Files
Yi.Admin/Yi.Abp.Net8/module/rbac/Yi.Framework.Rbac.Domain/Authorization/PermissionGlobalAttribute.cs

48 lines
1.8 KiB
C#
Raw Normal View History

2023-12-11 09:55:12 +08:00
using Microsoft.AspNetCore.Http.HttpResults;
using Microsoft.AspNetCore.Mvc;
2023-04-18 20:29:53 +08:00
using Microsoft.AspNetCore.Mvc.Controllers;
using Microsoft.AspNetCore.Mvc.Filters;
2023-12-11 09:55:12 +08:00
using Volo.Abp;
using Volo.Abp.DependencyInjection;
using Volo.Abp.Http;
using Yi.Framework.Core.Helper;
using static System.Runtime.InteropServices.JavaScript.JSType;
2023-04-18 20:29:53 +08:00
2023-12-11 09:55:12 +08:00
namespace Yi.Framework.Rbac.Domain.Authorization
2023-04-18 20:29:53 +08:00
{
2023-12-11 09:55:12 +08:00
internal class PermissionGlobalAttribute : ActionFilterAttribute, ITransientDependency
2023-04-18 20:29:53 +08:00
{
private readonly IPermissionHandler _permissionHandler;
public PermissionGlobalAttribute(IPermissionHandler permissionHandler)
{
_permissionHandler = permissionHandler;
}
public override void OnActionExecuting(ActionExecutingContext context)
{
if (context.ActionDescriptor is not ControllerActionDescriptor controllerActionDescriptor) return;
PermissionAttribute? perAttribute = controllerActionDescriptor.MethodInfo.GetCustomAttributes(inherit: true)
.FirstOrDefault(a => a.GetType().Equals(typeof(PermissionAttribute))) as PermissionAttribute;
//空对象直接返回
if (perAttribute is null) return;
var result = _permissionHandler.IsPass(perAttribute.Code);
if (!result)
{
2023-12-11 09:55:12 +08:00
var model = new RemoteServiceErrorInfo()
{
Code = "403",
Message = $"您无权限访问,请联系管理员申请",
Details = $"您无权限访问该接口-{context.HttpContext.Request.Path.Value}",
};
var content = new ObjectResult(new { error = model })
{
StatusCode = 403
};
context.Result = content;
return;
2023-04-18 20:29:53 +08:00
}
}
}
}