edb.go 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368
  1. package data_manage_permission
  2. import (
  3. "eta/eta_api/utils"
  4. "fmt"
  5. "github.com/beego/beego/v2/client/orm"
  6. "strconv"
  7. "time"
  8. )
  9. // EdbInfoPermission
  10. // @Description: 指标权限表
  11. type EdbInfoPermission struct {
  12. EdbInfoPermissionId int64 `json:"edb_info_permission_id" orm:"column(edb_info_permission_id);pk"`
  13. EdbInfoId int32 `json:"edb_info_id"` // 指标id
  14. EdbInfoType int32 `json:"edb_info_type"` // 指标类型,0:普通指标,1:预测指标
  15. SysUserId int32 `json:"sys_user_id"` // 系统用户id
  16. ModifyTime time.Time `json:"modify_time"` // 变更时间
  17. CreateTime time.Time `json:"create_time"` // 关系建立时间
  18. }
  19. // EdbClassifyPermission
  20. // @Description: 指标分类权限表
  21. type EdbClassifyPermission struct {
  22. EdbClassifyPermissionId int64 `json:"edb_classify_permission_id" orm:"column(edb_classify_permission_id);pk"`
  23. EdbClassifyId int32 `json:"edb_classify_id"` // 分类id
  24. EdbClassifyType int32 `json:"edb_classify_type"` // 分类类型,0:普通指标分类,1:预测指标分类
  25. SysUserId int32 `json:"sys_user_id"` // 系统用户id
  26. ModifyTime time.Time `json:"modify_time"` // 变更时间
  27. CreateTime time.Time `json:"create_time"` // 关系建立时间
  28. }
  29. // SetIsPermissionEdbChartByEdbClassifyIdList
  30. // @Description: 设置指标分类是否涉密
  31. // @author: Roc
  32. // @datetime 2024-03-27 14:15:42
  33. // @param classifyIdList []int
  34. func SetIsPermissionEdbChartByEdbClassifyIdList(classifyIdList []int, classifyType int) (err error) {
  35. num := len(classifyIdList)
  36. if num <= 0 {
  37. return
  38. }
  39. o, err := orm.NewOrmUsingDB("data").Begin()
  40. if err != nil {
  41. return
  42. }
  43. defer func() {
  44. if err != nil {
  45. _ = o.Rollback()
  46. } else {
  47. _ = o.Commit()
  48. }
  49. }()
  50. //// 获取已经配置涉密的分类权限
  51. //edbClassifyList := make([]*EdbClassify, 0)
  52. //sql := `SELECT * FROM edb_classify WHERE is_join_permission = ? `
  53. //_, err = o.Raw(sql, 1).QueryRows(&edbClassifyList)
  54. //if err != nil {
  55. // return
  56. //}
  57. //edbClassifyMap := make(map[int]*EdbClassify)
  58. //for _, v := range edbClassifyList {
  59. // edbClassifyMap[v.ClassifyId] = v
  60. //}
  61. // 先将所有已经设置了涉密的分类设置为不涉密
  62. sql := `UPDATE edb_classify SET is_join_permission=?,modify_time=now() WHERE is_join_permission = 1 AND classify_type = ?`
  63. _, err = o.Raw(sql, 0, classifyType).Exec()
  64. if err != nil {
  65. return
  66. }
  67. if len(classifyIdList) > 0 {
  68. // 将对应的分类设置为涉密
  69. sql = `UPDATE edb_classify SET is_join_permission=?,modify_time=now() WHERE classify_type = ? AND classify_id in (` + utils.GetOrmInReplace(num) + `) `
  70. _, err = o.Raw(sql, 1, classifyType, classifyIdList).Exec()
  71. if err != nil {
  72. return
  73. }
  74. }
  75. // TODO 判断是否要记录移除的分类,用于发送通知给客户
  76. return
  77. }
  78. // SetPermissionEdbChartByEdbIdList
  79. // @Description: 根据指标ID列表设置指标的用户权限
  80. // @author: Roc
