casbin_rbac.go 818 B

1234567891011121314151617181920212223242526272829303132333435
  1. package middleware
  2. import (
  3. "github.com/gin-gonic/gin"
  4. "log-server/global"
  5. "log-server/model/common/response"
  6. "log-server/service"
  7. "log-server/utils"
  8. "strconv"
  9. )
  10. var casbinService = service.ServiceGroupApp.SystemServiceGroup.CasbinService
  11. // 拦截器
  12. func CasbinHandler() gin.HandlerFunc {
  13. return func(c *gin.Context) {
  14. waitUse, _ := utils.GetClaims(c)
  15. // 获取请求的PATH
  16. obj := c.Request.URL.Path
  17. // 获取请求方法
  18. act := c.Request.Method
  19. // 获取用户的角色
  20. sub := strconv.Itoa(int(waitUse.AuthorityId))
  21. e := casbinService.Casbin() // 判断策略中是否存在
  22. success, _ := e.Enforce(sub, obj, act)
  23. if global.GVA_CONFIG.System.Env == "develop" || success {
  24. c.Next()
  25. } else {
  26. response.FailWithDetailed(gin.H{}, "权限不足", c)
  27. c.Abort()
  28. return
  29. }
  30. }
  31. }