role.go 26 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886
  1. package service
  2. import (
  3. "context"
  4. "errors"
  5. "fmt"
  6. "strings"
  7. "sync"
  8. "time"
  9. "github.com/mhaya/game/game_cluster/internal/code"
  10. "github.com/mhaya/game/game_cluster/internal/mdb"
  11. "github.com/mhaya/game/game_cluster/internal/mdb/models"
  12. "github.com/mhaya/game/game_cluster/nodes/webadmin/common"
  13. "github.com/mhaya/game/game_cluster/nodes/webadmin/entity"
  14. "github.com/mhaya/game/game_cluster/nodes/webadmin/model"
  15. mhayaLogger "github.com/mhaya/logger"
  16. "go.mongodb.org/mongo-driver/bson"
  17. "go.mongodb.org/mongo-driver/bson/primitive"
  18. "go.mongodb.org/mongo-driver/mongo"
  19. "go.mongodb.org/mongo-driver/mongo/options"
  20. )
  21. type Role struct {
  22. }
  23. func NewRole() *Role {
  24. return &Role{}
  25. }
  26. // List 角色列表
  27. func (r *Role) List(ctx context.Context, req entity.RoleListReq) (*entity.RoleResp, *code.Result) {
  28. roles := models.Roles{}
  29. rolesCollection := mdb.MDB.Collection(roles.TableName())
  30. // 构建过滤器
  31. filter := bson.M{}
  32. if req.Name != "" {
  33. filter["name"] = req.Name
  34. }
  35. if req.Status > 0 {
  36. filter["status"] = req.Status
  37. }
  38. // 数据验证
  39. if req.Page <= 0 || req.Size <= 0 {
  40. mhayaLogger.Warnf("List param error, req.Page:%d, req.Size:%d", req.Page, req.Size)
  41. return nil, common.NewResult(code.ParamError)
  42. }
  43. // 设置分页选项
  44. findOptions := options.Find().SetSkip(int64((req.Page - 1) * req.Size)).SetLimit(int64(req.Size))
  45. countDocuments, err := rolesCollection.CountDocuments(ctx, filter)
  46. if err != nil {
  47. mhayaLogger.Warnf("List CountDocuments error:%v", err)
  48. return nil, common.NewResult(code.InternalError)
  49. }
  50. // 防御性编程
  51. tableName := roles.TableName()
  52. if tableName == "" {
  53. mhayaLogger.Warnf("List tableName is nil, tableName:%v", tableName)
  54. return nil, common.NewResult(code.InternalError)
  55. }
  56. cursor, err := rolesCollection.Find(ctx, filter, findOptions)
  57. if err != nil {
  58. mhayaLogger.Warnf("List Find error:%v", err)
  59. return nil, common.NewResult(code.InternalError)
  60. }
  61. defer func() {
  62. if err := cursor.Close(ctx); err != nil {
  63. mhayaLogger.Warnf("Failed to close cursor: %v", err)
  64. }
  65. }()
  66. var details []*entity.RoleDetail
  67. for cursor.Next(ctx) {
  68. var role *entity.RoleDetail
  69. if err := cursor.Decode(&role); err != nil {
  70. mhayaLogger.Warnf("List Decode error:%v", err)
  71. return nil, common.NewResult(code.InternalError)
  72. }
  73. details = append(details, role)
  74. }
  75. if err := cursor.Err(); err != nil {
  76. mhayaLogger.Warnf("List cursor error:%v", err)
  77. return nil, common.NewResult(code.InternalError)
  78. }
  79. return &entity.RoleResp{
  80. Details: details,
  81. Total: countDocuments,
  82. }, nil
  83. }
  84. // Add 新增角色
  85. func (r *Role) Add(ctx context.Context, req entity.RoleAddReq) *code.Result {
  86. // 验证角色名称是否已存在
  87. if !r.checkRoleNameExist(req.Name) {
  88. return common.NewResult(code.RoleNameExistError)
  89. }
  90. // 检查上下文是否有效
  91. if ctx.Err() != nil {
  92. mhayaLogger.Warnf("Add ctx error:%v", ctx.Err())
  93. return common.NewResult(code.InternalError)
  94. }
