Commit 70f50e24 authored by Junling Bu's avatar Junling Bu
Browse files

feat[litemall-admin]: 前端的权限校验逻辑从roles换成perms

parent b89d0c48
...@@ -4,20 +4,20 @@ import store from '@/store' ...@@ -4,20 +4,20 @@ import store from '@/store'
export default{ export default{
inserted(el, binding, vnode) { inserted(el, binding, vnode) {
const { value } = binding const { value } = binding
const roles = store.getters && store.getters.roles const perms = store.getters && store.getters.perms
if (value && value instanceof Array && value.length > 0) { if (value && value instanceof Array && value.length > 0) {
const permissionRoles = value const permissions = value
const hasPermission = roles.some(role => { const hasPermission = perms.some(perm => {
return permissionRoles.includes(role) return permissions.includes(perm)
}) })
if (!hasPermission) { if (!hasPermission) {
el.parentNode && el.parentNode.removeChild(el) el.parentNode && el.parentNode.removeChild(el)
} }
} else { } else {
throw new Error(`need roles! Like v-permission="['admin','editor']"`) throw new Error(`need perms! Like v-permission="['GET /aaa','POST /bbb']"`)
} }
} }
} }
...@@ -87,6 +87,7 @@ export default { ...@@ -87,6 +87,7 @@ export default {
}, },
permission: { permission: {
roles: 'Your roles', roles: 'Your roles',
perms: 'Your permissions',
switchRoles: 'Switch roles' switchRoles: 'Switch roles'
}, },
guide: { guide: {
......
...@@ -86,8 +86,9 @@ export default { ...@@ -86,8 +86,9 @@ export default {
github: 'Github 地址' github: 'Github 地址'
}, },
permission: { permission: {
roles: '你的权限', roles: '你的角色',
switchRoles: '切换权限' perms: '你的权限',
switchRoles: '切换角色'
}, },
guide: { guide: {
description: '引导页对于一些第一次进入项目的人很有用,你可以简单介绍下项目的功能。本 Demo 是基于', description: '引导页对于一些第一次进入项目的人很有用,你可以简单介绍下项目的功能。本 Demo 是基于',
......
...@@ -8,10 +8,10 @@ import { getToken } from '@/utils/auth' // getToken from cookie ...@@ -8,10 +8,10 @@ import { getToken } from '@/utils/auth' // getToken from cookie
NProgress.configure({ showSpinner: false })// NProgress Configuration NProgress.configure({ showSpinner: false })// NProgress Configuration
// permission judge function // permission judge function
function hasPermission(roles, permissionRoles) { function hasPermission(perms, permissions) {
if (roles.indexOf('admin') >= 0) return true // admin permission passed directly if (perms.indexOf('*') >= 0) return true // admin permission passed directly
if (!permissionRoles) return true if (!permissions) return true
return roles.some(role => permissionRoles.indexOf(role) >= 0) return perms.some(perm => permissions.indexOf(perm) >= 0)
} }
const whiteList = ['/login', '/auth-redirect']// no redirect whitelist const whiteList = ['/login', '/auth-redirect']// no redirect whitelist
...@@ -24,10 +24,10 @@ router.beforeEach((to, from, next) => { ...@@ -24,10 +24,10 @@ router.beforeEach((to, from, next) => {
next({ path: '/' }) next({ path: '/' })
NProgress.done() // if current page is dashboard will not trigger afterEach hook, so manually handle it NProgress.done() // if current page is dashboard will not trigger afterEach hook, so manually handle it
} else { } else {
if (store.getters.roles.length === 0) { // 判断当前用户是否已拉取完user_info信息 if (store.getters.perms.length === 0) { // 判断当前用户是否已拉取完user_info信息
store.dispatch('GetUserInfo').then(res => { // 拉取user_info store.dispatch('GetUserInfo').then(res => { // 拉取user_info
const roles = res.data.data.roles // note: roles must be a array! such as: ['editor','develop'] const perms = res.data.data.perms // note: perms must be a array! such as: ['GET /aaa','POST /bbb']
store.dispatch('GenerateRoutes', { roles }).then(() => { // 根据roles权限生成可访问的路由表 store.dispatch('GenerateRoutes', { perms }).then(() => { // 根据perms权限生成可访问的路由表
router.addRoutes(store.getters.addRouters) // 动态添加可访问路由表 router.addRoutes(store.getters.addRouters) // 动态添加可访问路由表
next({ ...to, replace: true }) // hack方法 确保addRoutes已完成 ,set the replace: true so the navigation will not leave a history record next({ ...to, replace: true }) // hack方法 确保addRoutes已完成 ,set the replace: true so the navigation will not leave a history record
}) })
...@@ -39,7 +39,7 @@ router.beforeEach((to, from, next) => { ...@@ -39,7 +39,7 @@ router.beforeEach((to, from, next) => {
}) })
} else { } else {
// 没有动态改变权限的需求可直接next() 删除下方权限判断 ↓ // 没有动态改变权限的需求可直接next() 删除下方权限判断 ↓
if (hasPermission(store.getters.roles, to.meta.roles)) { if (hasPermission(store.getters.perms, to.meta.perms)) {
next() next()
} else { } else {
next({ path: '/401', replace: true, query: { noGoBack: true }}) next({ path: '/401', replace: true, query: { noGoBack: true }})
......
