CheckPermitAspect.java 4.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121
  1. package com.fdkankan.scene.Interceptor;
  2. import cn.hutool.core.collection.CollUtil;
  3. import cn.hutool.core.util.StrUtil;
  4. import com.baomidou.mybatisplus.core.conditions.query.LambdaQueryWrapper;
  5. import com.fdkankan.common.constant.CommonStatus;
  6. import com.fdkankan.common.constant.ErrorCode;
  7. import com.fdkankan.common.constant.SceneStatus;
  8. import com.fdkankan.common.exception.BusinessException;
  9. import com.fdkankan.redis.constant.RedisKey;
  10. import com.fdkankan.redis.util.RedisUtil;
  11. import com.fdkankan.scene.entity.*;
  12. import com.fdkankan.scene.service.*;
  13. import com.fdkankan.web.user.SSOLoginHelper;
  14. import com.fdkankan.web.user.SSOUser;
  15. import com.fdkankan.web.util.WebUtil;
  16. import java.io.IOException;
  17. import java.util.List;
  18. import java.util.Objects;
  19. import java.util.Set;
  20. import java.util.stream.Collectors;
  21. import javax.servlet.http.HttpServletRequest;
  22. import lombok.extern.log4j.Log4j2;
  23. import org.aspectj.lang.JoinPoint;
  24. import org.aspectj.lang.annotation.Aspect;
  25. import org.aspectj.lang.annotation.Before;
  26. import org.aspectj.lang.annotation.Pointcut;
  27. import org.springframework.beans.factory.annotation.Autowired;
  28. import org.springframework.core.annotation.Order;
  29. import org.springframework.stereotype.Component;
  30. import org.springframework.web.context.request.RequestContextHolder;
  31. import org.springframework.web.context.request.ServletRequestAttributes;
  32. @Log4j2
  33. @Aspect
  34. @Component
  35. @Order(101)
  36. public class CheckPermitAspect {
  37. @Autowired
  38. private SSOLoginHelper ssoLoginHelper;
  39. @Autowired
  40. private RedisUtil redisUtil;
  41. @Autowired
  42. private IScenePlusService scenePlusService;
  43. @Autowired
  44. private ISceneCooperationService sceneCooperationService;
  45. @Autowired
  46. private IRoleService roleService;
  47. @Autowired
  48. private IUserRoleService userRoleService;
  49. @Autowired
  50. private IUserService userService;
  51. @Autowired
  52. private ICameraDetailService cameraDetailService;
  53. @Autowired
  54. private ISysRoleService sysRoleService;
  55. @Pointcut("@annotation(com.fdkankan.scene.annotation.CheckPermit)")
  56. public void checkCooperationPermit() {
  57. }
  58. /**
  59. * 前置通知 用于判断用户协作场景是否有协作权限
  60. *
  61. * @param joinPoint
  62. * 切点
  63. * @throws IOException
  64. */
  65. @Before("checkCooperationPermit()")
  66. public void doBefore(JoinPoint joinPoint) throws Exception {
  67. HttpServletRequest request = ((ServletRequestAttributes) RequestContextHolder.getRequestAttributes()).getRequest();
  68. // 读取session中的用户
  69. log.info("token:{}", request.getHeader("token"));
  70. SSOUser user = ssoLoginHelper.getSsoUser(request.getHeader("token"));
  71. if(Objects.isNull(user)){
  72. throw new BusinessException(ErrorCode.TOKEN_NOT_FOUND);
  73. }
  74. String num = WebUtil.getParameter("num", joinPoint, request);
  75. if(StrUtil.isEmpty(num)){
  76. throw new BusinessException(ErrorCode.PARAM_REQUIRED);
  77. }
  78. ScenePlus scenePlus= scenePlusService.getScenePlusByNum(num);
  79. if(Objects.isNull(scenePlus)){
  80. throw new BusinessException(ErrorCode.FAILURE_CODE_5005);
  81. }
  82. //如果是计算中或者计算出错,返回计算中
  83. if(SceneStatus.wait.code().equals(scenePlus.getSceneStatus())
  84. || SceneStatus.FAILD.code().equals(scenePlus.getSceneStatus())){
  85. throw new BusinessException(ErrorCode.FAILURE_CODE_5033);
  86. }
  87. //判断场景的userid是否与当前登录用户id相等,如果相等,则有编辑权限
  88. if(Objects.nonNull(scenePlus.getUserId()) && scenePlus.getUserId().equals(user.getId())){
  89. return;
  90. }
  91. //如果上面场景用户与当前用户不匹配,需要校验当前用户是否拥有管理员角色,管理员角色可以访问任何场景
  92. List<UserRole> list = userRoleService.list(new LambdaQueryWrapper<UserRole>().eq(UserRole::getUserId, user.getId()));
  93. Set<Long> roleIdSet = null;
  94. if(CollUtil.isNotEmpty(list)){
  95. roleIdSet = list.stream().map(ur -> ur.getRoleId()).collect(Collectors.toSet());
  96. }
  97. if(CollUtil.isEmpty(roleIdSet)){
  98. throw new BusinessException(ErrorCode.FAILURE_CODE_5014);
  99. }
  100. List<SysRole> validRoleList = sysRoleService.getValidRoleByRoleIds(roleIdSet);
  101. if(CollUtil.isEmpty(validRoleList)){
  102. throw new BusinessException(ErrorCode.FAILURE_CODE_5014);
  103. }
  104. boolean isAdmin = validRoleList.stream().anyMatch(sysRole -> sysRole.getRoleType().contains("admin"));
  105. if(!isAdmin){
  106. throw new BusinessException(ErrorCode.FAILURE_CODE_5014);
  107. }
  108. }
  109. }