  95. // 插入新角色记录
  96. roles := models.Roles{}
  97. insertData := bson.M{}
  98. insertData["name"] = req.Name
  99. insertData["desc"] = req.Desc
  100. insertData["status"] = req.Status
  101. insertData["created_at"] = time.Now().Unix()
  102. // 确保 Collection 方法不会返回错误
  103. collection := mdb.MDB.Collection(roles.TableName())
  104. _, insertErr := collection.InsertOne(ctx, req)
  105. if insertErr != nil {
  106. mhayaLogger.Warnf("Add InsertOne error:%v", insertErr)
  107. return common.NewResult(code.InternalError)
  108. }
  109. return nil
  110. }
  111. // Update 修改角色
  112. func (r *Role) Update(ctx context.Context, req entity.RoleUpdateReq) *code.Result {
  113. // 更新条件
  114. objID, err := primitive.ObjectIDFromHex(req.Id)
  115. if err != nil {
  116. mhayaLogger.Warnf("Update req.Id error:%v", req.Id)
  117. return common.NewResult(code.ParamError)
  118. }
  119. updateCondition := bson.M{"_id": objID}
  120. // 更新内容
  121. updateContent := bson.M{
  122. "$set": bson.M{
  123. "name": req.Name,
  124. "desc": req.Desc,
  125. "status": req.Status,
  126. },
  127. }
  128. // 设置更新选项
  129. roles := models.Roles{}
  130. collection := mdb.MDB.Collection(roles.TableName())
  131. updateOptions := options.Update().SetUpsert(true) // 设置 upsert 选项
  132. // 执行更新操作
  133. _, err = collection.UpdateOne(context.TODO(), updateCondition, updateContent, updateOptions)
  134. if err != nil {
  135. mhayaLogger.Warnf("Update UpdateOne error:%v", err)
  136. return common.NewResult(code.InternalError)
  137. }
  138. return nil
  139. }
  140. // checkRoleNameExist 检查角色名称是否已存在
  141. func (r *Role) checkRoleNameExist(name string) bool {
  142. // 创建带超时的上下文
  143. ctx, cancel := context.WithTimeout(context.Background(), 5*time.Second)
  144. defer cancel()
  145. roles := models.Roles{}
  146. collection := mdb.MDB.Collection(roles.TableName())
  147. // 构建过滤器
  148. filter := bson.M{"name": name}
  149. // 执行查询
  150. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  151. if errors.Is(err, mongo.ErrNoDocuments) {
  152. mhayaLogger.Warnf("No document found with role name: %s", name)
  153. return true
  154. }
  155. return false
  156. }
  157. return false
  158. }
  159. // Del 删除角色
  160. func (r *Role) Del(ctx context.Context, req entity.RoleDelReq) *code.Result {
  161. // 创建带超时的上下文
  162. ctx, cancel := context.WithTimeout(context.Background(), 5*time.Second)
  163. defer cancel()
  164. roles := models.Roles{}
  165. collection := mdb.MDB.Collection(roles.TableName())
  166. id, _ := primitive.ObjectIDFromHex(req.Id)
  167. _, err := collection.DeleteOne(ctx, bson.M{"_id": id})
  168. if err != nil {
  169. mhayaLogger.Warnf("Del DeleteOne error:%v", err)
  170. return common.NewResult(code.InternalError)
  171. }
  172. return nil
  173. }
  174. // AddRoleAccess 添加角色权限
  175. func (r *Role) AddRoleAccess(ctx context.Context, req entity.RoleAccessAddReq) *code.Result {
  176. // 检查上下文是否有效
  177. if ctx.Err() != nil {
  178. mhayaLogger.Warnf("AddRoleAccess ctx error:%v", ctx.Err())
  179. return common.NewResult(code.InternalError)
  180. }
  181. // 检查角色是否存在
  182. roles := models.Roles{}
  183. collection := mdb.MDB.Collection(roles.TableName())
  184. roleIDobj, _ := primitive.ObjectIDFromHex(req.RoleId)
  185. if err := collection.FindOne(ctx, bson.M{"_id": roleIDobj}).Err(); err != nil {
