Example #1
0
        /// <summary>
        /// 检查用户和系统键值
        /// </summary>
        /// <param name="userId"></param>
        /// <param name="pkey"></param>
        /// <returns></returns>
        public bool CheckUserAndPmsKey(string userId, Enums.PermissionSysKey pkey, string websiteOwner = "")
        {
            if (websiteOwner == "")
            {
                websiteOwner = WebsiteOwner;
            }
            UserInfo userInfo;

            if (string.IsNullOrEmpty(websiteOwner))
            {
                websiteOwner = WebsiteOwner;
            }
            if (userId == "jubit")
            {
                //userInfo = Get<UserInfo>(string.Format(" UserID='{0}' ", userId));
                return(true);
            }
            else
            {
                userInfo = Get <UserInfo>(string.Format(" UserID='{0}' AND WebsiteOwner='{1}' ", userId, websiteOwner));
            }
            if (userInfo == null)
            {
                return(false);
            }

            var key = CommonPlatform.Helper.EnumStringHelper.ToString(pkey);
            //先查出对应权限,不存在返回false
            var pms = GetPmsByPmsKey(key);

            if (pms == null)
            {
                return(false);
            }
            //站点权限禁用时返回false
            if (CheckWebsiteOwnerDisabled(websiteOwner, pms.PermissionID))
            {
                return(false);
            }

            //判断是否是配置的管理员
            if (userInfo.PermissionGroupID.HasValue)
            {
                ZentCloud.BLLPermission.Model.PermissionGroupInfo perGroupInfo = Get <ZentCloud.BLLPermission.Model.PermissionGroupInfo>(string.Format(" GroupID={0}", userInfo.PermissionGroupID));
                if (perGroupInfo != null && perGroupInfo.GroupType == 3)//管理员权限跟站点所有者一致
                {
                    userId = userInfo.WebsiteOwner;
                }
            }
            bool result = CheckUserAndPms(userId, pms.PermissionID);

            if (!result && userId == websiteOwner)
            {
                BLLPermission           bllPer      = new BLLPermission();
                List <PermissionColumn> column_list = bllPer.GetListByKey <PermissionColumn>("WebsiteOwner", websiteOwner);
                if (column_list.Count > 0)
                {
                    string columnIdStrs = MyStringHelper.ListToStr(column_list.Select(p => p.PermissionColumnID).ToList(), "'", ",");
                    List <PermissionRelationInfo> column_per_list = bllPer.GetMultPermissionRelationList(columnIdStrs, 2);
                    result = column_per_list.Exists(p => p.PermissionID == pms.PermissionID);
                }
            }
            return(result);
        }
Example #2
0
        /// <summary>
        /// 获取用户所有权限ID
        /// </summary>
        /// <param name="userId">用户ID</param>
        /// <returns>所有权限ID集合</returns>
        public List <long> GetUserAllPmsID(string userId)
        {
            UserInfo userInfo = Get <UserInfo>(string.Format(" UserID='{0}'", userId));

            if (userInfo == null)
            {
                return(new List <long>());
            }
            if (userInfo.PermissionGroupID.HasValue)
            {
                ZentCloud.BLLPermission.Model.PermissionGroupInfo perGroupInfo = Get <ZentCloud.BLLPermission.Model.PermissionGroupInfo>(string.Format(" GroupID={0}", userInfo.PermissionGroupID));
                if (perGroupInfo != null && perGroupInfo.GroupType == 3)//管理员权限跟站点所有者一致
                {
                    userId = userInfo.WebsiteOwner;
                }
            }
            List <long> result = new List <long>();

            //获取 用户-权限 列表
            result.AddRange(GetList <Model.PermissionRelationInfo>(
                                string.Format(" RelationID = '{0}' and RelationType = 1 ", userId)
                                ).Select(p => p.PermissionID));

            //获取 组-权限 列表
            //long groupID = GetPmsGroupIDByUser(userID);

            //if (groupID > 0)
            //{
            //    result.AddRange(GetList<Model.PermissionRelationInfo>(
            //        string.Format(" RelationID = '{0}' and RelationType = 0 ", groupID.ToString())
            //    ).Select(p => p.PermissionID));
            //}

            foreach (long item in GetPmsGroupIDByUser(userId))
            {
                result.AddRange(GetList <Model.PermissionRelationInfo>(
                                    string.Format(" RelationID = '{0}' and RelationType = 0 ", item.ToString())
                                    ).Select(p => p.PermissionID));

                //检查栏目内权限
                foreach (PermissionRelationInfo citem in BaseCacheGetPermissionRelationList(3, item.ToString(), null))
                {
                    List <PermissionRelationInfo> list = BaseCacheGetPermissionRelationList(2, citem.PermissionID.ToString(), null);
                    if (list.Count > 0)
                    {
                        result.AddRange(list.Select(p => p.PermissionID));
                    }
                }
            }

            if (userId == userInfo.WebsiteOwner)
            {
                List <PermissionColumn> column_list = GetListByKey <PermissionColumn>("WebsiteOwner", userId);
                if (column_list.Count > 0)
                {
                    List <long> columnIdList  = column_list.Select(p => p.PermissionColumnID).ToList();
                    List <long> columnIdList1 = column_list.Where(p => p.PermissionColumnBaseID > 0).Select(p => p.PermissionColumnBaseID).ToList();
                    columnIdList.AddRange(columnIdList1);
                    string columnIdStrs = MyStringHelper.ListToStr(columnIdList, "'", ",");

                    BLLPermission bllPer = new BLLPermission();
                    List <PermissionRelationInfo> columnPerList = bllPer.GetMultPermissionRelationList(columnIdStrs, 2);
                    if (columnPerList.Count > 0)
                    {
                        result.AddRange(columnPerList.Select(p => p.PermissionID));
                    }
                }
            }
            return(result.Distinct().ToList());
        }