SysRoleService.cs 9.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251
  1. // Admin.NET 项目的版权、商标、专利和其他相关权利均受相应法律法规的保护。使用本项目应遵守相关法律法规和许可证的要求。
  2. //
  3. // 本项目主要遵循 MIT 许可证和 Apache 许可证(版本 2.0)进行分发和使用。许可证位于源代码树根目录中的 LICENSE-MIT 和 LICENSE-APACHE 文件。
  4. //
  5. // 不得利用本项目从事危害国家安全、扰乱社会秩序、侵犯他人合法权益等法律法规禁止的活动!任何基于本项目二次开发而产生的一切法律纠纷和责任,我们不承担任何责任!
  6. namespace Admin.NET.Core.Service;
  7. /// <summary>
  8. /// 系统角色服务 🧩
  9. /// </summary>
  10. [ApiDescriptionSettings(Order = 480)]
  11. public class SysRoleService : IDynamicApiController, ITransient
  12. {
  13. private readonly UserManager _userManager;
  14. private readonly SqlSugarRepository<SysRole> _sysRoleRep;
  15. private readonly SysRoleOrgService _sysRoleOrgService;
  16. private readonly SysRoleMenuService _sysRoleMenuService;
  17. private readonly SysOrgService _sysOrgService;
  18. private readonly SysUserRoleService _sysUserRoleService;
  19. public SysRoleService(UserManager userManager,
  20. SqlSugarRepository<SysRole> sysRoleRep,
  21. SysRoleOrgService sysRoleOrgService,
  22. SysRoleMenuService sysRoleMenuService,
  23. SysOrgService sysOrgService,
  24. SysUserRoleService sysUserRoleService)
  25. {
  26. _userManager = userManager;
  27. _sysRoleRep = sysRoleRep;
  28. _sysRoleOrgService = sysRoleOrgService;
  29. _sysRoleMenuService = sysRoleMenuService;
  30. _sysOrgService = sysOrgService;
  31. _sysUserRoleService = sysUserRoleService;
  32. }
  33. /// <summary>
  34. /// 获取角色分页列表 🔖
  35. /// </summary>
  36. /// <param name="input"></param>
  37. /// <returns></returns>
  38. [DisplayName("获取角色分页列表")]
  39. public async Task<SqlSugarPagedList<SysRole>> Page(PageRoleInput input)
  40. {
  41. return await _sysRoleRep.AsQueryable()
  42. .WhereIF(!_userManager.SuperAdmin, u => u.TenantId == _userManager.TenantId) // 若非超管,则只能操作本租户的角色
  43. .WhereIF(!_userManager.SuperAdmin && !_userManager.SysAdmin, u => u.CreateUserId == _userManager.UserId) // 若非超管且非系统管理员,则只能操作自己创建的角色
  44. .WhereIF(!string.IsNullOrWhiteSpace(input.Name), u => u.Name.Contains(input.Name))
  45. .WhereIF(!string.IsNullOrWhiteSpace(input.Code), u => u.Code.Contains(input.Code))
  46. .OrderBy(u => new { u.OrderNo, u.Id })
  47. .ToPagedListAsync(input.Page, input.PageSize);
  48. }
  49. /// <summary>
  50. /// 获取角色列表 🔖
  51. /// </summary>
  52. /// <returns></returns>
  53. [DisplayName("获取角色列表")]
  54. public async Task<List<RoleOutput>> GetList()
  55. {
  56. // 当前用户已拥有的角色集合
  57. var roleIdList = _userManager.SuperAdmin ? new List<long>() : await _sysUserRoleService.GetUserRoleIdList(_userManager.UserId);
  58. return await _sysRoleRep.AsQueryable()
  59. .WhereIF(!_userManager.SuperAdmin, u => u.TenantId == _userManager.TenantId) // 若非超管,则只能操作本租户的角色
  60. .WhereIF(!_userManager.SuperAdmin && !_userManager.SysAdmin, u => u.CreateUserId == _userManager.UserId || roleIdList.Contains(u.Id)) // 若非超管且非系统管理员,则只显示自己创建和已拥有的角色
  61. .Where(u => u.Status != StatusEnum.Disable) // 非禁用的
  62. .OrderBy(u => new { u.OrderNo, u.Id }).Select<RoleOutput>().ToListAsync();