  186. if errors.Is(err, mongo.ErrNoDocuments) {
  187. return common.NewResult(code.RoleNotExistError)
  188. }
  189. }
  190. // 检查权限是否存在 ->具体的权限规则表-存放路由、菜单等
  191. access := models.Access{}
  192. collection = mdb.MDB.Collection(access.TableName())
  193. var accessIDS []primitive.ObjectID
  194. for _, v := range req.AccessId {
  195. accessIDobj, _ := primitive.ObjectIDFromHex(v)
  196. accessIDS = append(accessIDS, accessIDobj)
  197. }
  198. filter := bson.M{"_id": bson.M{"$in": accessIDS}} // 数组查询
  199. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  200. if errors.Is(err, mongo.ErrNoDocuments) {
  201. return common.NewResult(code.AccessNotExistError)
  202. }
  203. }
  204. // 插入新角色权限记录
  205. roleAccess := models.RoleAccess{}
  206. // 确保 Collection 方法不会返回错误
  207. collection = mdb.MDB.Collection(roleAccess.TableName())
  208. _, insertErr := collection.UpdateOne(ctx, bson.M{"role_id": req.RoleId}, bson.M{"$addToSet": bson.M{"access_id": bson.M{"$each": req.AccessId}}}, options.Update().SetUpsert(true))
  209. if insertErr != nil {
  210. mhayaLogger.Warnf("AddRoleAccess UpdateOne error:%v", insertErr)
  211. return common.NewResult(code.InternalError)
  212. }
  213. return nil
  214. }
  215. // UpdateRoleAccess 修改角色权限
  216. func (r *Role) UpdateRoleAccess(ctx context.Context, req entity.RoleAccessUpdateReq) *code.Result {
  217. // 验证请求数据的有效性
  218. err := validateConcurrently(ctx, req)
  219. if err != nil {
  220. mhayaLogger.Warnf("UpdateRoleAccess validateConcurrently error:%v", err)
  221. return common.NewResult(code.InternalError)
  222. }
  223. // 更新角色权限
  224. err = r.updateAccessInDatabase(ctx, req)
  225. if err != nil {
  226. mhayaLogger.Warnf("UpdateRoleAccess updateAccessInDatabase error:%v", err)
  227. return common.NewResult(code.InternalError)
  228. }
  229. // 返回成功
  230. return nil
  231. }
  232. // DelRoleAccess 根据角色ID删除角色权限
  233. func (r *Role) DelRoleAccess(ctx context.Context, req entity.RoleAccessDelReq) *code.Result {
  234. roleAccess := models.RoleAccess{}
  235. collection := mdb.MDB.Collection(roleAccess.TableName())
  236. filter := bson.M{"role_id": req.RoleId}
  237. _, err := collection.DeleteOne(ctx, filter)
  238. if err != nil {
  239. mhayaLogger.Warnf("DelRoleAccess DeleteOne error:%v", err)
  240. return common.NewResult(code.InternalError)
  241. }
  242. return nil
  243. }
  244. // GetRoleAccessList 获取角色权限列表根据角色ID
  245. func (r *Role) GetRoleAccessList(ctx context.Context, req entity.RoleAccessListReq) (*entity.AccessResp, *code.Result) {
  246. // 查询角色权限列表
  247. roleAccess := models.RoleAccess{}
  248. collection := mdb.MDB.Collection(roleAccess.TableName())
  249. filter := bson.M{"role_id": req.RoleId} // 数组查询
  250. cursor, err := collection.Find(ctx, filter)
  251. defer cursor.Close(ctx)
  252. if err != nil {
  253. mhayaLogger.Warnf("GetRoleAccessList Find error:%v", err)
  254. return nil, common.NewResult(code.InternalError)
  255. }
  256. var accessIDS []string
  257. for cursor.Next(ctx) {
  258. var roleAccess models.RoleAccess
  259. if err := cursor.Decode(&roleAccess); err != nil {
  260. mhayaLogger.Warnf("GetRoleAccessList Decode error:%v", err)
  261. return nil, common.NewResult(code.InternalError)
  262. }
  263. accessIDS = append(accessIDS, roleAccess.AccessID...)
