2019-12-12 05:21:16 +00:00
|
|
|
package middleware
|
|
|
|
|
|
|
|
|
|
import (
|
2021-08-23 15:13:24 +00:00
|
|
|
"github.com/flipped-aurora/gin-vue-admin/server/global"
|
|
|
|
|
"github.com/flipped-aurora/gin-vue-admin/server/model/common/response"
|
2021-10-25 06:08:07 +00:00
|
|
|
"github.com/flipped-aurora/gin-vue-admin/server/utils"
|
2019-12-12 05:21:16 +00:00
|
|
|
"github.com/gin-gonic/gin"
|
2025-10-19 05:27:48 +00:00
|
|
|
"strconv"
|
|
|
|
|
"strings"
|
2019-12-12 05:21:16 +00:00
|
|
|
)
|
|
|
|
|
|
2022-11-10 04:08:13 +00:00
|
|
|
// CasbinHandler 拦截器
|
2019-12-12 05:21:16 +00:00
|
|
|
func CasbinHandler() gin.HandlerFunc {
|
|
|
|
|
return func(c *gin.Context) {
|
2024-03-06 15:38:17 +00:00
|
|
|
waitUse, _ := utils.GetClaims(c)
|
|
|
|
|
//获取请求的PATH
|
|
|
|
|
path := c.Request.URL.Path
|
|
|
|
|
obj := strings.TrimPrefix(path, global.GVA_CONFIG.System.RouterPrefix)
|
|
|
|
|
// 获取请求方法
|
|
|
|
|
act := c.Request.Method
|
|
|
|
|
// 获取用户的角色
|
|
|
|
|
sub := strconv.Itoa(int(waitUse.AuthorityId))
|
2025-05-13 11:24:54 +00:00
|
|
|
e := utils.GetCasbin() // 判断策略中是否存在
|
2024-03-06 15:38:17 +00:00
|
|
|
success, _ := e.Enforce(sub, obj, act)
|
|
|
|
|
if !success {
|
|
|
|
|
response.FailWithDetailed(gin.H{}, "权限不足", c)
|
|
|
|
|
c.Abort()
|
|
|
|
|
return
|
2019-12-12 05:21:16 +00:00
|
|
|
}
|
2022-11-10 04:08:13 +00:00
|
|
|
c.Next()
|
2019-12-12 05:21:16 +00:00
|
|
|
}
|
|
|
|
|
}
|