123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317 |
- <?php
- namespace app\admin\controller\auth;
- use app\admin\model\AuthGroup;
- use app\common\controller\Backend;
- use fast\Tree;
- use think\Db;
- use think\Exception;
- class Group extends Backend
- {
- protected $model = null;
- protected $childrenGroupIds = [];
- protected $grouplist = [];
- protected $groupdata = [];
- protected $noNeedRight = ['roletree'];
- public function _initialize()
- {
- parent::_initialize();
- $this->model = model('AuthGroup');
- $this->childrenGroupIds = $this->auth->getChildrenGroupIds(true);
- $groupList = collection(AuthGroup::where('id', 'in', $this->childrenGroupIds)->select())->toArray();
- Tree::instance()->init($groupList);
- $groupList = [];
- if ($this->auth->isSuperAdmin()) {
- $groupList = Tree::instance()->getTreeList(Tree::instance()->getTreeArray(0));
- } else {
- $groups = $this->auth->getGroups();
- $groupIds = [];
- foreach ($groups as $m => $n) {
- if (in_array($n['id'], $groupIds) || in_array($n['pid'], $groupIds)) {
- continue;
- }
- $groupList = array_merge($groupList, Tree::instance()->getTreeList(Tree::instance()->getTreeArray($n['pid'])));
- foreach ($groupList as $index => $item) {
- $groupIds[] = $item['id'];
- }
- }
- }
- $groupName = [];
- foreach ($groupList as $k => $v) {
- $groupName[$v['id']] = $v['name'];
- }
- $this->grouplist = $groupList;
- $this->groupdata = $groupName;
- $this->assignconfig("admin", ['id' => $this->auth->id, 'group_ids' => $this->auth->getGroupIds()]);
- $this->view->assign('groupdata', $this->groupdata);
- }
- public function index()
- {
- if ($this->request->isAjax()) {
- $list = $this->grouplist;
- $total = count($list);
- $result = array("total" => $total, "rows" => $list);
- return json($result);
- }
- return $this->view->fetch();
- }
- public function add()
- {
- if ($this->request->isPost()) {
- $this->token();
- $params = $this->request->post("row/a", [], 'strip_tags');
- $params['rules'] = explode(',', $params['rules']);
- if (!in_array($params['pid'], $this->childrenGroupIds)) {
- $this->error(__('The parent group exceeds permission limit'));
- }
- $parentmodel = model("AuthGroup")->get($params['pid']);
- if (!$parentmodel) {
- $this->error(__('The parent group can not found'));
- }
- $parentrules = explode(',', $parentmodel->rules);
- $currentrules = $this->auth->getRuleIds();
- $rules = $params['rules'];
- $rules = in_array('*', $parentrules) ? $rules : array_intersect($parentrules, $rules);
- $rules = in_array('*', $currentrules) ? $rules : array_intersect($currentrules, $rules);
- $params['rules'] = implode(',', $rules);
- if ($params) {
- $this->model->create($params);
- $this->success();
- }
- $this->error();
- }
- return $this->view->fetch();
- }
- public function edit($ids = null)
- {
- if (!in_array($ids, $this->childrenGroupIds)) {
- $this->error(__('You have no permission'));
- }
- $row = $this->model->get(['id' => $ids]);
- if (!$row) {
- $this->error(__('No Results were found'));
- }
- if ($this->request->isPost()) {
- $this->token();
- $params = $this->request->post("row/a", [], 'strip_tags');
- if (!in_array($params['pid'], $this->childrenGroupIds)) {
- $this->error(__('The parent group exceeds permission limit'));
- }
- if (in_array($params['pid'], Tree::instance()->getChildrenIds($row->id, true))) {
- $this->error(__('The parent group can not be its own child or itself'));
- }
- $params['rules'] = explode(',', $params['rules']);
- $parentmodel = model("AuthGroup")->get($params['pid']);
- if (!$parentmodel) {
- $this->error(__('The parent group can not found'));
- }
- $parentrules = explode(',', $parentmodel->rules);
- $currentrules = $this->auth->getRuleIds();
- $rules = $params['rules'];
- $rules = in_array('*', $parentrules) ? $rules : array_intersect($parentrules, $rules);
- $rules = in_array('*', $currentrules) ? $rules : array_intersect($currentrules, $rules);
- $params['rules'] = implode(',', $rules);
- if ($params) {
- Db::startTrans();
- try {