  264. }
  265. // 判断accessIDS是否为空
  266. if len(accessIDS) == 0 {
  267. return nil, nil
  268. }
  269. var objIDS []primitive.ObjectID
  270. for _, v := range accessIDS {
  271. objID, _ := primitive.ObjectIDFromHex(v)
  272. objIDS = append(objIDS, objID)
  273. }
  274. // 根据accessIDS查询权限列表 并且按照下级关系组合
  275. access := models.Access{}
  276. collection = mdb.MDB.Collection(access.TableName())
  277. accessFilter := bson.M{"_id": bson.M{"$in": objIDS}}
  278. cursor, err = collection.Find(ctx, accessFilter)
  279. defer cursor.Close(ctx)
  280. if err != nil {
  281. mhayaLogger.Warnf("GetRoleAccessList sub Find error:%v", err)
  282. return nil, common.NewResult(code.InternalError)
  283. }
  284. var accessList []*entity.AccessDetail
  285. for cursor.Next(ctx) {
  286. var accesss *models.Access
  287. if err := cursor.Decode(&accesss); err != nil {
  288. mhayaLogger.Warnf("GetRoleAccessList sub Decode error:%v", err)
  289. return nil, common.NewResult(code.InternalError)
  290. }
  291. accessList = append(accessList, &entity.AccessDetail{
  292. ID: accesss.ID,
  293. ActionName: accesss.ActionName,
  294. ModuleName: accesss.ModuleName,
  295. Description: accesss.Description,
  296. URL: accesss.URL,
  297. ParentId: accesss.ParentId,
  298. Sort: accesss.Sort,
  299. Type: accesss.Type,
  300. Status: accesss.Status,
  301. })
  302. }
  303. // 格式化数据并且按照下级关系组合
  304. details := formatAccessData(accessList)
  305. return &entity.AccessResp{
  306. Details: details,
  307. Total: 0,
  308. }, nil
  309. }
  310. // formatAccessData formats and organizes access data into a hierarchical structure
  311. func formatAccessData(accessData []*entity.AccessDetail) []*entity.AccessDetail {
  312. nodeMap := make(map[interface{}]*entity.AccessDetail)
  313. var rootNodes []*entity.AccessDetail
  314. for i := range accessData {
  315. node := accessData[i]
  316. nodeMap[node.ID] = node
  317. }
  318. for i := range accessData {
  319. node := accessData[i]
  320. if node.ParentId == "0" {
  321. rootNodes = append(rootNodes, node)
  322. } else {
  323. if parentNode, exists := nodeMap[node.ParentId]; exists {
  324. parentNode.AccessItem = append(parentNode.AccessItem, node)
  325. }
  326. }
  327. }
  328. return rootNodes
  329. }
  330. // AddAccess 添加权限路由
  331. func (r *Role) AddAccess(ctx context.Context, req entity.AccessAddReq) *code.Result {
  332. // 检查上下文是否有效
  333. if ctx.Err() != nil {
  334. mhayaLogger.Warnf("AddAccess ctx error:%v", ctx.Err())
  335. return common.NewResult(code.InternalError)
  336. }
  337. access := models.Access{}
  338. collection := mdb.MDB.Collection(access.TableName())
  339. // 判断是否有相同的数据
  340. filter := bson.M{"path": req.URL}
  341. if err := collection.FindOne(ctx, filter).Err(); err == nil {
  342. return common.NewResult(code.AccessExistError)
  343. }
  344. // 插入新角色权限记录
  345. _, err := collection.InsertOne(ctx, req)
  346. if err != nil {
  347. mhayaLogger.Warnf("AddAccess InsertOne error:%v", err)
  348. return common.NewResult(code.InternalError)
  349. }
  350. return nil
  351. }
  352. // DelAccess 删除权限路由
  353. func (r *Role) DelAccess(ctx context.Context, req entity.AccessDelReq) *code.Result {
  354. access := models.Access{}
  355. collection := mdb.MDB.Collection(access.TableName())
  356. // 判断是否有角色使用了该权限路由
  357. roleAccess := models.RoleAccess{}
  358. collection = mdb.MDB.Collection(roleAccess.TableName())
  359. filter := bson.M{"access_id": bson.M{"$in": req.Id}} // 数组查询
  360. if err := collection.FindOne(ctx, filter).Err(); err == nil {
  361. return common.NewResult(code.AccessHasUsedError)
  362. }
  363. objID := primitive.ObjectID{}
  364. objID, _ = primitive.ObjectIDFromHex(req.Id)
  365. _, err := mdb.MDB.Collection(access.TableName()).DeleteOne(ctx, bson.M{"_id": objID})
  366. if err != nil {