  81. // @datetime 2024-03-27 14:03:42
  82. // @param edbIdList []string
  83. // @param userIdList []int
  84. // @param chartInfoType int
  85. // @return err error
  86. func SetPermissionEdbChartByEdbIdList(edbIdList []string, userIdList []int, edbInfoType int) (err error) {
  87. edbNum := len(edbIdList)
  88. if edbNum <= 0 {
  89. return
  90. }
  91. o, err := orm.NewOrmUsingDB("data").Begin()
  92. if err != nil {
  93. return
  94. }
  95. defer func() {
  96. if err != nil {
  97. _ = o.Rollback()
  98. } else {
  99. _ = o.Commit()
  100. }
  101. }()
  102. // 获取已经配置的指标权限用户
  103. edbInfoPermissionList := make([]*EdbInfoPermission, 0)
  104. sql := `SELECT * FROM edb_info_permission WHERE edb_info_type = ? AND edb_info_id in (` + utils.GetOrmInReplace(edbNum) + `) `
  105. _, err = o.Raw(sql, edbInfoType, edbIdList).QueryRows(&edbInfoPermissionList)
  106. if err != nil {
  107. return
  108. }
  109. edbInfoPermissionMap := make(map[string]*EdbInfoPermission)
  110. for _, v := range edbInfoPermissionList {
  111. edbInfoPermissionMap[fmt.Sprint(v.EdbInfoId, "_", v.SysUserId)] = v
  112. }
  113. // 标记指标是否纳入权限管控
  114. {
  115. // 默认 标记指标为纳入权限管控
  116. isJoinPermission := 1
  117. // 用户不选的情况下,说明是要给这些指标移除权限管控
  118. if len(userIdList) <= 0 {
  119. // 标记指标为不纳入权限管控
  120. isJoinPermission = 0
  121. }
  122. sql = `UPDATE edb_info SET is_join_permission=?,modify_time=now() WHERE edb_info_type = ? AND edb_info_id in (` + utils.GetOrmInReplace(edbNum) + `) `
  123. _, err = o.Raw(sql, isJoinPermission, edbInfoType, edbIdList).Exec()
  124. if err != nil {
  125. return
  126. }
  127. }
  128. // 待添加的配置项
  129. addList := make([]*EdbInfoPermission, 0)
  130. // 遍历待配置的指标和用户,筛选出需要添加的配置项
  131. for _, edbInfoIdStr := range edbIdList {
  132. edbInfoId, tmpErr := strconv.ParseInt(edbInfoIdStr, 10, 64)
  133. if tmpErr != nil {
  134. err = tmpErr
  135. return
  136. }
  137. for _, userId := range userIdList {
  138. key := fmt.Sprint(edbInfoId, "_", userId)
  139. if _, ok := edbInfoPermissionMap[key]; ok {
  140. // 如果存在那么就移除,说明不需要处理了
  141. delete(edbInfoPermissionMap, key)
  142. } else {
  143. // 如果不存在,那么就提那家
  144. addList = append(addList, &EdbInfoPermission{
  145. //PermissionId: 0,
  146. EdbInfoId: int32(edbInfoId),
  147. SysUserId: int32(userId),
  148. ModifyTime: time.Now(),
  149. CreateTime: time.Now(),
  150. })
  151. }
  152. }
  153. }
  154. // 添加待配置项
  155. if len(addList) > 0 {
  156. _, err = o.InsertMulti(500, addList)
  157. if err != nil {
  158. return
  159. }
  160. }
  161. // 移除废弃的配置项
  162. {
  163. // 待移除的配置项
  164. deletePermissionIdList := make([]int64, 0)
  165. for _, v := range edbInfoPermissionMap {
  166. deletePermissionIdList = append(deletePermissionIdList, v.EdbInfoPermissionId)
  167. }
  168. deletePermissionIdNum := len(deletePermissionIdList)
  169. if deletePermissionIdNum > 0 {
  170. sql = "DELETE FROM edb_info_permission WHERE edb_info_permission_id in (" + utils.GetOrmInReplace(deletePermissionIdNum) + ")"
