SysRoleService.cs 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252
  1. // Admin.NET 项目的版权、商标、专利和其他相关权利均受相应法律法规的保护。使用本项目应遵守相关法律法规和许可证的要求。
  2. //
  3. // 本项目主要遵循 MIT 许可证和 Apache 许可证(版本 2.0)进行分发和使用。许可证位于源代码树根目录中的 LICENSE-MIT 和 LICENSE-APACHE 文件。
  4. //
  5. // 不得利用本项目从事危害国家安全、扰乱社会秩序、侵犯他人合法权益等法律法规禁止的活动!任何基于本项目二次开发而产生的一切法律纠纷和责任,我们不承担任何责任!
  6. namespace Admin.NET.Core.Service;
  7. /// <summary>
  8. /// 系统角色服务 🧩
  9. /// </summary>
  10. [ApiDescriptionSettings(Order = 480)]
  11. public class SysRoleService : IDynamicApiController, ITransient
  12. {
  13. private readonly UserManager _userManager;
  14. private readonly SqlSugarRepository<SysRole> _sysRoleRep;
  15. private readonly SysRoleOrgService _sysRoleOrgService;
  16. private readonly SysRoleMenuService _sysRoleMenuService;
  17. private readonly SysOrgService _sysOrgService;
  18. private readonly SysUserRoleService _sysUserRoleService;
  19. public SysRoleService(UserManager userManager,
  20. SqlSugarRepository<SysRole> sysRoleRep,
  21. SysRoleOrgService sysRoleOrgService,
  22. SysRoleMenuService sysRoleMenuService,
  23. SysOrgService sysOrgService,
  24. SysUserRoleService sysUserRoleService)
  25. {
  26. _userManager = userManager;
  27. _sysRoleRep = sysRoleRep;
  28. _sysRoleOrgService = sysRoleOrgService;
  29. _sysRoleMenuService = sysRoleMenuService;
  30. _sysOrgService = sysOrgService;
  31. _sysUserRoleService = sysUserRoleService;
  32. }
  33. /// <summary>
  34. /// 获取角色分页列表 🔖
  35. /// </summary>
  36. /// <param name="input"></param>
  37. /// <returns></returns>
  38. [DisplayName("获取角色分页列表")]
  39. public async Task<SqlSugarPagedList<SysRole>> Page(PageRoleInput input)
  40. {
  41. // 当前用户已拥有的角色集合
  42. var roleIdList = _userManager.SuperAdmin ? new List<long>() : await _sysUserRoleService.GetUserRoleIdList(_userManager.UserId);
  43. return await _sysRoleRep.AsQueryable()
  44. .WhereIF(!_userManager.SuperAdmin, u => u.TenantId == _userManager.TenantId) // 若非超管,则只能操作本租户的角色
  45. .WhereIF(!_userManager.SuperAdmin && !_userManager.SysAdmin, u => u.CreateUserId == _userManager.UserId || roleIdList.Contains(u.Id)) // 若非超管且非系统管理员,则只能操作自己创建的角色|自己拥有的角色
  46. .WhereIF(!string.IsNullOrWhiteSpace(input.Name), u => u.Name.Contains(input.Name))
  47. .WhereIF(!string.IsNullOrWhiteSpace(input.Code), u => u.Code.Contains(input.Code))
  48. .OrderBy(u => new { u.OrderNo, u.Id })
  49. .ToPagedListAsync(input.Page, input.PageSize);
  50. }
  51. /// <summary>
  52. /// 获取角色列表 🔖
  53. /// </summary>
  54. /// <returns></returns>
  55. [DisplayName("获取角色列表")]
  56. public async Task<List<RoleOutput>> GetList()
  57. {
  58. // 当前用户已拥有的角色集合
  59. var roleIdList = _userManager.SuperAdmin ? new List<long>() : await _sysUserRoleService.GetUserRoleIdList(_userManager.UserId);
  60. return await _sysRoleRep.AsQueryable()
  61. .WhereIF(!_userManager.SuperAdmin, u => u.TenantId == _userManager.TenantId) // 若非超管,则只能操作本租户的角色
  62. .WhereIF(!_userManager.SuperAdmin && !_userManager.SysAdmin, u => u.CreateUserId == _userManager.UserId || roleIdList.Contains(u.Id)) // 若非超管且非系统管理员,则只显示自己创建和已拥有的角色