  63. }
  64. /// <summary>
  65. /// 增加角色 🔖
  66. /// </summary>
  67. /// <param name="input"></param>
  68. /// <returns></returns>
  69. [ApiDescriptionSettings(Name = "Add"), HttpPost]
  70. [DisplayName("增加角色")]
  71. public async Task AddRole(AddRoleInput input)
  72. {
  73. if (await _sysRoleRep.IsAnyAsync(u => u.Name == input.Name && u.Code == input.Code))
  74. throw Oops.Oh(ErrorCodeEnum.D1006);
  75. var newRole = await _sysRoleRep.AsInsertable(input.Adapt<SysRole>()).ExecuteReturnEntityAsync();
  76. input.Id = newRole.Id;
  77. await UpdateRoleMenu(input);
  78. }
  79. /// <summary>
  80. /// 更新角色菜单权限
  81. /// </summary>
  82. /// <param name="input"></param>
  83. /// <returns></returns>
  84. private async Task UpdateRoleMenu(AddRoleInput input)
  85. {
  86. if (input.MenuIdList == null || input.MenuIdList.Count < 1)
  87. return;
  88. // 将父节点为0的菜单排除,防止前端全选异常
  89. var pMenuIds = await _sysRoleRep.ChangeRepository<SqlSugarRepository<SysMenu>>().AsQueryable().Where(u => input.MenuIdList.Contains(u.Id) && u.Pid == 0).ToListAsync(u => u.Id);
  90. var menuIds = input.MenuIdList.Except(pMenuIds); // 差集
  91. await GrantMenu(new RoleMenuInput()
  92. {
  93. Id = input.Id,
  94. MenuIdList = menuIds.ToList()
  95. });
  96. }
  97. /// <summary>
  98. /// 更新角色 🔖
  99. /// </summary>
  100. /// <param name="input"></param>
  101. /// <returns></returns>
  102. [ApiDescriptionSettings(Name = "Update"), HttpPost]
  103. [DisplayName("更新角色")]
  104. public async Task UpdateRole(UpdateRoleInput input)
  105. {
  106. if (await _sysRoleRep.IsAnyAsync(u => u.Name == input.Name && u.Code == input.Code && u.Id != input.Id))
  107. throw Oops.Oh(ErrorCodeEnum.D1006);
  108. await _sysRoleRep.AsUpdateable(input.Adapt<SysRole>()).IgnoreColumns(true)
  109. .IgnoreColumns(u => new { u.DataScope }).ExecuteCommandAsync();
  110. await UpdateRoleMenu(input);
  111. }
  112. /// <summary>
  113. /// 删除角色 🔖
  114. /// </summary>
  115. /// <param name="input"></param>
  116. /// <returns></returns>
  117. [UnitOfWork]
  118. [ApiDescriptionSettings(Name = "Delete"), HttpPost]
  119. [DisplayName("删除角色")]
  120. public async Task DeleteRole(DeleteRoleInput input)
  121. {
  122. // 禁止删除系统管理员角色
  123. var sysRole = await _sysRoleRep.GetFirstAsync(u => u.Id == input.Id) ?? throw Oops.Oh(ErrorCodeEnum.D1002);
  124. if (sysRole.Code == CommonConst.SysAdminRole)
  125. throw Oops.Oh(ErrorCodeEnum.D1019);
  126. // 若角色有用户则禁止删除
  127. var userIds = await _sysUserRoleService.GetUserIdList(input.Id);
  128. if (userIds != null && userIds.Count > 0)
  129. throw Oops.Oh(ErrorCodeEnum.D1025);
  130. await _sysRoleRep.DeleteAsync(sysRole);
  131. // 级联删除角色机构数据
  132. await _sysRoleOrgService.DeleteRoleOrgByRoleId(sysRole.Id);
  133. // 级联删除用户角色数据
  134. await _sysUserRoleService.DeleteUserRoleByRoleId(sysRole.Id);
  135. // 级联删除角色菜单数据
  136. await _sysRoleMenuService.DeleteRoleMenuByRoleId(sysRole.Id);
  137. }
  138. /// <summary>
  139. /// 授权角色菜单 🔖
