role.go 23 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792
  1. package service
  2. import (
  3. "context"
  4. "errors"
  5. "fmt"
  6. "log"
  7. "strings"
  8. "sync"
  9. "time"
  10. "github.com/mhaya/game/game_cluster/internal/mdb"
  11. "github.com/mhaya/game/game_cluster/internal/mdb/models"
  12. "github.com/mhaya/game/game_cluster/nodes/webadmin/entity"
  13. "github.com/mhaya/game/game_cluster/nodes/webadmin/model"
  14. "go.mongodb.org/mongo-driver/bson"
  15. "go.mongodb.org/mongo-driver/bson/primitive"
  16. "go.mongodb.org/mongo-driver/mongo"
  17. "go.mongodb.org/mongo-driver/mongo/options"
  18. )
  19. type Role struct {
  20. }
  21. func NewRole() *Role {
  22. return &Role{}
  23. }
  24. // List 角色列表
  25. func (r *Role) List(ctx context.Context, req *entity.RoleListReq) ([]entity.RoleResp, error) {
  26. roles := models.Roles{}
  27. rolesCollection := mdb.MDB.Collection(roles.TableName())
  28. // 构建过滤器
  29. filter := bson.M{}
  30. if req.Name != "" {
  31. filter["name"] = req.Name
  32. }
  33. if req.Status > 0 {
  34. filter["status"] = req.Status
  35. }
  36. // 数据验证
  37. if req.Page <= 0 || req.Size <= 0 {
  38. return nil, fmt.Errorf("invalid page or size")
  39. }
  40. // 设置分页选项
  41. findOptions := options.Find().SetSkip(int64((req.Page - 1) * req.Size)).SetLimit(int64(req.Size))
  42. countDocuments, err := rolesCollection.CountDocuments(ctx, filter)
  43. if err != nil {
  44. return nil, err
  45. }
  46. req.Count = countDocuments
  47. // 防御性编程
  48. tableName := roles.TableName()
  49. if tableName == "" {
  50. return nil, fmt.Errorf("invalid table name")
  51. }
  52. cursor, err := rolesCollection.Find(ctx, filter, findOptions)
  53. if err != nil {
  54. log.Printf("Failed to execute query: %v", err)
  55. return nil, err
  56. }
  57. defer func() {
  58. if err := cursor.Close(ctx); err != nil {
  59. log.Printf("Failed to close cursor: %v", err)
  60. }
  61. }()
  62. var result []entity.RoleResp
  63. for cursor.Next(ctx) {
  64. var role entity.RoleResp
  65. if err := cursor.Decode(&role); err != nil {
  66. log.Printf("Failed to decode document: %v", err)
  67. return nil, err
  68. }
  69. result = append(result, role)
  70. }
  71. if err := cursor.Err(); err != nil {
  72. log.Printf("Cursor error: %v", err)
  73. return nil, err
  74. }
  75. return result, nil
  76. }
  77. // Add 新增角色
  78. func (r *Role) Add(ctx context.Context, req entity.RoleAddReq) error {
  79. // 验证角色名称是否已存在
  80. if r.checkRoleNameExist(req.Name) == false {
  81. return fmt.Errorf("角色名称已存在")
  82. }
  83. // 检查上下文是否有效
  84. if ctx.Err() != nil {
  85. return ctx.Err()
  86. }
  87. // 插入新角色记录
  88. roles := models.Roles{}
  89. insertData := bson.M{}
  90. insertData["name"] = req.Name
  91. insertData["desc"] = req.Desc
  92. insertData["status"] = req.Status
  93. insertData["created_at"] = time.Now().Unix()
  94. // 确保 Collection 方法不会返回错误
  95. collection := mdb.MDB.Collection(roles.TableName())
  96. _, insertErr := collection.InsertOne(ctx, req)
  97. if insertErr != nil {
  98. log.Printf("Failed to insert role: %s", insertErr)
  99. return insertErr
  100. }