  367. mhayaLogger.Warnf("DelAccess DeleteOne error:%v", err)
  368. return common.NewResult(code.InternalError)
  369. }
  370. return nil
  371. }
  372. // UpdateAccess 修改权限路由
  373. func (r *Role) UpdateAccess(ctx context.Context, req entity.AccessUpdateReq) *code.Result {
  374. access := models.Access{}
  375. collection := mdb.MDB.Collection(access.TableName())
  376. // update
  377. var updateFields = bson.M{
  378. "module_name": req.ModuleName,
  379. "parent_id": req.ParentId,
  380. "action_name": req.ActionName,
  381. "url": req.URL,
  382. "type": req.Type,
  383. "description": req.Description,
  384. "sort": req.Sort,
  385. "status": req.Status}
  386. // 检查是否有需要更新的字段
  387. if len(updateFields) == 0 {
  388. mhayaLogger.Warnf("UpdateAccess len(updateFields) == 0")
  389. return nil
  390. }
  391. // 确保 req.Id 是一个有效的 ObjectID
  392. objID, err := primitive.ObjectIDFromHex(req.Id)
  393. if err != nil {
  394. mhayaLogger.Warnf("UpdateAccess invalid ObjectID:%s, error:", req.Id, err)
  395. return common.NewResult(code.ParamError)
  396. }
  397. _, err = collection.UpdateByID(ctx, objID, bson.M{"$set": updateFields})
  398. if err != nil {
  399. mhayaLogger.Warnf("UpdateAccess UpdateByID error:%v", err)
  400. return common.NewResult(code.InternalError)
  401. }
  402. return nil
  403. }
  404. // ListAccess listAccessa
  405. func (r *Role) ListAccess(ctx context.Context, req entity.AccessListReq) (*entity.AccessResp, *code.Result) {
  406. access := models.Access{}
  407. collection := mdb.MDB.Collection(access.TableName())
  408. filter := bson.M{}
  409. if req.ActionName != "" {
  410. filter["action_name"] = req.ActionName
  411. }
  412. if req.ModuleName != "" {
  413. filter["module_name"] = req.ModuleName
  414. }
  415. if req.Status != 0 {
  416. filter["status"] = req.Status
  417. }
  418. if req.Type != 0 {
  419. filter["type"] = req.Type
  420. }
  421. if req.ParentId != "" {
  422. filter["parent_id"] = req.ParentId
  423. }
  424. if req.URL != "" {
  425. filter["url"] = req.URL
  426. }
  427. // 数据验证
  428. if req.Page <= 0 || req.Size <= 0 {
  429. mhayaLogger.Warnf("ListAccess param error, req.Page:%d, req.Size:%d", req.Page, req.Size)
  430. return nil, common.NewResult(code.ParamError)
  431. }
  432. // 设置分页选项
  433. findOptions := options.Find().SetSkip(int64((req.Page - 1) * req.Size)).SetLimit(int64(req.Size))
  434. findOptions.SetSort(bson.M{"add_time": -1})
  435. countDocuments, err := collection.CountDocuments(ctx, filter)
  436. if err != nil {
  437. mhayaLogger.Warnf("ListAccess CountDocuments error:%v", err)
  438. return nil, common.NewResult(code.InternalError)
  439. }
  440. cursor, err := collection.Find(ctx, filter, findOptions)
  441. defer cursor.Close(ctx)
  442. if err != nil {
  443. mhayaLogger.Warnf("ListAccess Find error:%v", err)
  444. return nil, common.NewResult(code.InternalError)
  445. }
  446. var accessList []*entity.AccessDetail
  447. for cursor.Next(ctx) {
  448. var accesss *models.Access
  449. if err := cursor.Decode(&accesss); err != nil {
  450. mhayaLogger.Warnf("ListAccess Decode error:%v", err)
  451. return nil, common.NewResult(code.InternalError)
  452. }
  453. accessList = append(accessList, &entity.AccessDetail{
  454. ID: accesss.ID,
  455. ActionName: accesss.ActionName,
  456. ModuleName: accesss.ModuleName,
  457. Description: accesss.Description,
  458. URL: accesss.URL,
  459. ParentId: accesss.ParentId,
  460. Sort: accesss.Sort,
  461. Type: accesss.Type,
  462. Status: accesss.Status,
  463. })
  464. }
  465. // 格式化数据并且按照下级关系组合
  466. details := formatAccessData(accessList)
  467. return &entity.AccessResp{
  468. Details: details,
  469. Total: countDocuments,
  470. }, nil
  471. }
  472. // updateAccessInDatabase 在数据库中更新角色权限
