datascope.go 2.8 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485
  1. package models
  2. import (
  3. "errors"
  4. "fmt"
  5. "gorm.io/gorm"
  6. "device-manage/tools"
  7. "device-manage/tools/config"
  8. )
  9. type DataPermission struct {
  10. DataScope string
  11. UserId int
  12. DeptId int
  13. RoleId int
  14. }
  15. func (e *DataPermission) GetDataScope(tbname string, table *gorm.DB) (*gorm.DB, error) {
  16. if !config.ApplicationConfig.EnableDP {
  17. usageStr := `数据权限已经为您` + tools.Green(`关闭`) + `,如需开启请参考配置文件字段说明`
  18. fmt.Printf("%s\n", usageStr)
  19. return table, nil
  20. }
  21. SysUser := new(SysUser)
  22. SysRole := new(SysRole)
  23. SysUser.UserId = e.UserId
  24. user, err := SysUser.Get()
  25. if err != nil {
  26. return nil, errors.New("获取用户数据出错 msg:" + err.Error())
  27. }
  28. SysRole.RoleId = user.RoleId
  29. role, err := SysRole.Get()
  30. if err != nil {
  31. return nil, errors.New("获取用户数据出错 msg:" + err.Error())
  32. }
  33. if role.DataScope == "2" {
  34. table = table.Where(tbname+".create_by in (select sys_user.user_id from sys_role_dept left join sys_user on sys_user.dept_id=sys_role_dept.dept_id where sys_role_dept.role_id = ?)", user.RoleId)
  35. }
  36. if role.DataScope == "3" {
  37. table = table.Where(tbname+".create_by in (SELECT user_id from sys_user where dept_id = ? )", user.DeptId)
  38. }
  39. if role.DataScope == "4" {
  40. table = table.Where(tbname+".create_by in (SELECT user_id from sys_user where sys_user.dept_id in(select dept_id from sys_dept where dept_path like ? ))", "%"+tools.IntToString(user.DeptId)+"%")
  41. }
  42. if role.DataScope == "5" || role.DataScope == "" {
  43. table = table.Where(tbname+".create_by = ?", e.UserId)
  44. }
  45. return table, nil
  46. }
  47. func DataScopes(tableName string, userid int) func(db *gorm.DB) *gorm.DB {
  48. return func(db *gorm.DB) *gorm.DB {
  49. SysUser := new(SysUser)
  50. SysRole := new(SysRole)
  51. SysUser.UserId = userid
  52. user, err := SysUser.Get()
  53. if err != nil {
  54. db.Error = errors.New("获取用户数据出错 msg:" + err.Error())
  55. return db
  56. }
  57. SysRole.RoleId = user.RoleId
  58. role, err := SysRole.Get()
  59. if err != nil {
  60. db.Error = errors.New("获取用户数据出错 msg:" + err.Error())
  61. return db
  62. }
  63. if role.DataScope == "2" {
  64. return db.Where(tableName+".create_by in (select sys_user.user_id from sys_role_dept left join sys_user on sys_user.dept_id=sys_role_dept.dept_id where sys_role_dept.role_id = ?)", user.RoleId)
  65. }
  66. if role.DataScope == "3" {
  67. return db.Where(tableName+".create_by in (SELECT user_id from sys_user where dept_id = ? )", user.DeptId)
  68. }
  69. if role.DataScope == "4" {
  70. return db.Where(tableName+".create_by in (SELECT user_id from sys_user where sys_user.dept_id in(select dept_id from sys_dept where dept_path like ? ))", "%"+tools.IntToString(user.DeptId)+"%")
  71. }
  72. if role.DataScope == "5" || role.DataScope == "" {
  73. return db.Where(tableName+".create_by = ?", userid)
  74. }
  75. return db
  76. }
  77. }