  171. _, err = o.Raw(sql, deletePermissionIdList).Exec()
  172. if err != nil {
  173. return
  174. }
  175. }
  176. }
  177. return
  178. }
  179. // SetEdbChartClassifyPermissionReq
  180. // @Description: 设置数据分类权限请求
  181. type SetEdbChartClassifyPermissionReq struct {
  182. Source int `description:"来源id"`
  183. SubSource int `description:"子来源id"`
  184. UserList []int `description:"赋权用户id列表,如果为空,说明要给这些数据分类移除权限管控"`
  185. ClassifyIdList []int `description:"指标/图表/表格分类唯一id列表"`
  186. }
  187. // SetPermissionEdbChartClassifyIdByClassifyIdList
  188. // @Description: 根据指标分类ID列表设置分类的用户权限
  189. // @author: Roc
  190. // @datetime 2024-03-28 14:53:04
  191. // @param classifyIdList []int
  192. // @param userIdList []int
  193. // @return err error
  194. func SetPermissionEdbChartClassifyIdByClassifyIdList(classifyIdList []int, userIdList []int, classifyType int) (err error) {
  195. userNum := len(userIdList)
  196. if userNum <= 0 {
  197. return
  198. }
  199. o, err := orm.NewOrmUsingDB("data").Begin()
  200. if err != nil {
  201. return
  202. }
  203. defer func() {
  204. if err != nil {
  205. _ = o.Rollback()
  206. } else {
  207. _ = o.Commit()
  208. }
  209. }()
  210. // 获取当前选择用户已经配置的指标分类权限
  211. classifyPermissionList := make([]*EdbClassifyPermission, 0)
  212. sql := `SELECT * FROM edb_classify_permission WHERE edb_classify_type = ? AND sys_user_id in (` + utils.GetOrmInReplace(userNum) + `) `
  213. _, err = o.Raw(sql, classifyType, userIdList).QueryRows(&classifyPermissionList)
  214. if err != nil {
  215. return
  216. }
  217. classifyPermissionMap := make(map[string]*EdbClassifyPermission)
  218. for _, v := range classifyPermissionList {
  219. classifyPermissionMap[fmt.Sprint(v.EdbClassifyId, "_", v.SysUserId)] = v
  220. }
  221. // 待添加的配置项
  222. addList := make([]*EdbClassifyPermission, 0)
  223. // 遍历待配置的指标和用户,筛选出需要添加的配置项
  224. for _, userId := range userIdList {
  225. for _, classifyId := range classifyIdList {
  226. key := fmt.Sprint(classifyId, "_", userId)
  227. if _, ok := classifyPermissionMap[key]; ok {
  228. // 如果存在那么就移除,说明不需要处理了
  229. delete(classifyPermissionMap, key)
  230. } else {
  231. // 如果不存在,那么就提那家
  232. addList = append(addList, &EdbClassifyPermission{
  233. //PermissionId: 0,
  234. EdbClassifyId: int32(classifyId),
  235. EdbClassifyType: int32(classifyType),
  236. SysUserId: int32(userId),
  237. ModifyTime: time.Now(),
  238. CreateTime: time.Now(),
  239. })
  240. }
  241. }
  242. }
  243. // 添加待配置项
  244. if len(addList) > 0 {
  245. _, err = o.InsertMulti(500, addList)
  246. if err != nil {
  247. return
  248. }
  249. }
  250. // 移除废弃的配置项
  251. {
  252. // 获取移除的配置项
  253. deletePermissionIdList := make([]int64, 0)
  254. for _, v := range classifyPermissionMap {
  255. deletePermissionIdList = append(deletePermissionIdList, v.EdbClassifyPermissionId)
  256. }
  257. deletePermissionIdNum := len(deletePermissionIdList)