...@@ -18,7 +18,7 @@ import Layout from '@/views/layout/Layout' ...@@ -18,7 +18,7 @@ import Layout from '@/views/layout/Layout'
* redirect: noredirect if `redirect:noredirect` will no redirect in the breadcrumb * redirect: noredirect if `redirect:noredirect` will no redirect in the breadcrumb
* name:'router-name' the name is used by <keep-alive> (must set!!!) * name:'router-name' the name is used by <keep-alive> (must set!!!)
* meta : { * meta : {
roles: ['admin','editor'] will control the page roles (you can set multiple roles) perms: ['GET /aaa','POST /bbb'] will control the page perms (you can set multiple perms)
title: 'title' the name show in submenu and breadcrumb (recommend set) title: 'title' the name show in submenu and breadcrumb (recommend set)
icon: 'svg-name' the icon show in the sidebar, icon: 'svg-name' the icon show in the sidebar,
noCache: true if true ,the page will no be cached(default is false) noCache: true if true ,the page will no be cached(default is false)
......
...@@ -11,6 +11,7 @@ const getters = { ...@@ -11,6 +11,7 @@ const getters = {
introduction: state => state.user.introduction, introduction: state => state.user.introduction,
status: state => state.user.status, status: state => state.user.status,
roles: state => state.user.roles, roles: state => state.user.roles,
perms: state => state.user.perms,
setting: state => state.user.setting, setting: state => state.user.setting,
permission_routers: state => state.permission.routers, permission_routers: state => state.permission.routers,
addRouters: state => state.permission.addRouters addRouters: state => state.permission.addRouters
......
import { asyncRouterMap, constantRouterMap } from '@/router' import { asyncRouterMap, constantRouterMap } from '@/router'
/** /**
* 通过meta.role判断是否与当前用户权限匹配 * 通过meta.perms判断是否与当前用户权限匹配
* @param roles * @param perms
* @param route * @param route
*/ */
function hasPermission(roles, route) { function hasPermission(perms, route) {
if (route.meta && route.meta.roles) { if (route.meta && route.meta.perms) {
return roles.some(role => route.meta.roles.includes(role)) return perms.some(perm => route.meta.perms.includes(perm))
} else { } else {
return true return true
} }
...@@ -16,16 +16,16 @@ function hasPermission(roles, route) { ...@@ -16,16 +16,16 @@ function hasPermission(roles, route) {
/** /**
* 递归过滤异步路由表,返回符合用户角色权限的路由表 * 递归过滤异步路由表,返回符合用户角色权限的路由表
* @param routes asyncRouterMap * @param routes asyncRouterMap
* @param roles * @param perms
*/ */
function filterAsyncRouter(routes, roles) { function filterAsyncRouter(routes, perms) {
const res = [] const res = []
routes.forEach(route => { routes.forEach(route => {
const tmp = { ...route } const tmp = { ...route }
if (hasPermission(roles, tmp)) { if (hasPermission(perms, tmp)) {
if (tmp.children) { if (tmp.children) {
tmp.children = filterAsyncRouter(tmp.children, roles) tmp.children = filterAsyncRouter(tmp.children, perms)
} }
res.push(tmp) res.push(tmp)
} }
...@@ -48,12 +48,12 @@ const permission = { ...@@ -48,12 +48,12 @@ const permission = {
actions: { actions: {
GenerateRoutes({ commit }, data) { GenerateRoutes({ commit }, data) {
return new Promise(resolve => { return new Promise(resolve => {
const { roles } = data const { perms } = data
let accessedRouters let accessedRouters
if (roles.includes('admin')) { if (perms.includes('*')) {
accessedRouters = asyncRouterMap accessedRouters = asyncRouterMap
} else { } else {
accessedRouters = filterAsyncRouter(asyncRouterMap, roles) accessedRouters = filterAsyncRouter(asyncRouterMap, perms)
} }
commit('SET_ROUTERS', accessedRouters) commit('SET_ROUTERS', accessedRouters)
resolve() resolve()
......