  101. return nil
  102. }
  103. // Update 修改角色
  104. func (r *Role) Update(ctx context.Context, req entity.RoleUpdateReq) error {
  105. // 更新条件
  106. objID, err := primitive.ObjectIDFromHex(req.Id)
  107. if err != nil {
  108. return fmt.Errorf("invalid ObjectID: %v", err)
  109. }
  110. updateCondition := bson.M{"_id": objID}
  111. // 更新内容
  112. updateContent := bson.M{
  113. "$set": bson.M{
  114. "name": req.Name,
  115. "desc": req.Desc,
  116. "status": req.Status,
  117. },
  118. }
  119. // 设置更新选项
  120. roles := models.Roles{}
  121. collection := mdb.MDB.Collection(roles.TableName())
  122. updateOptions := options.Update().SetUpsert(true) // 设置 upsert 选项
  123. // 执行更新操作
  124. _, err = collection.UpdateOne(context.TODO(), updateCondition, updateContent, updateOptions)
  125. if err != nil {
  126. return err
  127. }
  128. return nil
  129. }
  130. // checkRoleNameExist 检查角色名称是否已存在
  131. func (r *Role) checkRoleNameExist(name string) bool {
  132. // 创建带超时的上下文
  133. ctx, cancel := context.WithTimeout(context.Background(), 5*time.Second)
  134. defer cancel()
  135. roles := models.Roles{}
  136. collection := mdb.MDB.Collection(roles.TableName())
  137. // 构建过滤器
  138. filter := bson.M{"name": name}
  139. // 执行查询
  140. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  141. if errors.Is(err, mongo.ErrNoDocuments) {
  142. log.Printf("No document found with role name: %s", name)
  143. return true
  144. }
  145. return false
  146. }
  147. return false
  148. }
  149. // Del 删除角色
  150. func (r *Role) Del(ctx context.Context, req entity.RoleDelReq) error {
  151. // 创建带超时的上下文
  152. ctx, cancel := context.WithTimeout(context.Background(), 5*time.Second)
  153. defer cancel()
  154. roles := models.Roles{}
  155. collection := mdb.MDB.Collection(roles.TableName())
  156. id, _ := primitive.ObjectIDFromHex(req.Id)
  157. _, err := collection.DeleteOne(ctx, bson.M{"_id": id})
  158. return err
  159. }
  160. // AddRoleAccess 添加角色权限
  161. func (r *Role) AddRoleAccess(ctx context.Context, req entity.RoleAccessAddReq) error {
  162. // 检查上下文是否有效
  163. if ctx.Err() != nil {
  164. return ctx.Err()
  165. }
  166. // 检查角色是否存在
  167. roles := models.Roles{}
  168. collection := mdb.MDB.Collection(roles.TableName())
  169. roleIDobj, _ := primitive.ObjectIDFromHex(req.RoleId)
  170. if err := collection.FindOne(ctx, bson.M{"_id": roleIDobj}).Err(); err != nil {
  171. if errors.Is(err, mongo.ErrNoDocuments) {
  172. return fmt.Errorf("角色不存在")
  173. }
  174. }
  175. // 检查权限是否存在 ->具体的权限规则表-存放路由、菜单等
  176. access := models.Access{}
  177. collection = mdb.MDB.Collection(access.TableName())
  178. var accessIDS []primitive.ObjectID
  179. for _, v := range req.AccessId {
  180. accessIDobj, _ := primitive.ObjectIDFromHex(v)
  181. accessIDS = append(accessIDS, accessIDobj)
  182. }
  183. filter := bson.M{"_id": bson.M{"$in": accessIDS}} // 数组查询
  184. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  185. if errors.Is(err, mongo.ErrNoDocuments) {
  186. return fmt.Errorf("权限不存在")
  187. }
  188. }
  189. // 插入新角色权限记录
  190. roleAccess := models.RoleAccess{}
  191. // 确保 Collection 方法不会返回错误