  258. if deletePermissionIdNum > 0 {
  259. sql = "DELETE FROM edb_classify_permission WHERE edb_classify_permission_id in (" + utils.GetOrmInReplace(deletePermissionIdNum) + ")"
  260. _, err = o.Raw(sql, deletePermissionIdList).Exec()
  261. if err != nil {
  262. return
  263. }
  264. }
  265. }
  266. return
  267. }
  268. // GetPermissionEdbClassifyIdListByUserId
  269. // @Description: 根据用户ID获取已经配置的分类id列表
  270. // @author: Roc
  271. // @datetime 2024-03-29 16:24:46
  272. // @param userId int
  273. // @param classifyType int
  274. // @return edbClassifyIdList []int
  275. // @return err error
  276. func GetPermissionEdbClassifyIdListByUserId(userId int, classifyType int) (edbClassifyIdList []int, err error) {
  277. o := orm.NewOrmUsingDB("data")
  278. sql := `SELECT edb_classify_id FROM edb_classify_permission WHERE edb_classify_type = ? AND sys_user_id = ? `
  279. _, err = o.Raw(sql, classifyType, userId).QueryRows(&edbClassifyIdList)
  280. return
  281. }
  282. // GetPermissionEdbIdListByDataId
  283. // @Description: 根据资产(指标、图表、表格)ID获取已经配置的用户id列表
  284. // @author: Roc
  285. // @datetime 2024-03-29 16:24:46
  286. // @param dataId int
  287. // @param edbInfoType int
  288. // @return edbIdList []int
  289. // @return err error
  290. func GetPermissionEdbIdListByDataId(dataId int, edbInfoType int) (edbIdList []int, err error) {
  291. o := orm.NewOrmUsingDB("data")
  292. sql := `SELECT sys_user_id FROM edb_info_permission WHERE edb_info_type = ? AND edb_info_id= ? `
  293. _, err = o.Raw(sql, edbInfoType, dataId).QueryRows(&edbIdList)
  294. return
  295. }
  296. // GetPermissionEdbIdList
  297. // @Description: 获取用户权限的指标列表
  298. // @author: Roc
  299. // @datetime 2024-03-28 16:50:47
  300. // @param userId int
  301. // @param edbInfoId int
  302. // @return idList []int
  303. // @return err error
  304. func GetPermissionEdbIdList(userId, edbInfoId int) (idList []int, err error) {
  305. pars := []interface{}{userId}
  306. o := orm.NewOrmUsingDB("data")
  307. sql := `SELECT edb_info_id FROM edb_info_permission WHERE sys_user_id = ? `
  308. if edbInfoId > 0 {
  309. sql += ` AND edb_info_id = ? `
  310. pars = append(pars, edbInfoId)
  311. }
  312. _, err = o.Raw(sql, pars).QueryRows(&idList)
  313. return
  314. }
  315. // GetPermissionEdbClassifyIdList
  316. // @Description: 获取用户权限的指标分类列表
  317. // @author: Roc
  318. // @datetime 2024-03-28 16:50:47
  319. // @param userId int
  320. // @param classifyId int
  321. // @return idList []int
  322. // @return err error
  323. func GetPermissionEdbClassifyIdList(userId, classifyId int) (idList []int, err error) {
  324. pars := []interface{}{userId}
  325. o := orm.NewOrmUsingDB("data")
  326. sql := `SELECT edb_classify_id FROM edb_classify_permission WHERE sys_user_id = ? `
  327. if classifyId > 0 {
  328. sql += ` AND edb_classify_id = ? `
  329. pars = append(pars, classifyId)
  330. }
  331. _, err = o.Raw(sql, pars).QueryRows(&idList)
  332. return
  333. }