  63. .Where(u => u.Status != StatusEnum.Disable) // 非禁用的
  64. .OrderBy(u => new { u.OrderNo, u.Id }).Select<RoleOutput>().ToListAsync();
  65. }
  66. /// <summary>
  67. /// 增加角色 🔖
  68. /// </summary>
  69. /// <param name="input"></param>
  70. /// <returns></returns>
  71. [ApiDescriptionSettings(Name = "Add"), HttpPost]
  72. [DisplayName("增加角色")]
  73. public async Task AddRole(AddRoleInput input)
  74. {
  75. if (await _sysRoleRep.IsAnyAsync(u => u.Name == input.Name && u.Code == input.Code))
  76. throw Oops.Oh(ErrorCodeEnum.D1006);
  77. var newRole = await _sysRoleRep.AsInsertable(input.Adapt<SysRole>()).ExecuteReturnEntityAsync();
  78. input.Id = newRole.Id;
  79. await UpdateRoleMenu(input);
  80. }
  81. /// <summary>
  82. /// 更新角色菜单权限
  83. /// </summary>
  84. /// <param name="input"></param>
  85. /// <returns></returns>
  86. private async Task UpdateRoleMenu(AddRoleInput input)
  87. {
  88. if (input.MenuIdList == null || input.MenuIdList.Count < 1) return;
  89. // 将父节点为0的菜单排除,防止前端全选异常
  90. var pMenuIds = await _sysRoleRep.ChangeRepository<SqlSugarRepository<SysMenu>>().AsQueryable().Where(u => input.MenuIdList.Contains(u.Id) && u.Pid == 0).ToListAsync(u => u.Id);
  91. var menuIds = input.MenuIdList.Except(pMenuIds); // 差集
  92. await GrantMenu(new RoleMenuInput()
  93. {
  94. Id = input.Id,
  95. MenuIdList = menuIds.ToList()
  96. });
  97. }
  98. /// <summary>
  99. /// 更新角色 🔖
  100. /// </summary>
  101. /// <param name="input"></param>
  102. /// <returns></returns>
  103. [ApiDescriptionSettings(Name = "Update"), HttpPost]
  104. [DisplayName("更新角色")]
  105. public async Task UpdateRole(UpdateRoleInput input)
  106. {
  107. if (await _sysRoleRep.IsAnyAsync(u => u.Name == input.Name && u.Code == input.Code && u.Id != input.Id))
  108. throw Oops.Oh(ErrorCodeEnum.D1006);
  109. await _sysRoleRep.AsUpdateable(input.Adapt<SysRole>()).IgnoreColumns(true)
  110. .IgnoreColumns(u => new { u.DataScope }).ExecuteCommandAsync();
  111. await UpdateRoleMenu(input);
  112. }
  113. /// <summary>
  114. /// 删除角色 🔖
  115. /// </summary>
  116. /// <param name="input"></param>
  117. /// <returns></returns>
  118. [UnitOfWork]
  119. [ApiDescriptionSettings(Name = "Delete"), HttpPost]
  120. [DisplayName("删除角色")]
  121. public async Task DeleteRole(DeleteRoleInput input)
  122. {
  123. // 禁止删除系统管理员角色
  124. var sysRole = await _sysRoleRep.GetFirstAsync(u => u.Id == input.Id) ?? throw Oops.Oh(ErrorCodeEnum.D1002);
  125. if (sysRole.Code == CommonConst.SysAdminRole) throw Oops.Oh(ErrorCodeEnum.D1019);
  126. // 若角色有用户则禁止删除
  127. var userIds = await _sysUserRoleService.GetUserIdList(input.Id);
  128. if (userIds != null && userIds.Count > 0) throw Oops.Oh(ErrorCodeEnum.D1025);
  129. await _sysRoleRep.DeleteAsync(sysRole);
  130. // 级联删除角色机构数据
  131. await _sysRoleOrgService.DeleteRoleOrgByRoleId(sysRole.Id);
  132. // 级联删除用户角色数据
  133. await _sysUserRoleService.DeleteUserRoleByRoleId(sysRole.Id);
  134. // 级联删除角色菜单数据
  135. await _sysRoleMenuService.DeleteRoleMenuByRoleId(sysRole.Id);