  473. func (r *Role) updateAccessInDatabase(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  474. // 例如更新角色权限表中的记录
  475. roleAccess := models.RoleAccess{}
  476. collection := mdb.MDB.Collection(roleAccess.TableName())
  477. filter := bson.M{"role_id": req.RoleId}
  478. update := bson.M{"$set": bson.M{"access_id": req.AccessId}}
  479. _, err := collection.UpdateOne(ctx, filter, update)
  480. if err != nil {
  481. return err
  482. }
  483. return nil // 假设更新成功,实际应根据业务逻辑处理
  484. }
  485. // AdminBindRole 绑定角色
  486. func (r *Role) AdminBindRole(ctx context.Context, req entity.AdminBindRoleReq) *code.Result {
  487. // 例如更新角色权限表中的记录
  488. role := models.Roles{}
  489. collection := mdb.MDB.Collection(role.TableName())
  490. roleId, _ := primitive.ObjectIDFromHex(req.RoleId)
  491. filter := bson.M{"_id": roleId, "status": 1}
  492. // 判断你是否存在
  493. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  494. mhayaLogger.Warnf("AdminBindRole Find error:%v", err)
  495. return common.NewResult(code.RoleNotExistOrDisabledUserError)
  496. }
  497. // 判断管理员是否存在
  498. admin := model.Admin{}
  499. collection = mdb.MDB.Collection(admin.TableName())
  500. objID, _ := primitive.ObjectIDFromHex(req.AdminId)
  501. err := collection.FindOne(ctx, bson.M{"_id": objID}).Decode(&admin)
  502. if err != nil {
  503. return common.NewResult(code.AdminNotExistError)
  504. }
  505. if admin.RoleId == req.RoleId {
  506. mhayaLogger.Warnf("管理员角色和请求角色一致,无需修改")
  507. return nil
  508. }
  509. if admin.Username == "admin" {
  510. mhayaLogger.Warnf("admin-超级账户不能修改角色")
  511. return common.NewResult(code.AdminMustNotUpdateError)
  512. }
  513. filter = bson.M{"_id": objID, "status": 1}
  514. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  515. mhayaLogger.Warnf("管理员不存在 或者 已经被禁用")
  516. return common.NewResult(code.RoleNotExistOrDisabledUserError)
  517. }
  518. // 更新管理员数据
  519. _, err = collection.UpdateByID(ctx, objID, bson.M{"$set": bson.M{"role_id": req.RoleId}})
  520. if err != nil {
  521. mhayaLogger.Warnf("AdminBindRole UpdateByID error:%v", err)
  522. return common.NewResult(code.InternalError)
  523. }
  524. return nil // 假设更新成功,实际应根据业务逻辑处理
  525. }
  526. // AdminUnBindRole 取消绑定角色
  527. func (r *Role) AdminUnBindRole(ctx context.Context, req entity.AdminBindRoleReq) *code.Result {
  528. // 例如更新角色权限表中的记录
  529. admin := model.Admin{}
  530. collection := mdb.MDB.Collection(admin.TableName())
  531. objID, _ := primitive.ObjectIDFromHex(req.AdminId)
  532. filter := bson.M{"_id": objID}
  533. err := collection.FindOne(ctx, filter).Decode(&admin)
  534. if err != nil {
  535. return common.NewResult(code.AdminNotExistError)
  536. }
  537. if admin.RoleId == req.RoleId {
  538. mhayaLogger.Warnf("管理员角色和请求角色一致,无需修改")
  539. return nil
  540. }
  541. if admin.Username == "admin" {
  542. mhayaLogger.Warnf("admin-超级账户不能修改角色")
  543. return common.NewResult(code.AdminMustNotUpdateError)
  544. }
  545. // 更新管理员数据
  546. _, err = collection.UpdateByID(ctx, objID, bson.M{"$set": bson.M{"role_id": ""}})
  547. if err != nil {
  548. mhayaLogger.Warnf("AdminUnBindRole UpdateByID error:%v", err)
  549. return common.NewResult(code.InternalError)
  550. }
  551. return nil
  552. }
  553. // GetAdminRole GetAdminBindRole 根据角色id 获取Access
  554. func getAdmin(ctx context.Context, id string) (*model.Admin, error) {
  555. objID, err := primitive.ObjectIDFromHex(id)
  556. if err != nil {
  557. return nil, fmt.Errorf("解析管理员ID失败: %v", err)
  558. }
  559. admin := model.Admin{}
  560. adminCollection := mdb.MDB.Collection(admin.TableName())
  561. adminFilter := bson.M{"_id": objID}
  562. err = adminCollection.FindOne(ctx, adminFilter).Decode(&admin)
  563. if err != nil {
  564. if errors.Is(err, mongo.ErrNoDocuments) {
  565. return nil, fmt.Errorf("找不到管理员")
  566. }
  567. return nil, fmt.Errorf("查询管理员失败: %v", err)
  568. }
