serviceAuth.go 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113
  1. package auth
  2. import (
  3. "github.com/gin-gonic/gin"
  4. "net/http"
  5. "strings"
  6. "ulink-admin/frame"
  7. "ulink-admin/modules/system/service"
  8. "ulink-admin/pkg/jwt/admin"
  9. )
  10. type ServiceAuthMiddleWare struct {
  11. PermissionService *service.PermissionService `inject:""`
  12. LoginService *service.LoginService `inject:""`
  13. }
  14. // ServiceAuthCheck 中间件,检查访问权限
  15. func (a *ServiceAuthMiddleWare) ServiceAuthCheck() frame.HandlerFunc {
  16. return func(permission *frame.Permission, c *gin.Context) bool {
  17. if permission != nil {
  18. //获取用户权限,如果用户权限包含了接口权限
  19. user := admin.GetUserInfo(&frame.Context{c})
  20. permissions := a.PermissionService.GetMenuPermission(user)
  21. //fmt.Printf("权限%v", permissions)
  22. if strings.Contains(strings.Join(*permissions, ",")+",", "*:*:*") || strings.Contains(strings.Join(*permissions, ",")+",", permission.Code) {
  23. return true
  24. }
  25. c.JSON(http.StatusOK, gin.H{
  26. "status": 808,
  27. "msg": "无权限操作",
  28. })
  29. return false
  30. } else {
  31. return true
  32. }
  33. //frame.Throw(frame.BUSINESS_CODE, "没得权限")
  34. //判断是否股买优惠券服务
  35. /*url := c.Request.URL.Path
  36. method := c.Request.Method
  37. sysCfg := config.GetSysCfg()
  38. data, err := a.serviceService.MyList()
  39. if strings.Contains(url, "coupon") && strings.Contains("PUT,POST,DELETE", method) {
  40. if err == nil {
  41. if data.Code == 100 {
  42. isHave := false
  43. for _, item := range data.Result.Data {
  44. if item.Service.FeatureSn == sysCfg.CouponSn {
  45. isHave = true
  46. break
  47. }
  48. }
  49. if !isHave {
  50. c.JSON(http.StatusOK, gin.H{
  51. "status": 808,
  52. "msg": "没有购买优惠券服务,无权限操作",
  53. })
  54. c.Abort()
  55. return
  56. }
  57. } else {
  58. c.JSON(http.StatusOK, gin.H{
  59. "status": 808,
  60. "msg": "查询到优惠券服务购买状态出错,无权限操作",
  61. })
  62. c.Abort()
  63. return
  64. }
  65. } else {
  66. c.JSON(http.StatusOK, gin.H{
  67. "status": 808,
  68. "msg": "查询到优惠券服务购买状态出错,无权限操作",
  69. })
  70. c.Abort()
  71. return
  72. }
  73. }
  74. if strings.Contains(url, "integral") && strings.Contains("PUT,POST,DELETE", method) {
  75. if err == nil {
  76. if data.Code == 100 {
  77. isHave := false
  78. for _, item := range data.Result.Data {
  79. if item.Service.FeatureSn == sysCfg.IntegralSn {
  80. isHave = true
  81. break
  82. }
  83. }
  84. if !isHave {
  85. c.JSON(http.StatusOK, gin.H{
  86. "status": 808,
  87. "msg": "没有购买积分服务,无权限操作",
  88. })
  89. c.Abort()
  90. return
  91. }
  92. } else {
  93. c.JSON(http.StatusOK, gin.H{
  94. "status": 808,
  95. "msg": "查询到积分服务购买状态出错,无权限操作",
  96. })
  97. c.Abort()
  98. return
  99. }
  100. } else {
  101. c.JSON(http.StatusOK, gin.H{
  102. "status": 808,
  103. "msg": "查询到积分服务购买状态出错,无权限操作",
  104. })
  105. c.Abort()
  106. return
  107. }
  108. }*/
  109. }
  110. }