PowerController.class.php 9.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461
  1. <?php
  2. namespace Admin\Controller;
  3. /**
  4. * 权限管理
  5. * @author Devil
  6. * @blog http://gong.gg/
  7. * @version 0.0.1
  8. * @datetime 2016-12-01T21:51:08+0800
  9. */
  10. class PowerController extends CommonController
  11. {
  12. /**
  13. * [_initialize 前置操作-继承公共前置方法]
  14. * @author Devil
  15. * @blog http://gong.gg/
  16. * @version 0.0.1
  17. * @datetime 2016-12-03T12:39:08+0800
  18. */
  19. public function _initialize()
  20. {
  21. // 调用父类前置方法
  22. parent::_initialize();
  23. // 登录校验
  24. $this->Is_Login();
  25. // 权限校验
  26. $this->Is_Power();
  27. }
  28. /**
  29. * [Index 权限组列表]
  30. * @author Devil
  31. * @blog http://gong.gg/
  32. * @version 0.0.1
  33. * @datetime 2016-12-06T21:31:53+0800
  34. */
  35. public function Index()
  36. {
  37. // 获取权限列表
  38. $m = M('Power');
  39. $field = array('id', 'pid', 'name', 'control', 'action', 'sort', 'is_show', 'icon');
  40. $list = $m->field($field)->where(array('pid'=>0))->order('sort')->select();
  41. if(!empty($list))
  42. {
  43. foreach($list as $k=>$v)
  44. {
  45. $item = $m->field($field)->where(array('pid'=>$v['id']))->order('sort')->select();
  46. if(!empty($item))
  47. {
  48. $list[$k]['item'] = $item;
  49. }
  50. }
  51. }
  52. $this->assign('common_is_show_list', L('common_is_show_list'));
  53. $this->assign('list', $list);
  54. $this->display('Index');
  55. }
  56. /**
  57. * [PowerSave 权限添加/编辑]
  58. * @author Devil
  59. * @blog http://gong.gg/
  60. * @version 0.0.1
  61. * @datetime 2016-12-13T21:41:03+0800
  62. */
  63. public function PowerSave()
  64. {
  65. // 是否ajax请求
  66. if(!IS_AJAX)
  67. {
  68. $this->error(L('common_unauthorized_access'));
  69. }
  70. // id为空则表示是新增
  71. $m = D('Power');
  72. // 公共额外数据处理
  73. $m->sort = intval(I('sort'));
  74. // 添加
  75. if(empty($_POST['id']))
  76. {
  77. if($m->create($_POST, 1))
  78. {
  79. // 额外数据处理
  80. $m->add_time = time();
  81. $m->name = I('name');
  82. $m->control = I('control');
  83. $m->action = I('action');
  84. $m->icon = I('icon');
  85. // 写入数据库
  86. if($m->add())
  87. {
  88. // 清除用户权限数据
  89. PowerCacheDelete();
  90. $this->ajaxReturn(L('common_operation_add_success'));
  91. } else {
  92. $this->ajaxReturn(L('common_operation_add_error'), -100);
  93. }
  94. }
  95. } else {
  96. // 编辑
  97. if($m->create($_POST, 2))
  98. {
  99. // 额外数据处理
  100. $m->name = I('name');
  101. $m->control = I('control');
  102. $m->action = I('action');
  103. $m->icon = I('icon');
  104. // 移除 id
  105. unset($m->id);
  106. // 更新数据库
  107. if($m->where(array('id'=>I('id')))->save())
  108. {
  109. // 清除用户权限数据
  110. PowerCacheDelete();
  111. $this->ajaxReturn(L('common_operation_edit_success'));
  112. } else {
  113. $this->ajaxReturn(L('common_operation_edit_error'), -100);
  114. }
  115. }
  116. }
  117. $this->ajaxReturn($m->getError(), -1);
  118. }
  119. /**
  120. * [PowerDelete 权限删除]
  121. * @author Devil
  122. * @blog http://gong.gg/
  123. * @version 0.0.1
  124. * @datetime 2016-12-14T21:40:29+0800
  125. */
  126. public function PowerDelete()
  127. {
  128. if(!IS_AJAX)
  129. {
  130. $this->error(L('common_unauthorized_access'));
  131. }
  132. $m = D('Power');
  133. if($m->create($_POST, 5))
  134. {
  135. if($m->delete(I('id')))
  136. {
  137. // 清除用户权限数据
  138. PowerCacheDelete();
  139. $this->ajaxReturn(L('common_operation_delete_success'));
  140. } else {
  141. $this->ajaxReturn(L('common_operation_delete_error'), -100);
  142. }
  143. } else {
  144. $this->ajaxReturn($m->getError(), -1);
  145. }
  146. }
  147. /**
  148. * [Role 角色组列表]
  149. * @author Devil
  150. * @blog http://gong.gg/
  151. * @version 0.0.1
  152. * @datetime 2016-12-14T21:37:02+0800
  153. */
  154. public function Role()
  155. {
  156. $m = M('Role');
  157. $list = $m->field(array('id', 'name', 'is_enable', 'add_time'))->select();
  158. if(!empty($list))
  159. {
  160. foreach($list as $k=>$v)
  161. {
  162. // 关联查询权限和角色数据
  163. if($v['id'] == 1)
  164. {
  165. $list[$k]['item'] = M('Power')->select();
  166. } else {
  167. $list[$k]['item'] = $m->alias('r')->join('__ROLE_POWER__ AS rp ON rp.role_id = r.id')->join('__POWER__ AS p ON rp.power_id = p.id')->where(array('r.id'=>$v['id']))->field(array('p.id', 'p.name'))->select();