- $row->save($params);
- $children_auth_groups = model("AuthGroup")->all(['id' => ['in', implode(',', (Tree::instance()->getChildrenIds($row->id)))]]);
- $childparams = [];
- foreach ($children_auth_groups as $key => $children_auth_group) {
- $childparams[$key]['id'] = $children_auth_group->id;
- $childparams[$key]['rules'] = implode(',', array_intersect(explode(',', $children_auth_group->rules), $rules));
- }
- model("AuthGroup")->saveAll($childparams);
- Db::commit();
- $this->success();
- } catch (Exception $e) {
- Db::rollback();
- $this->error($e->getMessage());
- }
- }
- $this->error();
- return;
- }
- $this->view->assign("row", $row);
- return $this->view->fetch();
- }
- public function del($ids = "")
- {
- if (!$this->request->isPost()) {
- $this->error(__("Invalid parameters"));
- }
- $ids = $ids ? $ids : $this->request->post("ids");
- if ($ids) {
- $ids = explode(',', $ids);
- $grouplist = $this->auth->getGroups();
- $group_ids = array_map(function ($group) {
- return $group['id'];
- }, $grouplist);
- $ids = array_diff($ids, $group_ids);
- $grouplist = $this->model->where('id', 'in', $ids)->select();
- $groupaccessmodel = model('AuthGroupAccess');
- foreach ($grouplist as $k => $v) {
- $groupone = $groupaccessmodel->get(['group_id' => $v['id']]);
- if ($groupone) {
- $ids = array_diff($ids, [$v['id']]);
- continue;
- }
- $groupone = $this->model->get(['pid' => $v['id']]);
- if ($groupone) {
- $ids = array_diff($ids, [$v['id']]);
- continue;
- }
- }
- if (!$ids) {
- $this->error(__('You can not delete group that contain child group and administrators'));
- }
- $count = $this->model->where('id', 'in', $ids)->delete();
- if ($count) {
- $this->success();
- }
- }
- $this->error();
- }
- public function multi($ids = "")
- {
- $this->error();
- }
- public function roletree()
- {
- $this->loadlang('auth/group');
- $model = model('AuthGroup');
- $id = $this->request->post("id");
- $pid = $this->request->post("pid");
- $parentGroupModel = $model->get($pid);
- $currentGroupModel = null;
- if ($id) {
- $currentGroupModel = $model->get($id);
- }
- if (($pid || $parentGroupModel) && (!$id || $currentGroupModel)) {
- $id = $id ? $id : null;
- $ruleList = collection(model('AuthRule')->order('weigh', 'desc')->order('id', 'asc')->select())->toArray();
- $parentRuleList = [];
- if (in_array('*', explode(',', $parentGroupModel->rules))) {
- $parentRuleList = $ruleList;
- } else {
- $parentRuleIds = explode(',', $parentGroupModel->rules);
- foreach ($ruleList as $k => $v) {
- if (in_array($v['id'], $parentRuleIds)) {
- $parentRuleList[] = $v;
- }
- }
- }
- $ruleTree = new Tree();
- $groupTree = new Tree();
- $ruleTree->init($parentRuleList);
- $groupTree->init(collection(model('AuthGroup')->where('id', 'in', $this->childrenGroupIds)->select())->toArray());
- $adminRuleIds = $this->auth->getRuleIds();
- $superadmin = $this->auth->isSuperAdmin();
- $currentRuleIds = $id ? explode(',', $currentGroupModel->rules) : [];
- if (!$id || !in_array($pid, $this->childrenGroupIds) || !in_array($pid, $groupTree->getChildrenIds($id, true))) {
- $parentRuleList = $ruleTree->getTreeList($ruleTree->getTreeArray(0), 'name');
- $hasChildrens = [];
- foreach ($parentRuleList as $k => $v) {
- if ($v['haschild']) {
- $hasChildrens[] = $v['id'];
- }
- }
- $parentRuleIds = array_map(function ($item) {
- return $item['id'];
- }, $parentRuleList);
- $nodeList = [];
- foreach ($parentRuleList as $k => $v) {
- if (!$superadmin && !in_array($v['id'], $adminRuleIds)) {
- continue;
- }
- if ($v['pid'] && !in_array($v['pid'], $parentRuleIds)) {
- continue;
- }
- $state = array('selected' => in_array($v['id'], $currentRuleIds) && !in_array($v['id'], $hasChildrens));
- $nodeList[] = array('id' => $v['id'], 'parent' => $v['pid'] ? $v['pid'] : '#', 'text' => __($v['title']), 'type' => 'menu', 'state' => $state);
- }
- $this->success('', null, $nodeList);
- } else {
- $this->error(__('Can not change the parent to child'));
- }
- } else {
- $this->error(__('Group not found'));
- }
- }
- }