  192. collection = mdb.MDB.Collection(roleAccess.TableName())
  193. _, insertErr := collection.UpdateOne(ctx, bson.M{"role_id": req.RoleId}, bson.M{"$addToSet": bson.M{"access_id": bson.M{"$each": req.AccessId}}}, options.Update().SetUpsert(true))
  194. if insertErr != nil {
  195. log.Printf("Failed to insert role: %s", insertErr)
  196. return insertErr
  197. }
  198. return nil
  199. }
  200. // UpdateRoleAccess 修改角色权限
  201. func (r *Role) UpdateRoleAccess(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  202. // 验证请求数据的有效性
  203. if err := validateConcurrently(ctx, req); err != nil {
  204. return err
  205. }
  206. // 更新角色权限
  207. if err := r.updateAccessInDatabase(ctx, req); err != nil {
  208. return err
  209. }
  210. // 返回成功
  211. return nil
  212. }
  213. // DelRoleAccess 根据角色ID删除角色权限
  214. func (r *Role) DelRoleAccess(ctx context.Context, req entity.RoleAccessDelReq) error {
  215. roleAccess := models.RoleAccess{}
  216. collection := mdb.MDB.Collection(roleAccess.TableName())
  217. filter := bson.M{"role_id": req.RoleId}
  218. _, err := collection.DeleteOne(ctx, filter)
  219. if err != nil {
  220. return err
  221. }
  222. return nil
  223. }
  224. // GetRoleAccessList 获取角色权限列表根据角色ID
  225. func (r *Role) GetRoleAccessList(ctx context.Context, req entity.RoleAccessListReq) ([]*entity.AccessResp, error) {
  226. // 查询角色权限列表
  227. roleAccess := models.RoleAccess{}
  228. collection := mdb.MDB.Collection(roleAccess.TableName())
  229. filter := bson.M{"role_id": req.RoleId} // 数组查询
  230. cursor, err := collection.Find(ctx, filter)
  231. defer cursor.Close(ctx)
  232. if err != nil {
  233. return nil, err
  234. }
  235. var accessIDS []string
  236. for cursor.Next(ctx) {
  237. var roleAccess models.RoleAccess
  238. if err := cursor.Decode(&roleAccess); err != nil {
  239. log.Printf("Failed to decode document: %v", err)
  240. return nil, err
  241. }
  242. accessIDS = append(accessIDS, roleAccess.AccessID...)
  243. }
  244. // 判断accessIDS是否为空
  245. if len(accessIDS) == 0 {
  246. return nil, nil
  247. }
  248. var objIDS []primitive.ObjectID
  249. for _, v := range accessIDS {
  250. objID, _ := primitive.ObjectIDFromHex(v)
  251. objIDS = append(objIDS, objID)
  252. }
  253. // 根据accessIDS查询权限列表 并且按照下级关系组合
  254. access := models.Access{}
  255. collection = mdb.MDB.Collection(access.TableName())
  256. accessFilter := bson.M{"_id": bson.M{"$in": objIDS}}
  257. cursor, err = collection.Find(ctx, accessFilter)
  258. defer cursor.Close(ctx)
  259. if err != nil {
  260. return nil, err
  261. }
  262. var accessList []*entity.AccessResp
  263. for cursor.Next(ctx) {
  264. var accesss *models.Access
  265. if err := cursor.Decode(&accesss); err != nil {
  266. log.Printf("Failed to decode document: %v", err)
  267. return nil, err
  268. }
  269. accessList = append(accessList, &entity.AccessResp{
  270. ID: accesss.ID,
  271. ActionName: accesss.ActionName,
  272. ModuleName: accesss.ModuleName,
  273. Description: accesss.Description,
  274. URL: accesss.URL,
  275. ParentId: accesss.ParentId,
  276. Sort: accesss.Sort,
  277. Type: accesss.Type,