...@@ -11,6 +11,7 @@ const user = { ...@@ -11,6 +11,7 @@ const user = {
avatar: '', avatar: '',
introduction: '', introduction: '',
roles: [], roles: [],
perms: [],
setting: { setting: {
articlePlatform: [] articlePlatform: []
} }
...@@ -40,6 +41,9 @@ const user = { ...@@ -40,6 +41,9 @@ const user = {
}, },
SET_ROLES: (state, roles) => { SET_ROLES: (state, roles) => {
state.roles = roles state.roles = roles
},
SET_PERMS: (state, perms) => {
state.perms = perms
} }
}, },
...@@ -65,12 +69,13 @@ const user = { ...@@ -65,12 +69,13 @@ const user = {
getUserInfo(state.token).then(response => { getUserInfo(state.token).then(response => {
const data = response.data.data const data = response.data.data
if (data.roles && data.roles.length > 0) { // 验证返回的roles是否是一个非空数组 if (data.perms && data.perms.length > 0) { // 验证返回的perms是否是一个非空数组
commit('SET_ROLES', data.roles) commit('SET_PERMS', data.perms)
} else { } else {
reject('getInfo: roles must be a non-null array !') reject('getInfo: perms must be a non-null array !')
} }
commit('SET_ROLES', data.roles)
commit('SET_NAME', data.name) commit('SET_NAME', data.name)
commit('SET_AVATAR', data.avatar) commit('SET_AVATAR', data.avatar)
commit('SET_INTRODUCTION', data.introduction) commit('SET_INTRODUCTION', data.introduction)
...@@ -101,6 +106,7 @@ const user = { ...@@ -101,6 +106,7 @@ const user = {
logout(state.token).then(() => { logout(state.token).then(() => {
commit('SET_TOKEN', '') commit('SET_TOKEN', '')
commit('SET_ROLES', []) commit('SET_ROLES', [])
commit('SET_PERMS', [])
removeToken() removeToken()
resolve() resolve()
}).catch(error => { }).catch(error => {
...@@ -126,6 +132,7 @@ const user = { ...@@ -126,6 +132,7 @@ const user = {
getUserInfo(role).then(response => { getUserInfo(role).then(response => {
const data = response.data const data = response.data
commit('SET_ROLES', data.roles) commit('SET_ROLES', data.roles)
commit('SET_PERMS', data.perms)
commit('SET_NAME', data.name) commit('SET_NAME', data.name)
commit('SET_AVATAR', data.avatar) commit('SET_AVATAR', data.avatar)
commit('SET_INTRODUCTION', data.introduction) commit('SET_INTRODUCTION', data.introduction)
......
...@@ -7,11 +7,11 @@ import store from '@/store' ...@@ -7,11 +7,11 @@ import store from '@/store'
*/ */
export default function checkPermission(value) { export default function checkPermission(value) {
if (value && value instanceof Array && value.length > 0) { if (value && value instanceof Array && value.length > 0) {
const roles = store.getters && store.getters.roles const perms = store.getters && store.getters.perms
const permissionRoles = value const permissions = value
const hasPermission = roles.some(role => { const hasPermission = perms.some(perm => {
return permissionRoles.includes(role) return permissions.includes(perm)
}) })
if (!hasPermission) { if (!hasPermission) {
...@@ -19,7 +19,7 @@ export default function checkPermission(value) { ...@@ -19,7 +19,7 @@ export default function checkPermission(value) {
} }
return true return true
} else { } else {
console.error(`need roles! Like v-permission="['admin','editor']"`) console.error(`need perms! Like v-permission="['GET /aaa','POST /bbb']"`)
return false return false
} }
} }
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment