RolesService.java 5.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159
  1. /*
  2. * Copyright [2020] [MaxKey of copyright http://www.maxkey.top]
  3. *
  4. * Licensed under the Apache License, Version 2.0 (the "License");
  5. * you may not use this file except in compliance with the License.
  6. * You may obtain a copy of the License at
  7. *
  8. * http://www.apache.org/licenses/LICENSE-2.0
  9. *
  10. * Unless required by applicable law or agreed to in writing, software
  11. * distributed under the License is distributed on an "AS IS" BASIS,
  12. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. * See the License for the specific language governing permissions and
  14. * limitations under the License.
  15. */
  16. package org.maxkey.persistence.service;
  17. import java.io.Serializable;
  18. import java.sql.Types;
  19. import java.time.LocalDateTime;
  20. import java.time.LocalTime;
  21. import java.util.List;
  22. import org.apache.mybatis.jpa.persistence.JpaBaseService;
  23. import org.maxkey.constants.ConstsStatus;
  24. import org.maxkey.entity.Institutions;
  25. import org.maxkey.entity.Roles;
  26. import org.maxkey.persistence.mapper.RolesMapper;
  27. import org.maxkey.util.StringUtils;
  28. import org.slf4j.Logger;
  29. import org.slf4j.LoggerFactory;
  30. import org.springframework.beans.factory.annotation.Autowired;
  31. import org.springframework.stereotype.Repository;
  32. import com.fasterxml.jackson.annotation.JsonIgnore;
  33. @Repository
  34. public class RolesService extends JpaBaseService<Roles> implements Serializable {
  35. /**
  36. *
  37. */
  38. private static final long serialVersionUID = -4156671926199393550L;
  39. final static Logger _logger = LoggerFactory.getLogger(RolesService.class);
  40. @JsonIgnore
  41. @Autowired
  42. RoleMemberService roleMemberService;
  43. @Autowired
  44. InstitutionsService institutionsService;
  45. public RolesService() {
  46. super(RolesMapper.class);
  47. }
  48. /* (non-Javadoc)
  49. * @see com.connsec.db.service.BaseService#getMapper()
  50. */
  51. @Override
  52. public RolesMapper getMapper() {
  53. return (RolesMapper)super.getMapper();
  54. }
  55. public List<Roles> queryDynamicRoles(Roles groups){
  56. return this.getMapper().queryDynamicRoles(groups);
  57. }
  58. public boolean deleteById(String groupId) {
  59. this.remove(groupId);
  60. roleMemberService.deleteByRoleId(groupId);
  61. return true;
  62. }
  63. public List<Roles> queryRolesByUserId(String userId){
  64. return this.getMapper().queryRolesByUserId(userId);
  65. }
  66. public void refreshDynamicRoles(Roles dynamicRole){
  67. if(dynamicRole.getDynamic().equals(ConstsStatus.ACTIVE+"")) {
  68. boolean isDynamicTimeSupport = false;
  69. boolean isBetweenEffectiveTime = false;
  70. if(StringUtils.isNotBlank(dynamicRole.getResumeTime())
  71. &&StringUtils.isNotBlank(dynamicRole.getSuspendTime())
  72. &&!dynamicRole.getSuspendTime().equals("00:00")) {
  73. LocalTime currentTime = LocalDateTime.now().toLocalTime();
  74. LocalTime resumeTime = LocalTime.parse(dynamicRole.getResumeTime());
  75. LocalTime suspendTime = LocalTime.parse(dynamicRole.getSuspendTime());
  76. _logger.info("currentTime: " + currentTime
  77. + " , resumeTime : " + resumeTime
  78. + " , suspendTime: " + suspendTime);
  79. isDynamicTimeSupport = true;
  80. if(resumeTime.isBefore(currentTime) && currentTime.isBefore(suspendTime)) {
  81. isBetweenEffectiveTime = true;
  82. }
  83. }
  84. if(StringUtils.isNotBlank(dynamicRole.getOrgIdsList())) {
  85. String []orgIds = dynamicRole.getOrgIdsList().split(",");
  86. StringBuffer orgIdFilters = new StringBuffer();
  87. for(String orgId : orgIds) {
  88. if(StringUtils.isNotBlank(orgId)) {
  89. if(orgIdFilters.length() > 0) {
  90. orgIdFilters.append(",");
  91. }
  92. orgIdFilters.append("'").append(orgId).append("'");
  93. }
  94. }
  95. if(orgIdFilters.length() > 0) {
  96. dynamicRole.setOrgIdsList(orgIdFilters.toString());
  97. }
  98. }
  99. String filters = dynamicRole.getFilters();
  100. if(StringUtils.isNotBlank(filters)) {
  101. if(StringUtils.filtersSQLInjection(filters.toLowerCase())) {
  102. _logger.info("filters include SQL Injection Attack Risk.");
  103. return;
  104. }
  105. filters = filters.replace("&", " AND ");
  106. filters = filters.replace("|", " OR ");
  107. dynamicRole.setFilters(filters);
  108. }
  109. if(isDynamicTimeSupport) {
  110. if(isBetweenEffectiveTime) {
  111. roleMemberService.deleteDynamicRoleMember(dynamicRole);
  112. roleMemberService.addDynamicRoleMember(dynamicRole);
  113. }else {
  114. roleMemberService.deleteDynamicRoleMember(dynamicRole);
  115. }
  116. }else{
  117. roleMemberService.deleteDynamicRoleMember(dynamicRole);
  118. roleMemberService.addDynamicRoleMember(dynamicRole);
  119. }
  120. }
  121. }
  122. public void refreshAllDynamicRoles(){
  123. List<Institutions> instList =
  124. institutionsService.find("where status = ? ", new Object[]{ConstsStatus.ACTIVE}, new int[]{Types.INTEGER});
  125. for(Institutions inst : instList) {
  126. Roles role = new Roles();
  127. role.setInstId(inst.getId());
  128. List<Roles> rolesList = queryDynamicRoles(role);
  129. for(Roles r : rolesList) {
  130. _logger.debug("role " + rolesList);
  131. refreshDynamicRoles(r);
  132. }
  133. }
  134. }
  135. }