  278. Status: accesss.Status,
  279. })
  280. }
  281. // 格式化数据并且按照下级关系组合
  282. return formatAccessData(accessList), nil
  283. }
  284. // formatAccessData formats and organizes access data into a hierarchical structure
  285. func formatAccessData(accessData []*entity.AccessResp) []*entity.AccessResp {
  286. nodeMap := make(map[interface{}]*entity.AccessResp)
  287. var rootNodes []*entity.AccessResp
  288. for i := range accessData {
  289. node := accessData[i]
  290. nodeMap[node.ID] = node
  291. }
  292. for i := range accessData {
  293. node := accessData[i]
  294. if node.ParentId == "0" {
  295. rootNodes = append(rootNodes, node)
  296. } else {
  297. if parentNode, exists := nodeMap[node.ParentId]; exists {
  298. parentNode.AccessItem = append(parentNode.AccessItem, node)
  299. }
  300. }
  301. }
  302. return rootNodes
  303. }
  304. // AddAccess 添加权限路由
  305. func (r *Role) AddAccess(ctx context.Context, req entity.AccessAddReq) error {
  306. // 检查上下文是否有效
  307. if ctx.Err() != nil {
  308. return ctx.Err()
  309. }
  310. access := models.Access{}
  311. collection := mdb.MDB.Collection(access.TableName())
  312. // 判断是否有相同的数据
  313. filter := bson.M{"path": req.URL}
  314. if err := collection.FindOne(ctx, filter).Err(); err == nil {
  315. return fmt.Errorf("权限已存在")
  316. }
  317. // 插入新角色权限记录
  318. _, err := collection.InsertOne(ctx, req)
  319. return err
  320. }
  321. // DelAccess 删除权限路由
  322. func (r *Role) DelAccess(ctx context.Context, req entity.AccessDelReq) error {
  323. access := models.Access{}
  324. collection := mdb.MDB.Collection(access.TableName())
  325. // 判断是否有角色使用了该权限路由
  326. roleAccess := models.RoleAccess{}
  327. collection = mdb.MDB.Collection(roleAccess.TableName())
  328. filter := bson.M{"access_id": bson.M{"$in": req.Id}} // 数组查询
  329. if err := collection.FindOne(ctx, filter).Err(); err == nil {
  330. return fmt.Errorf("权限已被角色使用,无法删除")
  331. }
  332. objID := primitive.ObjectID{}
  333. objID, _ = primitive.ObjectIDFromHex(req.Id)
  334. _, err := mdb.MDB.Collection(access.TableName()).DeleteOne(ctx, bson.M{"_id": objID})
  335. return err
  336. }
  337. // UpdateAccess 修改权限路由
  338. func (r *Role) UpdateAccess(ctx context.Context, req entity.AccessUpdateReq) error {
  339. access := models.Access{}
  340. collection := mdb.MDB.Collection(access.TableName())
  341. // update
  342. var updateFields = bson.M{
  343. "module_name": req.ModuleName,
  344. "parent_id": req.ParentId,
  345. "action_name": req.ActionName,
  346. "url": req.URL,
  347. "type": req.Type,
  348. "description": req.Description,
  349. "sort": req.Sort,
  350. "status": req.Status}
  351. // 检查是否有需要更新的字段
  352. if len(updateFields) == 0 {
  353. return errors.New("no fields to update")
  354. }
  355. // 确保 req.Id 是一个有效的 ObjectID
  356. objID, err := primitive.ObjectIDFromHex(req.Id)
  357. if err != nil {
  358. return fmt.Errorf("invalid ObjectID: %v", err)
  359. }
  360. _, err = collection.UpdateByID(ctx, objID, bson.M{"$set": updateFields})
  361. if err != nil {
  362. return fmt.Errorf("update failed: %v", err)
  363. }
  364. return err
  365. }
  366. // ListAccess listAccessa