  136. }
  137. /// <summary>
  138. /// 授权角色菜单 🔖
  139. /// </summary>
  140. /// <param name="input"></param>
  141. /// <returns></returns>
  142. [UnitOfWork]
  143. [DisplayName("授权角色菜单")]
  144. public async Task GrantMenu(RoleMenuInput input)
  145. {
  146. await _sysRoleMenuService.GrantRoleMenu(input);
  147. }
  148. /// <summary>
  149. /// 授权角色数据范围 🔖
  150. /// </summary>
  151. /// <param name="input"></param>
  152. /// <returns></returns>
  153. [UnitOfWork]
  154. [DisplayName("授权角色数据范围")]
  155. public async Task GrantDataScope(RoleOrgInput input)
  156. {
  157. // 删除与该角色相关的用户机构缓存
  158. var userIdList = await _sysUserRoleService.GetUserIdList(input.Id);
  159. foreach (var userId in userIdList)
  160. {
  161. SqlSugarFilter.DeleteUserOrgCache(userId, _sysRoleRep.Context.CurrentConnectionConfig.ConfigId.ToString());
  162. }
  163. var role = await _sysRoleRep.GetFirstAsync(u => u.Id == input.Id);
  164. var dataScope = input.DataScope;
  165. if (!_userManager.SuperAdmin)
  166. {
  167. switch (dataScope)
  168. {
  169. // 非超级管理员没有全部数据范围权限
  170. case (int)DataScopeEnum.All: throw Oops.Oh(ErrorCodeEnum.D1016);
  171. // 若数据范围自定义,则判断授权数据范围是否有权限
  172. case (int)DataScopeEnum.Define:
  173. {
  174. var grantOrgIdList = input.OrgIdList;
  175. if (grantOrgIdList.Count > 0)
  176. {
  177. var orgIdList = await _sysOrgService.GetUserOrgIdList();
  178. if (orgIdList.Count < 1)
  179. throw Oops.Oh(ErrorCodeEnum.D1016);
  180. if (!grantOrgIdList.All(u => orgIdList.Any(c => c == u)))
  181. throw Oops.Oh(ErrorCodeEnum.D1016);
  182. }
  183. break;
  184. }
  185. }
  186. }
  187. role.DataScope = (DataScopeEnum)dataScope;
  188. await _sysRoleRep.AsUpdateable(role).UpdateColumns(u => new { u.DataScope }).ExecuteCommandAsync();
  189. await _sysRoleOrgService.GrantRoleOrg(input);
  190. }
  191. /// <summary>
  192. /// 根据角色Id获取菜单Id集合 🔖
  193. /// </summary>
  194. /// <param name="input"></param>
  195. /// <returns></returns>
  196. [DisplayName("根据角色Id获取菜单Id集合")]
  197. public async Task<List<long>> GetOwnMenuList([FromQuery] RoleInput input)
  198. {
  199. return await _sysRoleMenuService.GetRoleMenuIdList(new List<long> { input.Id });
  200. }
  201. /// <summary>
  202. /// 根据角色Id获取机构Id集合 🔖
  203. /// </summary>
  204. /// <param name="input"></param>
  205. /// <returns></returns>
  206. [DisplayName("根据角色Id获取机构Id集合")]
  207. public async Task<List<long>> GetOwnOrgList([FromQuery] RoleInput input)
  208. {
  209. return await _sysRoleOrgService.GetRoleOrgIdList(new List<long> { input.Id });
  210. }
  211. /// <summary>
  212. /// 设置角色状态 🔖
  213. /// </summary>
  214. /// <param name="input"></param>
  215. /// <returns></returns>
  216. [DisplayName("设置角色状态")]
  217. public async Task<int> SetStatus(RoleInput input)
  218. {
  219. if (!Enum.IsDefined(typeof(StatusEnum), input.Status)) throw Oops.Oh(ErrorCodeEnum.D3005);
  220. return await _sysRoleRep.AsUpdateable()
  221. .SetColumns(u => u.Status == input.Status)
  222. .Where(u => u.Id == input.Id)
  223. .ExecuteCommandAsync();
  224. }
  225. }