary>
  34. /// 获取角色分页列表 🔖
  35. /// </summary>
  36. /// <param name="input"></param>
  37. /// <returns></returns>
  38. [DisplayName("获取角色分页列表")]
  39. public async Task<SqlSugarPagedList<SysRole>> Page(PageRoleInput input)
  40. {
  41. // 当前用户已拥有的角色集合
  42. var roleIdList = _userManager.SuperAdmin ? new List<long>() : await _sysUserRoleService.GetUserRoleIdList(_userManager.UserId);
  43. return await _sysRoleRep.AsQueryable()
  44. .WhereIF(_userManager.SuperAdmin && input.TenantId > 0, u => u.TenantId == input.TenantId)
  45. .WhereIF(!_userManager.SuperAdmin, u => u.TenantId == _userManager.TenantId) // 若非超管,则只能操作本租户的角色
  46. .WhereIF(!_userManager.SuperAdmin && !_userManager.SysAdmin, u => u.CreateUserId == _userManager.UserId || roleIdList.Contains(u.Id)) // 若非超管且非系统管理员,则只能操作自己创建的角色|自己拥有的角色
  47. .WhereIF(!string.IsNullOrWhiteSpace(input.Name), u => u.Name.Contains(input.Name))
  48. .WhereIF(!string.IsNullOrWhiteSpace(input.Code), u => u.Code.Contains(input.Code))
  49. .OrderBy(u => new { u.OrderNo, u.Id })
  50. .ToPagedListAsync(input.Page, input.PageSize);
  51. }
  52. /// <summary>
  53. /// 获取角色列表 🔖
  54. /// </summary>
  55. /// <returns></returns>
  56. [DisplayName("获取角色列表")]
  57. public async Task<List<RoleOutput>> GetList()
  58. {
  59. // 当前用户已拥有的角色集合
  60. var roleIdList = _userManager.SuperAdmin ? new List<long>() : await _sysUserRoleService.GetUserRoleIdList(_userManager.UserId);
  61. return await _sysRoleRep.AsQueryable()
  62. .WhereIF(!_userManager.SuperAdmin, u => u.TenantId == _userManager.TenantId) // 若非超管,则只能操作本租户的角色
  63. .WhereIF(!_userManager.SuperAdmin && !_userManager.SysAdmin, u => u.CreateUserId == _userManager.UserId || roleIdList.Contains(u.Id)) // 若非超管且非系统管理员,则只显示自己创建和已拥有的角色
  64. .Where(u => u.Status != StatusEnum.Disable) // 非禁用的
  65. .OrderBy(u => new { u.OrderNo, u.Id }).Select<RoleOutput>().ToListAsync();
  66. }
  67. /// <summary>
  68. /// 增加角色 🔖
  69. /// </summary>
  70. /// <param name="input"></param>
  71. /// <returns></returns>
  72. [ApiDescriptionSettings(Name = "Add"), HttpPost]
  73. [DisplayName("增加角色")]
  74. public async Task AddRole(AddRoleInput input)
  75. {
  76. if (await _sysRoleRep.IsAnyAsync(u => u.Name == input.Name && u.Code == input.Code))
  77. throw Oops.Oh(ErrorCodeEnum.D1006);
  78. var newRole = await _sysRoleRep.AsInsertable(input.Adapt<SysRole>()).ExecuteReturnEntityAsync();
  79. input.Id = newRole.Id;
  80. await UpdateRoleMenu(input);
  81. }
  82. /// <summary>
  83. /// 更新角色菜单权限
  84. /// </summary>
  85. /// <param name="input"></param>
  86. /// <returns></returns>
  87. private async Task UpdateRoleMenu(AddRoleInput input)
  88. {
  89. if (input.MenuIdList == null || input.MenuIdList.Count < 1) return;
  90. // 将父节点为0的菜单排除,防止前端全选异常
  91. var pMenuIds = await _sysRoleRep.ChangeRepository<SqlSugarRepository<SysMenu>>().AsQueryable().Where(u => input.MenuIdList.Contains(u.Id) && u.Pid == 0).ToListAsync(u => u.Id);
  92. var menuIds = input.MenuIdList.Except(pMenuIds); // 差集
  93. await GrantMenu(new RoleMenuInput()
  94. {
  95. Id = input.Id,
  96. MenuIdList = menuIds.ToList()
  97. });
  98. }
  99. /// <summary>
  100. /// 更新角色 🔖
  101. /// </summary>
  102. /// <param name="input"></param>
  103. /// <returns></returns>
  104. [ApiDescriptionSettings(Name = "Update"), HttpPost]
  105. [DisplayName("更新角色")]
  106. public async Task UpdateRole(UpdateRoleInput input)
  107. {
  108. if (await _sysRoleRep.IsAnyAsync(u => u.Name == input.Name && u.Code == input.Code && u.Id != input.Id))
  109. throw Oops.Oh(ErrorCodeEnum.D1006);
  110. await _sysRoleRep.AsUpdateable(input.Adapt<SysRole>()).IgnoreColumns(true)
  111. .IgnoreColumns(u => new { u.DataScope }).ExecuteCommandAsync();
  112. await UpdateRoleMenu(input);
  113. }
  114. /// <summary>
  115. /// 删除角色 🔖
  116. /// </summary>
  117. /// <param name="input"></param>
  118. /// <returns></returns>
  119. [UnitOfWork]
  120. [ApiDescriptionSettings(Name = "Delete"), HttpPost]