  367. func (r *Role) ListAccess(ctx context.Context, req *entity.AccessListReq) ([]*entity.AccessResp, error) {
  368. access := models.Access{}
  369. collection := mdb.MDB.Collection(access.TableName())
  370. filter := bson.M{}
  371. if req.ActionName != "" {
  372. filter["action_name"] = req.ActionName
  373. }
  374. if req.ModuleName != "" {
  375. filter["module_name"] = req.ModuleName
  376. }
  377. if req.Status != 0 {
  378. filter["status"] = req.Status
  379. }
  380. if req.Type != 0 {
  381. filter["type"] = req.Type
  382. }
  383. if req.ParentId != "" {
  384. filter["parent_id"] = req.ParentId
  385. }
  386. if req.URL != "" {
  387. filter["url"] = req.URL
  388. }
  389. // 数据验证
  390. if req.Page <= 0 || req.Size <= 0 {
  391. return nil, fmt.Errorf("invalid page or size")
  392. }
  393. // 设置分页选项
  394. findOptions := options.Find().SetSkip(int64((req.Page - 1) * req.Size)).SetLimit(int64(req.Size))
  395. findOptions.SetSort(bson.M{"add_time": -1})
  396. countDocuments, err := collection.CountDocuments(ctx, filter)
  397. if err != nil {
  398. return nil, err
  399. }
  400. req.Count = countDocuments
  401. cursor, err := collection.Find(ctx, filter, findOptions)
  402. defer cursor.Close(ctx)
  403. if err != nil {
  404. return nil, err
  405. }
  406. var accessList []*entity.AccessResp
  407. for cursor.Next(ctx) {
  408. var accesss *models.Access
  409. if err := cursor.Decode(&accesss); err != nil {
  410. log.Printf("Failed to decode document: %v", err)
  411. return nil, err
  412. }
  413. accessList = append(accessList, &entity.AccessResp{
  414. ID: accesss.ID,
  415. ActionName: accesss.ActionName,
  416. ModuleName: accesss.ModuleName,
  417. Description: accesss.Description,
  418. URL: accesss.URL,
  419. ParentId: accesss.ParentId,
  420. Sort: accesss.Sort,
  421. Type: accesss.Type,
  422. Status: accesss.Status,
  423. })
  424. }
  425. // 格式化数据并且按照下级关系组合
  426. return formatAccessData(accessList), nil
  427. }
  428. // updateAccessInDatabase 在数据库中更新角色权限
  429. func (r *Role) updateAccessInDatabase(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  430. // 例如更新角色权限表中的记录
  431. roleAccess := models.RoleAccess{}
  432. collection := mdb.MDB.Collection(roleAccess.TableName())
  433. filter := bson.M{"role_id": req.RoleId}
  434. update := bson.M{"$set": bson.M{"access_id": req.AccessId}}
  435. _, err := collection.UpdateOne(ctx, filter, update)
  436. if err != nil {
  437. return err
  438. }
  439. return nil // 假设更新成功,实际应根据业务逻辑处理
  440. }
  441. // AdminBindRole 绑定角色
  442. func (r *Role) AdminBindRole(ctx context.Context, req *entity.AdminBindRoleReq) error {
  443. // 例如更新角色权限表中的记录
  444. role := models.Roles{}
  445. collection := mdb.MDB.Collection(role.TableName())
  446. roleId, _ := primitive.ObjectIDFromHex(req.RoleId)
  447. filter := bson.M{"_id": roleId, "status": 1}
  448. // 判断你是否存在
  449. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  450. return fmt.Errorf("角色不存在,或者已经被禁用")
  451. }
  452. // 判断管理员是否存在
  453. admin := model.Admin{}
  454. collection = mdb.MDB.Collection(admin.TableName())