  569. return &admin, nil
  570. }
  571. func getRole(ctx context.Context, id string) (*models.Roles, error) {
  572. objID, err := primitive.ObjectIDFromHex(id)
  573. if err != nil {
  574. return nil, fmt.Errorf("解析角色ID失败: %v", err)
  575. }
  576. role := models.Roles{}
  577. roleCollection := mdb.MDB.Collection(role.TableName())
  578. roleFilter := bson.M{"_id": objID}
  579. err = roleCollection.FindOne(ctx, roleFilter).Decode(&role)
  580. if err != nil {
  581. if errors.Is(err, mongo.ErrNoDocuments) {
  582. return nil, fmt.Errorf("找不到角色")
  583. }
  584. return nil, fmt.Errorf("查询角色失败: %v", err)
  585. }
  586. return &role, nil
  587. }
  588. func getRoleAccess(ctx context.Context, roleId string) (*models.RoleAccess, error) {
  589. roleAccess := models.RoleAccess{}
  590. roleAccessCollection := mdb.MDB.Collection(roleAccess.TableName())
  591. roleAccessFilter := bson.M{"role_id": roleId}
  592. err := roleAccessCollection.FindOne(ctx, roleAccessFilter).Decode(&roleAccess)
  593. if err != nil {
  594. if errors.Is(err, mongo.ErrNoDocuments) {
  595. return nil, fmt.Errorf("找不到角色权限")
  596. }
  597. return nil, fmt.Errorf("查询角色权限失败: %v", err)
  598. }
  599. return &roleAccess, nil
  600. }
  601. func (r *Role) GetAdminRole(ctx context.Context, req entity.AdminBindRoleReq) (*entity.AdminBindRoleResp, *code.Result) {
  602. if req.RoleId == "admin" {
  603. access := models.Access{}
  604. collection := mdb.MDB.Collection(access.TableName())
  605. filter := bson.M{}
  606. cursor, err := collection.Find(ctx, filter)
  607. defer cursor.Close(ctx)
  608. if err != nil {
  609. mhayaLogger.Warnf("GetAdminRole Find error:%v", err)
  610. return nil, common.NewResult(code.InternalError)
  611. }
  612. var accessList []*entity.AccessDetail
  613. for cursor.Next(ctx) {
  614. var accesss *models.Access
  615. err := cursor.Decode(&accesss)
  616. if err != nil {
  617. mhayaLogger.Warnf("GetAdminRole Decode error:%v", err)
  618. return nil, common.NewResult(code.InternalError)
  619. }
  620. accessList = append(accessList, &entity.AccessDetail{
  621. ID: accesss.ID,
  622. ActionName: accesss.ActionName,
  623. Description: accesss.Description,
  624. ModuleName: accesss.ModuleName,
  625. ParentId: accesss.ParentId,
  626. Sort: accesss.Sort,
  627. Status: accesss.Status,
  628. Type: accesss.Type,
  629. URL: accesss.URL,
  630. AddTime: accesss.AddTime,
  631. })
  632. }
  633. return &entity.AdminBindRoleResp{
  634. AdminId: "admin",
  635. AdminName: "admin",
  636. RoleId: "admin",
  637. RoleName: "超级管理员",
  638. AccessList: formatAccessData(accessList),
  639. }, nil
  640. }
  641. role, err := getRole(ctx, req.RoleId)
  642. if err != nil {
  643. mhayaLogger.Warnf("GetAdminRole getRole error:%v", err)
  644. return nil, common.NewResult(code.InternalError)
  645. }
  646. roleAccess, err := getRoleAccess(ctx, req.RoleId)
  647. if err != nil {
  648. mhayaLogger.Warnf("GetAdminRole getRoleAccess error:%v", err)
  649. return nil, common.NewResult(code.InternalError)
  650. }
  651. var AccessIds []primitive.ObjectID
  652. var invalidAccessIds []string
  653. for _, v := range roleAccess.AccessID {
  654. objId, err := primitive.ObjectIDFromHex(v)
  655. if err != nil {
  656. invalidAccessIds = append(invalidAccessIds, v)
  657. continue
  658. }
  659. AccessIds = append(AccessIds, objId)
  660. }
  661. if len(AccessIds) == 0 {
  662. if len(invalidAccessIds) > 0 {
  663. mhayaLogger.Warnf("GetAdminRole 无效的权限ID:%v", strings.Join(invalidAccessIds, ", "))
  664. return nil, common.NewResult(code.InternalError)
  665. }
  666. return nil, common.NewResult(code.NoAccessError)
  667. }
  668. access := models.Access{}
  669. collection := mdb.MDB.Collection(access.TableName())
  670. filter := bson.M{}
  671. filter["_id"] = bson.M{"$in": AccessIds}
