1
0

BookMemberController.go 5.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173
  1. package controllers
  2. import (
  3. "errors"
  4. "github.com/beego/beego/v2/client/orm"
  5. "github.com/beego/beego/v2/core/logs"
  6. "github.com/beego/i18n"
  7. "github.com/mindoc-org/mindoc/conf"
  8. "github.com/mindoc-org/mindoc/models"
  9. )
  10. type BookMemberController struct {
  11. BaseController
  12. }
  13. // AddMember 参加参与用户.
  14. func (c *BookMemberController) AddMember() {
  15. identify := c.GetString("identify")
  16. account, _ := c.GetInt("account")
  17. roleId, _ := c.GetInt("role_id", 3)
  18. logs.Info(account)
  19. if identify == "" || account <= 0 {
  20. c.JsonResult(6001, i18n.Tr(c.Lang, "message.param_error"))
  21. }
  22. book, err := c.IsPermission()
  23. if err != nil {
  24. c.JsonResult(6001, err.Error())
  25. }
  26. member := models.NewMember()
  27. if _, err := member.Find(account); err != nil {
  28. c.JsonResult(404, i18n.Tr(c.Lang, "message.user_not_existed"))
  29. }
  30. if member.Status == 1 {
  31. c.JsonResult(6003, i18n.Tr(c.Lang, "message.user_disable"))
  32. }
  33. if _, err := models.NewRelationship().FindForRoleId(book.BookId, member.MemberId); err == nil {
  34. c.JsonResult(6003, i18n.Tr(c.Lang, "message.user_exist_in_proj"))
  35. }
  36. //如果是只读用户,只能设置为观察者
  37. if member.Role == conf.MemberReaderRole && roleId != int(conf.BookObserver) {
  38. c.JsonResult(6003, i18n.Tr(c.Lang, "message.readusr_only_observer"))
  39. }
  40. relationship := models.NewRelationship()
  41. relationship.BookId = book.BookId
  42. relationship.MemberId = member.MemberId
  43. relationship.RoleId = conf.BookRole(roleId)
  44. if err := relationship.Insert(); err == nil {
  45. memberRelationshipResult := models.NewMemberRelationshipResult().FromMember(member)
  46. memberRelationshipResult.RoleId = conf.BookRole(roleId)
  47. memberRelationshipResult.RelationshipId = relationship.RelationshipId
  48. memberRelationshipResult.BookId = book.BookId
  49. memberRelationshipResult.ResolveRoleName(c.Lang)
  50. c.JsonResult(0, "ok", memberRelationshipResult)
  51. }
  52. c.JsonResult(500, err.Error())
  53. }
  54. // 变更指定用户在指定项目中的权限
  55. func (c *BookMemberController) ChangeRole() {
  56. identify := c.GetString("identify")
  57. memberId, _ := c.GetInt("member_id", 0)
  58. role, _ := c.GetInt("role_id", 0)
  59. if identify == "" || memberId <= 0 {
  60. c.JsonResult(6001, i18n.Tr(c.Lang, "message.param_error"))
  61. }
  62. if memberId == c.Member.MemberId {
  63. c.JsonResult(6006, i18n.Tr(c.Lang, "message.cannot_change_own_priv"))
  64. }
  65. book, err := models.NewBookResult().FindByIdentify(identify, c.Member.MemberId)
  66. if err != nil {
  67. if err == models.ErrPermissionDenied {
  68. c.JsonResult(403, i18n.Tr(c.Lang, "message.no_permission"))
  69. }
  70. if err == orm.ErrNoRows {
  71. c.JsonResult(404, i18n.Tr(c.Lang, "message.item_not_exist"))
  72. }
  73. c.JsonResult(6002, err.Error())
  74. }
  75. if book.RoleId != 0 && book.RoleId != 1 {
  76. c.JsonResult(403, i18n.Tr(c.Lang, "message.no_permission"))
  77. }
  78. member := models.NewMember()
  79. if _, err := member.Find(memberId); err != nil {
  80. c.JsonResult(6003, i18n.Tr(c.Lang, "message.user_not_existed"))
  81. }
  82. if member.Status == 1 {
  83. c.JsonResult(6004, i18n.Tr(c.Lang, "message.user_disable"))
  84. }
  85. //如果是只读用户,只能设置为观察者
  86. if member.Role == conf.MemberReaderRole && role != int(conf.BookObserver) {
  87. c.JsonResult(6003, i18n.Tr(c.Lang, "message.readusr_only_observer"))
  88. }
  89. relationship, err := models.NewRelationship().UpdateRoleId(book.BookId, memberId, conf.BookRole(role))
  90. if err != nil {
  91. logs.Error("变更用户在项目中的权限 => ", err)
  92. c.JsonResult(6005, err.Error())
  93. }
  94. memberRelationshipResult := models.NewMemberRelationshipResult().FromMember(member)
  95. memberRelationshipResult.RoleId = relationship.RoleId
  96. memberRelationshipResult.RelationshipId = relationship.RelationshipId
  97. memberRelationshipResult.BookId = book.BookId
  98. memberRelationshipResult.ResolveRoleName(c.Lang)
  99. c.JsonResult(0, "ok", memberRelationshipResult)
  100. }
  101. // 删除参与者.
  102. func (c *BookMemberController) RemoveMember() {
  103. identify := c.GetString("identify")
  104. member_id, _ := c.GetInt("member_id", 0)
  105. if identify == "" || member_id <= 0 {
  106. c.JsonResult(6001, i18n.Tr(c.Lang, "message.param_error"))
  107. }
  108. if member_id == c.Member.MemberId {
  109. c.JsonResult(6006, i18n.Tr(c.Lang, "message.cannot_delete_self"))
  110. }
  111. book, err := models.NewBookResult().FindByIdentify(identify, c.Member.MemberId)
  112. if err != nil {
  113. if err == models.ErrPermissionDenied {
  114. c.JsonResult(403, i18n.Tr(c.Lang, "message.no_permission"))
  115. }
  116. if err == orm.ErrNoRows {
  117. c.JsonResult(404, i18n.Tr(c.Lang, "message.item_not_exist"))
  118. }
  119. c.JsonResult(6002, err.Error())
  120. }
  121. //如果不是创始人也不是管理员则不能操作
  122. if book.RoleId != conf.BookFounder && book.RoleId != conf.BookAdmin {
  123. c.JsonResult(403, i18n.Tr(c.Lang, "message.no_permission"))
  124. }
  125. err = models.NewRelationship().DeleteByBookIdAndMemberId(book.BookId, member_id)
  126. if err != nil {
  127. c.JsonResult(6007, err.Error())
  128. }
  129. c.JsonResult(0, "ok")
  130. }
  131. func (c *BookMemberController) IsPermission() (*models.BookResult, error) {
  132. identify := c.GetString("identify")
  133. book, err := models.NewBookResult().FindByIdentify(identify, c.Member.MemberId)
  134. if err != nil {
  135. if err == models.ErrPermissionDenied {
  136. return book, errors.New(i18n.Tr(c.Lang, "message.no_permission"))
  137. }
  138. if err == orm.ErrNoRows {
  139. return book, errors.New(i18n.Tr(c.Lang, "message.item_not_exist"))
  140. }
  141. return book, err
  142. }
  143. if book.RoleId != conf.BookAdmin && book.RoleId != conf.BookFounder {
  144. return book, errors.New(i18n.Tr(c.Lang, "message.no_permission"))
  145. }
  146. return book, nil
  147. }