  455. objID, _ := primitive.ObjectIDFromHex(req.AdminId)
  456. err := collection.FindOne(ctx, bson.M{"_id": objID}).Decode(&admin)
  457. if err != nil {
  458. return fmt.Errorf("管理员不存在")
  459. }
  460. if admin.RoleId == req.RoleId {
  461. return fmt.Errorf("管理员角色和请求角色一致,无需修改")
  462. }
  463. if admin.Username == "admin" {
  464. return fmt.Errorf("admin-超级账户不能修改角色")
  465. }
  466. filter = bson.M{"_id": objID, "status": 1}
  467. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  468. return fmt.Errorf("管理员不存在 或者 已经被禁用")
  469. }
  470. // 更新管理员数据
  471. _, err = collection.UpdateByID(ctx, objID, bson.M{"$set": bson.M{"role_id": req.RoleId}})
  472. if err != nil {
  473. return fmt.Errorf("更新管理员失败")
  474. }
  475. return nil // 假设更新成功,实际应根据业务逻辑处理
  476. }
  477. // AdminUnBindRole 取消绑定角色
  478. func (r *Role) AdminUnBindRole(ctx context.Context, req *entity.AdminBindRoleReq) error {
  479. // 例如更新角色权限表中的记录
  480. admin := model.Admin{}
  481. collection := mdb.MDB.Collection(admin.TableName())
  482. objID, _ := primitive.ObjectIDFromHex(req.AdminId)
  483. filter := bson.M{"_id": objID}
  484. err := collection.FindOne(ctx, filter).Decode(&admin)
  485. if err != nil {
  486. return fmt.Errorf("管理员不存在")
  487. }
  488. if admin.RoleId == req.RoleId {
  489. return fmt.Errorf("管理员角色和请求角色一致,无需修改")
  490. }
  491. if admin.Username == "admin" {
  492. return fmt.Errorf("admin-超级账户不能修改角色")
  493. }
  494. // 更新管理员数据
  495. _, err = collection.UpdateByID(ctx, objID, bson.M{"$set": bson.M{"role_id": ""}})
  496. if err != nil {
  497. return fmt.Errorf("更新管理员失败")
  498. }
  499. return nil
  500. }
  501. // GetAdminRole GetAdminBindRole 根据角色id 获取Access
  502. func getAdmin(ctx context.Context, id string) (*model.Admin, error) {
  503. objID, err := primitive.ObjectIDFromHex(id)
  504. if err != nil {
  505. return nil, fmt.Errorf("解析管理员ID失败: %v", err)
  506. }
  507. admin := model.Admin{}
  508. adminCollection := mdb.MDB.Collection(admin.TableName())
  509. adminFilter := bson.M{"_id": objID}
  510. err = adminCollection.FindOne(ctx, adminFilter).Decode(&admin)
  511. if err != nil {
  512. if errors.Is(err, mongo.ErrNoDocuments) {
  513. return nil, fmt.Errorf("找不到管理员")
  514. }
  515. return nil, fmt.Errorf("查询管理员失败: %v", err)
  516. }
  517. return &admin, nil
  518. }
  519. func getRole(ctx context.Context, id string) (*models.Roles, error) {
  520. objID, err := primitive.ObjectIDFromHex(id)
  521. if err != nil {
  522. return nil, fmt.Errorf("解析角色ID失败: %v", err)
  523. }
  524. role := models.Roles{}
  525. roleCollection := mdb.MDB.Collection(role.TableName())
  526. roleFilter := bson.M{"_id": objID}
  527. err = roleCollection.FindOne(ctx, roleFilter).Decode(&role)
  528. if err != nil {
  529. if errors.Is(err, mongo.ErrNoDocuments) {
  530. return nil, fmt.Errorf("找不到角色")
  531. }
  532. return nil, fmt.Errorf("查询角色失败: %v", err)
  533. }
  534. return &role, nil
  535. }
  536. func getRoleAccess(ctx context.Context, roleId string) (*models.RoleAccess, error) {
  537. roleAccess := models.RoleAccess{}
  538. roleAccessCollection := mdb.MDB.Collection(roleAccess.TableName())
  539. roleAccessFilter := bson.M{"role_id": roleId}