  672. cursor, err := collection.Find(ctx, filter)
  673. defer cursor.Close(ctx)
  674. if err != nil {
  675. mhayaLogger.Warnf("GetAdminRole Find error:%v", err)
  676. return nil, common.NewResult(code.InternalError)
  677. }
  678. var accessList []*entity.AccessDetail
  679. for cursor.Next(ctx) {
  680. var accesss *models.Access
  681. if err := cursor.Decode(&accesss); err != nil {
  682. mhayaLogger.Warnf("GetAdminRole Decode error:%v", err)
  683. return nil, common.NewResult(code.InternalError)
  684. }
  685. accessList = append(accessList, &entity.AccessDetail{
  686. ID: accesss.ID,
  687. ActionName: accesss.ActionName,
  688. ModuleName: accesss.ModuleName,
  689. Description: accesss.Description,
  690. URL: accesss.URL,
  691. ParentId: accesss.ParentId,
  692. Sort: accesss.Sort,
  693. Type: accesss.Type,
  694. Status: accesss.Status,
  695. })
  696. }
  697. return &entity.AdminBindRoleResp{
  698. AdminId: req.AdminId,
  699. AdminName: "adminUsername",
  700. RoleName: role.Name,
  701. RoleId: req.RoleId,
  702. AccessList: formatAccessData(accessList)},
  703. nil
  704. }
  705. // 使用协程和通道并发执行验证操作
  706. func validateConcurrently(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  707. // 创建通道
  708. ch := make(chan error, 3)
  709. // 并发执行验证操作
  710. var wg sync.WaitGroup
  711. wg.Add(3)
  712. go func() {
  713. defer wg.Done()
  714. ch <- validateRoleExistence(ctx, req)
  715. }()
  716. go func() {
  717. defer wg.Done()
  718. ch <- validateAccessExistence(ctx, req)
  719. }()
  720. go func() {
  721. defer wg.Done()
  722. ch <- validateRoleAccessExistence(ctx, req)
  723. }()
  724. // 收集所有验证结果
  725. var e []error
  726. go func() {
  727. defer wg.Wait()
  728. for i := 0; i < 3; i++ {
  729. if err := <-ch; err != nil {
  730. e = append(e, err)
  731. }
  732. }
  733. if len(e) > 0 {
  734. ch <- fmt.Errorf("验证失败: %v", e)
  735. } else {
  736. ch <- nil
  737. }
  738. }()
  739. // 等待所有并发任务完成
  740. select {
  741. case err := <-ch:
  742. return err
  743. case <-ctx.Done():
  744. return ctx.Err()
  745. }
  746. }
  747. // 验证角色是否存在
  748. func validateRoleExistence(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  749. roles := models.Roles{}
  750. collection := mdb.MDB.Collection(roles.TableName())
  751. objID, err := primitive.ObjectIDFromHex(req.RoleId)
  752. if err != nil {
  753. return fmt.Errorf("解析角色ID失败: %v", err)
  754. }
  755. if err := collection.FindOne(ctx, bson.M{"_id": objID}).Err(); err != nil {
  756. if errors.Is(err, mongo.ErrNoDocuments) {
  757. return fmt.Errorf("角色不存在")
  758. }
  759. return err
  760. }
  761. return nil
  762. }
  763. // 验证权限是否存在
  764. func validateAccessExistence(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  765. access := models.Access{}
  766. collection := mdb.MDB.Collection(access.TableName())
  767. objIDS := make([]primitive.ObjectID, len(req.AccessId))
  768. for i, id := range req.AccessId {
  769. objID, err := primitive.ObjectIDFromHex(id)
  770. if err != nil {
  771. return fmt.Errorf("解析权限ID失败: %v", err)
  772. }
  773. objIDS[i] = objID
  774. }
  775. filter := bson.M{"_id": bson.M{"$in": objIDS}} // 数组查询
  776. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  777. if errors.Is(err, mongo.ErrNoDocuments) {
  778. return fmt.Errorf("权限不存在")
  779. }
  780. return err
  781. }
  782. return nil
  783. }
  784. // 验证角色权限是否已存在
  785. func validateRoleAccessExistence(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  786. roleAccess := models.RoleAccess{}
  787. collection := mdb.MDB.Collection(roleAccess.TableName())
  788. filter := bson.M{"role_id": req.RoleId}
  789. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  790. if errors.Is(err, mongo.ErrNoDocuments) {
  791. return fmt.Errorf("角色权限不存在 不能更新")
  792. }
  793. return err
  794. }
  795. return nil
  796. }