  140. /// </summary>
  141. /// <param name="input"></param>
  142. /// <returns></returns>
  143. [UnitOfWork]
  144. [DisplayName("授权角色菜单")]
  145. public async Task GrantMenu(RoleMenuInput input)
  146. {
  147. await _sysRoleMenuService.GrantRoleMenu(input);
  148. }
  149. /// <summary>
  150. /// 授权角色数据范围 🔖
  151. /// </summary>
  152. /// <param name="input"></param>
  153. /// <returns></returns>
  154. [UnitOfWork]
  155. [DisplayName("授权角色数据范围")]
  156. public async Task GrantDataScope(RoleOrgInput input)
  157. {
  158. // 删除与该角色相关的用户机构缓存
  159. var userIdList = await _sysUserRoleService.GetUserIdList(input.Id);
  160. foreach (var userId in userIdList)
  161. {
  162. SqlSugarFilter.DeleteUserOrgCache(userId, _sysRoleRep.Context.CurrentConnectionConfig.ConfigId.ToString());
  163. }
  164. var role = await _sysRoleRep.GetFirstAsync(u => u.Id == input.Id);
  165. var dataScope = input.DataScope;
  166. if (!_userManager.SuperAdmin)
  167. {
  168. // 非超级管理员没有全部数据范围权限
  169. if (dataScope == (int)DataScopeEnum.All)
  170. throw Oops.Oh(ErrorCodeEnum.D1016);
  171. // 若数据范围自定义,则判断授权数据范围是否有权限
  172. if (dataScope == (int)DataScopeEnum.Define)
  173. {
  174. var grantOrgIdList = input.OrgIdList;
  175. if (grantOrgIdList.Count > 0)
  176. {
  177. var orgIdList = await _sysOrgService.GetUserOrgIdList();
  178. if (orgIdList.Count < 1)
  179. throw Oops.Oh(ErrorCodeEnum.D1016);
  180. else if (!grantOrgIdList.All(u => orgIdList.Any(c => c == u)))
  181. throw Oops.Oh(ErrorCodeEnum.D1016);
  182. }
  183. }
  184. }
  185. role.DataScope = (DataScopeEnum)dataScope;
  186. await _sysRoleRep.AsUpdateable(role).UpdateColumns(u => new { u.DataScope }).ExecuteCommandAsync();
  187. await _sysRoleOrgService.GrantRoleOrg(input);
  188. }
  189. /// <summary>
  190. /// 根据角色Id获取菜单Id集合 🔖
  191. /// </summary>
  192. /// <param name="input"></param>
  193. /// <returns></returns>
  194. [DisplayName("根据角色Id获取菜单Id集合")]
  195. public async Task<List<long>> GetOwnMenuList([FromQuery] RoleInput input)
  196. {
  197. return await _sysRoleMenuService.GetRoleMenuIdList(new List<long> { input.Id });
  198. }
  199. /// <summary>
  200. /// 根据角色Id获取机构Id集合 🔖
  201. /// </summary>
  202. /// <param name="input"></param>
  203. /// <returns></returns>
  204. [DisplayName("根据角色Id获取机构Id集合")]
  205. public async Task<List<long>> GetOwnOrgList([FromQuery] RoleInput input)
  206. {
  207. return await _sysRoleOrgService.GetRoleOrgIdList(new List<long> { input.Id });
  208. }
  209. /// <summary>
  210. /// 设置角色状态 🔖
  211. /// </summary>
  212. /// <param name="input"></param>
  213. /// <returns></returns>
  214. [DisplayName("设置角色状态")]
  215. public async Task<int> SetStatus(RoleInput input)
  216. {
  217. if (!Enum.IsDefined(typeof(StatusEnum), input.Status))
  218. throw Oops.Oh(ErrorCodeEnum.D3005);
  219. return await _sysRoleRep.AsUpdateable()
  220. .SetColumns(u => u.Status == input.Status)
  221. .Where(u => u.Id == input.Id)
  222. .ExecuteCommandAsync();
  223. }
  224. }