  540. err := roleAccessCollection.FindOne(ctx, roleAccessFilter).Decode(&roleAccess)
  541. if err != nil {
  542. if errors.Is(err, mongo.ErrNoDocuments) {
  543. return nil, fmt.Errorf("找不到角色权限")
  544. }
  545. return nil, fmt.Errorf("查询角色权限失败: %v", err)
  546. }
  547. return &roleAccess, nil
  548. }
  549. func (r *Role) GetAdminRole(ctx context.Context, req *entity.AdminBindRoleReq) (*entity.AdminBindRoleResp, error) {
  550. if req.RoleId == "admin" {
  551. access := models.Access{}
  552. collection := mdb.MDB.Collection(access.TableName())
  553. filter := bson.M{}
  554. cursor, err := collection.Find(ctx, filter)
  555. defer cursor.Close(ctx)
  556. if err != nil {
  557. return nil, fmt.Errorf("查询权限失败: %v", err)
  558. }
  559. var accessList []*entity.AccessResp
  560. for cursor.Next(ctx) {
  561. var accesss *models.Access
  562. err := cursor.Decode(&accesss)
  563. if err != nil {
  564. return nil, fmt.Errorf("解析权限数据失败: %v", err)
  565. }
  566. accessList = append(accessList, &entity.AccessResp{
  567. ID: accesss.ID,
  568. ActionName: accesss.ActionName,
  569. Description: accesss.Description,
  570. ModuleName: accesss.ModuleName,
  571. ParentId: accesss.ParentId,
  572. Sort: accesss.Sort,
  573. Status: accesss.Status,
  574. Type: accesss.Type,
  575. URL: accesss.URL,
  576. AddTime: accesss.AddTime,
  577. })
  578. }
  579. return &entity.AdminBindRoleResp{
  580. AdminId: "admin",
  581. AdminName: "admin",
  582. RoleId: "admin",
  583. RoleName: "超级管理员",
  584. AccessList: formatAccessData(accessList),
  585. }, nil
  586. }
  587. role, err := getRole(ctx, req.RoleId)
  588. if err != nil {
  589. return nil, err
  590. }
  591. roleAccess, err := getRoleAccess(ctx, req.RoleId)
  592. if err != nil {
  593. return nil, err
  594. }
  595. var AccessIds []primitive.ObjectID
  596. var invalidAccessIds []string
  597. for _, v := range roleAccess.AccessID {
  598. objId, err := primitive.ObjectIDFromHex(v)
  599. if err != nil {
  600. invalidAccessIds = append(invalidAccessIds, v)
  601. continue
  602. }
  603. AccessIds = append(AccessIds, objId)
  604. }
  605. if len(AccessIds) == 0 {
  606. if len(invalidAccessIds) > 0 {
  607. return nil, fmt.Errorf("无效的权限ID: %v", strings.Join(invalidAccessIds, ", "))
  608. }
  609. return nil, fmt.Errorf("没有权限")
  610. }
  611. access := models.Access{}
  612. collection := mdb.MDB.Collection(access.TableName())
  613. filter := bson.M{}
  614. filter["_id"] = bson.M{"$in": AccessIds}
  615. cursor, err := collection.Find(ctx, filter)
  616. defer cursor.Close(ctx)
  617. if err != nil {
  618. return nil, fmt.Errorf("查询权限失败: %v", err)
  619. }
  620. var accessList []*entity.AccessResp
  621. for cursor.Next(ctx) {
  622. var accesss *models.Access
  623. if err := cursor.Decode(&accesss); err != nil {
  624. log.Printf("Failed to decode document: %v", err)
  625. return nil, fmt.Errorf("解码权限失败: %v", err)
  626. }
  627. accessList = append(accessList, &entity.AccessResp{
  628. ID: accesss.ID,
  629. ActionName: accesss.ActionName,
  630. ModuleName: accesss.ModuleName,
  631. Description: accesss.Description,