  121. [DisplayName("删除角色")]
  122. public async Task DeleteRole(DeleteRoleInput input)
  123. {
  124. // 若角色有用户则禁止删除
  125. var userIds = await _sysUserRoleService.GetUserIdList(input.Id);
  126. if (userIds != null && userIds.Count > 0) throw Oops.Oh(ErrorCodeEnum.D1025);
  127. // 若有绑定注册方案则禁止删除
  128. var hasUserRegWay = await _sysRoleRep.Context.Queryable<SysUserRegWay>().AnyAsync(u => u.RoleId == input.Id);
  129. if (hasUserRegWay) throw Oops.Oh(ErrorCodeEnum.D1033);
  130. var sysRole = await _sysRoleRep.GetFirstAsync(u => u.Id == input.Id) ?? throw Oops.Oh(ErrorCodeEnum.D1002);
  131. await _sysRoleRep.DeleteAsync(sysRole);
  132. // 级联删除角色机构数据
  133. await _sysRoleOrgService.DeleteRoleOrgByRoleId(sysRole.Id);
  134. // 级联删除用户角色数据
  135. await _sysUserRoleService.DeleteUserRoleByRoleId(sysRole.Id);
  136. // 级联删除角色菜单数据
  137. await _sysRoleMenuService.DeleteRoleMenuByRoleId(sysRole.Id);
  138. }
  139. /// <summary>
  140. /// 授权角色菜单 🔖
  141. /// </summary>
  142. /// <param name="input"></param>
  143. /// <returns></returns>
  144. [UnitOfWork]
  145. [DisplayName("授权角色菜单")]
  146. public async Task GrantMenu(RoleMenuInput input)
  147. {
  148. await _sysRoleMenuService.GrantRoleMenu(input);
  149. }
  150. /// <summary>
  151. /// 授权角色数据范围 🔖
  152. /// </summary>
  153. /// <param name="input"></param>
  154. /// <returns></returns>
  155. [UnitOfWork]
  156. [DisplayName("授权角色数据范围")]
  157. public async Task GrantDataScope(RoleOrgInput input)
  158. {
  159. // 删除与该角色相关的用户机构缓存
  160. var userIdList = await _sysUserRoleService.GetUserIdList(input.Id);
  161. foreach (var userId in userIdList)
  162. {
  163. SqlSugarFilter.DeleteUserOrgCache(userId, _sysRoleRep.Context.CurrentConnectionConfig.ConfigId.ToString());
  164. }
  165. var role = await _sysRoleRep.GetFirstAsync(u => u.Id == input.Id);
  166. var dataScope = input.DataScope;
  167. if (!_userManager.SuperAdmin)
  168. {
  169. switch (dataScope)
  170. {
  171. // 非超级管理员没有全部数据范围权限
  172. case (int)DataScopeEnum.All: throw Oops.Oh(ErrorCodeEnum.D1016);
  173. // 若数据范围自定义,则判断授权数据范围是否有权限
  174. case (int)DataScopeEnum.Define:
  175. {
  176. var grantOrgIdList = input.OrgIdList;
  177. if (grantOrgIdList.Count > 0)
  178. {
  179. var orgIdList = await _sysOrgService.GetUserOrgIdList();
  180. if (orgIdList.Count < 1)
  181. throw Oops.Oh(ErrorCodeEnum.D1016);
  182. if (!grantOrgIdList.All(u => orgIdList.Any(c => c == u)))
  183. throw Oops.Oh(ErrorCodeEnum.D1016);
  184. }
  185. break;
  186. }
  187. }
  188. }
  189. role.DataScope = (DataScopeEnum)dataScope;
  190. await _sysRoleRep.AsUpdateable(role).UpdateColumns(u => new { u.DataScope }).ExecuteCommandAsync();
  191. await _sysRoleOrgService.GrantRoleOrg(input);
  192. }
  193. /// <summary>
  194. /// 根据角色Id获取菜单Id集合 🔖
  195. /// </summary>
  196. /// <param name="input"></param>
  197. /// <returns></returns>
  198. [DisplayName("根据角色Id获取菜单Id集合")]
  199. public async Task<List<long>> GetOwnMenuList([FromQuery] RoleInput input)
  200. {
  201. return await _sysRoleMenuService.GetRoleMenuIdList(new List<long> { input.Id });
  202. }
  203. /// <summary>
  204. /// 根据角色Id获取机构Id集合 🔖
  205. /// </summary>
  206. /// <param name="input"></param>
  207. /// <returns></returns>
  208. [DisplayName("根据角色Id获取机构Id集合")]
  209. public async Task<List<long>> GetOwnOrgList([FromQuery] RoleInput input)
  210. {
  211. return await _sysRoleOrgService.GetRoleOrgIdList(new List<long> { input.Id });
  212. }
  213. /// <summary>
  214. /// 设置角色状态 🔖
  215. /// </summary>
  216. /// <param name="input"></param>
  217. /// <returns></returns>
  218. [DisplayName("设置角色状态")]
  219. public async Task<int> SetStatus(RoleInput input)
  220. {
  221. if (!Enum.IsDefined(typeof(StatusEnum), input.Status)) throw Oops.Oh(ErrorCodeEnum.D3005);
  222. return await _sysRoleRep.AsUpdateable()
  223. .SetColumns(u => u.Status == input.Status)
  224. .Where(u => u.Id == input.Id)
  225. .ExecuteCommandAsync();
  226. }
  227. }