CheckPermitAspect.java 4.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131
  1. package com.fdkankan.scene.Interceptor;
  2. import cn.hutool.core.collection.CollUtil;
  3. import cn.hutool.core.util.StrUtil;
  4. import com.baomidou.mybatisplus.core.conditions.query.LambdaQueryWrapper;
  5. import com.fdkankan.common.constant.CommonStatus;
  6. import com.fdkankan.common.constant.ErrorCode;
  7. import com.fdkankan.common.constant.PayStatus;
  8. import com.fdkankan.common.constant.SceneStatus;
  9. import com.fdkankan.common.exception.BusinessException;
  10. import com.fdkankan.redis.constant.RedisKey;
  11. import com.fdkankan.redis.util.RedisUtil;
  12. import com.fdkankan.scene.entity.*;
  13. import com.fdkankan.scene.service.*;
  14. import com.fdkankan.web.user.SSOLoginHelper;
  15. import com.fdkankan.web.user.SSOUser;
  16. import com.fdkankan.web.util.WebUtil;
  17. import java.io.IOException;
  18. import java.util.List;
  19. import java.util.Objects;
  20. import java.util.Set;
  21. import java.util.stream.Collectors;
  22. import javax.servlet.http.HttpServletRequest;
  23. import lombok.extern.log4j.Log4j2;
  24. import org.aspectj.lang.JoinPoint;
  25. import org.aspectj.lang.annotation.Aspect;
  26. import org.aspectj.lang.annotation.Before;
  27. import org.aspectj.lang.annotation.Pointcut;
  28. import org.springframework.beans.factory.annotation.Autowired;
  29. import org.springframework.core.annotation.Order;
  30. import org.springframework.stereotype.Component;
  31. import org.springframework.web.context.request.RequestContextHolder;
  32. import org.springframework.web.context.request.ServletRequestAttributes;
  33. @Log4j2
  34. @Aspect
  35. @Component
  36. @Order(101)
  37. public class CheckPermitAspect {
  38. @Autowired
  39. private SSOLoginHelper ssoLoginHelper;
  40. @Autowired
  41. private RedisUtil redisUtil;
  42. @Autowired
  43. private IScenePlusService scenePlusService;
  44. @Autowired
  45. private ISceneCooperationService sceneCooperationService;
  46. @Autowired
  47. private IRoleService roleService;
  48. @Autowired
  49. private IUserRoleService userRoleService;
  50. @Autowired
  51. private IUserService userService;
  52. @Autowired
  53. private ICameraDetailService cameraDetailService;
  54. @Pointcut("@annotation(com.fdkankan.scene.annotation.CheckPermit)")
  55. public void checkCooperationPermit() {
  56. }
  57. /**
  58. * 前置通知 用于判断用户协作场景是否有协作权限
  59. *
  60. * @param joinPoint
  61. * 切点
  62. * @throws IOException
  63. */
  64. @Before("checkCooperationPermit()")
  65. public void doBefore(JoinPoint joinPoint) throws Exception {
  66. HttpServletRequest request = ((ServletRequestAttributes) RequestContextHolder.getRequestAttributes()).getRequest();
  67. // 读取session中的用户
  68. SSOUser user = ssoLoginHelper.getSsoUser(request.getHeader("token"));
  69. if(Objects.isNull(user)){
  70. throw new BusinessException(ErrorCode.TOKEN_NOT_FOUND);
  71. }
  72. String num = WebUtil.getParameter("num", joinPoint, request);
  73. if(StrUtil.isEmpty(num)){
  74. throw new BusinessException(ErrorCode.PARAM_REQUIRED);
  75. }
  76. ScenePlus scenePlus= scenePlusService.getScenePlusByNum(num);
  77. if(Objects.isNull(scenePlus)){
  78. throw new BusinessException(ErrorCode.FAILURE_CODE_5005);
  79. }
  80. //如果是计算中或者计算出错,返回计算中
  81. if(SceneStatus.wait.code().equals(scenePlus.getSceneStatus())
  82. || SceneStatus.FAILD.code().equals(scenePlus.getSceneStatus())){
  83. throw new BusinessException(ErrorCode.FAILURE_CODE_5033);
  84. }
  85. //封存
  86. if(!PayStatus.PAY.code().equals(scenePlus.getPayStatus())){
  87. throw new BusinessException(ErrorCode.FAILURE_CODE_5034);
  88. }
  89. //如果上面场景用户与当前用户不匹配,需要校验当前用户是否拥有某些角色,从而可以访问此场景
  90. List<UserRole> list = userRoleService.list(new LambdaQueryWrapper<UserRole>().eq(UserRole::getUserId, user.getId()));
  91. Set<Long> roleIdSet = null;
  92. if(CollUtil.isNotEmpty(list)){
  93. roleIdSet = list.stream().map(ur -> ur.getRoleId()).collect(Collectors.toSet());
  94. }
  95. if(CollUtil.isEmpty(roleIdSet)){
  96. throw new BusinessException(ErrorCode.FAILURE_CODE_5014);
  97. }
  98. //平台管理员拥有最高权限
  99. if(roleIdSet.contains(5L)){
  100. return;
  101. }
  102. //判断是否有公司管理者权限,有则放开
  103. // if(roleIdSet.contains(6L)){
  104. //当前登录用户user
  105. User currentUser = userService.getById(user.getId());
  106. CameraDetail cameraDetail = cameraDetailService.findByCameraId(scenePlus.getCameraId());
  107. if(Objects.isNull(currentUser) || Objects.isNull(currentUser.getCompanyId())
  108. || Objects.isNull(cameraDetail) || Objects.isNull(cameraDetail.getCompanyId())
  109. || !currentUser.getCompanyId().equals(cameraDetail.getCompanyId())){
  110. throw new BusinessException(ErrorCode.FAILURE_CODE_5014);
  111. }
  112. // }
  113. //校验场景用户是否与当前登录用户相同,相同则跳出
  114. // if(Objects.isNull(scenePlus.getUserId()) || !scenePlus.getUserId().equals(user.getId())){
  115. // throw new BusinessException(ErrorCode.FAILURE_CODE_5014);
  116. // }
  117. }
  118. }