  632. URL: accesss.URL,
  633. ParentId: accesss.ParentId,
  634. Sort: accesss.Sort,
  635. Type: accesss.Type,
  636. Status: accesss.Status,
  637. })
  638. }
  639. return &entity.AdminBindRoleResp{
  640. AdminId: req.AdminId,
  641. AdminName: "adminUsername",
  642. RoleName: role.Name,
  643. RoleId: req.RoleId,
  644. AccessList: formatAccessData(accessList)},
  645. nil
  646. }
  647. // 使用协程和通道并发执行验证操作
  648. func validateConcurrently(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  649. // 创建通道
  650. ch := make(chan error, 3)
  651. // 并发执行验证操作
  652. var wg sync.WaitGroup
  653. wg.Add(3)
  654. go func() {
  655. defer wg.Done()
  656. ch <- validateRoleExistence(ctx, req)
  657. }()
  658. go func() {
  659. defer wg.Done()
  660. ch <- validateAccessExistence(ctx, req)
  661. }()
  662. go func() {
  663. defer wg.Done()
  664. ch <- validateRoleAccessExistence(ctx, req)
  665. }()
  666. // 收集所有验证结果
  667. var e []error
  668. go func() {
  669. defer wg.Wait()
  670. for i := 0; i < 3; i++ {
  671. if err := <-ch; err != nil {
  672. e = append(e, err)
  673. }
  674. }
  675. if len(e) > 0 {
  676. ch <- fmt.Errorf("验证失败: %v", e)
  677. } else {
  678. ch <- nil
  679. }
  680. }()
  681. // 等待所有并发任务完成
  682. select {
  683. case err := <-ch:
  684. return err
  685. case <-ctx.Done():
  686. return ctx.Err()
  687. }
  688. }
  689. // 验证角色是否存在
  690. func validateRoleExistence(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  691. roles := models.Roles{}
  692. collection := mdb.MDB.Collection(roles.TableName())
  693. objID, err := primitive.ObjectIDFromHex(req.RoleId)
  694. if err != nil {
  695. return fmt.Errorf("解析角色ID失败: %v", err)
  696. }
  697. if err := collection.FindOne(ctx, bson.M{"_id": objID}).Err(); err != nil {
  698. if errors.Is(err, mongo.ErrNoDocuments) {
  699. return fmt.Errorf("角色不存在")
  700. }
  701. return err
  702. }
  703. return nil
  704. }
  705. // 验证权限是否存在
  706. func validateAccessExistence(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  707. access := models.Access{}
  708. collection := mdb.MDB.Collection(access.TableName())
  709. objIDS := make([]primitive.ObjectID, len(req.AccessId))
  710. for i, id := range req.AccessId {
  711. objID, err := primitive.ObjectIDFromHex(id)
  712. if err != nil {
  713. return fmt.Errorf("解析权限ID失败: %v", err)
  714. }
  715. objIDS[i] = objID
  716. }
  717. filter := bson.M{"_id": bson.M{"$in": objIDS}} // 数组查询
  718. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  719. if errors.Is(err, mongo.ErrNoDocuments) {
  720. return fmt.Errorf("权限不存在")
  721. }
  722. return err
  723. }
  724. return nil
  725. }
  726. // 验证角色权限是否已存在
  727. func validateRoleAccessExistence(ctx context.Context, req entity.RoleAccessUpdateReq) error {
  728. roleAccess := models.RoleAccess{}
  729. collection := mdb.MDB.Collection(roleAccess.TableName())
  730. filter := bson.M{"role_id": req.RoleId}
  731. if err := collection.FindOne(ctx, filter).Err(); err != nil {
  732. if errors.Is(err, mongo.ErrNoDocuments) {
  733. return fmt.Errorf("角色权限不存在 不能更新")
  734. }
  735. return err
  736. }
  737. return nil
  738. }