  168. }
  169. }
  170. }
  171. $this->assign('list', $list);
  172. $this->display('Role');
  173. }
  174. /**
  175. * [RoleSaveInfo 角色组添加/编辑页面]
  176. * @author Devil
  177. * @blog http://gong.gg/
  178. * @version 0.0.1
  179. * @datetime 2016-12-14T21:37:02+0800
  180. */
  181. public function RoleSaveInfo()
  182. {
  183. // 角色组
  184. $role = M('Role')->field(array('id', 'name', 'is_enable'))->find(I('id'));
  185. $role_id = isset($role['id']) ? $role['id'] : $this->admin['role_id'];
  186. $power = array();
  187. if($role_id > 0)
  188. {
  189. // 权限关联数据
  190. $action = empty($_REQUEST['id']) ? array() : M('RolePower')->where(array('role_id'=>$role_id))->getField('power_id', true);
  191. // 权限列表
  192. $m = M('Power');
  193. $power_field = array('id', 'name', 'is_show');
  194. $power = $m->field($power_field)->where(array('pid'=>0))->order('sort')->select();
  195. if(!empty($power))
  196. {
  197. foreach($power as $k=>$v)
  198. {
  199. // 是否有权限
  200. $power[$k]['is_power'] = in_array($v['id'], $action) ? 'ok' : 'no';
  201. // 获取子权限
  202. $item = $m->field($power_field)->where(array('pid'=>$v['id']))->order('sort')->select();
  203. if(!empty($item))
  204. {
  205. foreach($item as $ks=>$vs)
  206. {
  207. $item[$ks]['is_power'] = in_array($vs['id'], $action) ? 'ok' : 'no';
  208. }
  209. $power[$k]['item'] = $item;
  210. }
  211. }
  212. }
  213. }
  214. $this->assign('common_is_enable_list', L('common_is_enable_list'));
  215. $this->assign('data', $role);
  216. $this->assign('power', $power);
  217. $this->display('RoleSaveInfo');
  218. }
  219. /**
  220. * [RoleSave 角色组添加/编辑]
  221. * @author Devil
  222. * @blog http://gong.gg/
  223. * @version 0.0.1
  224. * @datetime 2016-12-14T21:37:02+0800
  225. */
  226. public function RoleSave()
  227. {
  228. // 是否ajax请求
  229. if(!IS_AJAX)
  230. {
  231. $this->error(L('common_unauthorized_access'));
  232. }
  233. // 添加
  234. if(empty($_POST['id']))
  235. {
  236. $this->RoleAdd();
  237. // 编辑
  238. } else {
  239. if(I('id') == 1)
  240. {
  241. $this->error(L('common_do_not_operate'), -10);
  242. } else {
  243. $this->RoleEdit();
  244. }
  245. }
  246. }
  247. /**
  248. * [RoleAdd 角色添加]
  249. * @author Devil
  250. * @blog http://gong.gg/
  251. * @version 0.0.1
  252. * @datetime 2016-12-18T16:20:59+0800
  253. */
  254. private function RoleAdd()
  255. {
  256. // 角色对象
  257. $r = M('Role');
  258. // 数据自动校验
  259. if($r->create($_POST, 1))
  260. {
  261. // 开启事务
  262. $r->startTrans();
  263. // 角色添加
  264. $role_data = array(
  265. 'name' => I('name'),
  266. 'is_enable' => I('is_enable'),
  267. 'add_time' => time(),
  268. );
  269. $role_id = $r->add($role_data);
  270. // 角色权限关联添加
  271. $rp_state = true;
  272. if(!empty($_POST['power_id']) && is_array($_POST['power_id']))
  273. {
  274. // 角色权限关联对象
  275. $rp = M('RolePower');
  276. foreach($_POST['power_id'] as $power_id)
  277. {
  278. if(!empty($power_id))
  279. {
  280. $rp_data = array(
  281. 'role_id' => $role_id,
  282. 'power_id' => $power_id,
  283. 'add_time' => time(),
  284. );
  285. if(!$rp->add($rp_data))
  286. {
  287. $rp_state = false;
  288. break;
  289. }
  290. }
  291. }
  292. }
  293. if($role_id && $rp_state)
  294. {
  295. // 提交事务
  296. $r->commit();
  297. // 清除用户权限数据
  298. PowerCacheDelete();
  299. $this->ajaxReturn(L('common_operation_add_success'));
  300. } else {
  301. // 回滚事务
  302. $r->rollback();
  303. $this->ajaxReturn(L('common_operation_add_error'), -100);
  304. }
  305. } else {
  306. $this->ajaxReturn($m->getError(), -1);
  307. }
  308. }
  309. /**
  310. * [RoleEdit 角色和角色权限关联编辑]
  311. * @author Devil
  312. * @blog http://gong.gg/
  313. * @version 0.0.1
  314. * @datetime 2016-12-17T22:13:40+0800
  315. */
  316. private function RoleEdit()
  317. {
  318. // 角色对象
  319. $r = M('Role');
  320. // 数据自动校验
  321. if($r->create($_POST, 2))
  322. {
  323. // 开启事务
  324. $r->startTrans();
  325. // 角色数据更新
  326. $role_data = array(
  327. 'name' => I('name'),
  328. 'is_enable' => I('is_enable'),
  329. );
  330. $r_state = ($r->where(array('id'=>I('id')))->save($role_data) !== false);
  331. // 角色权限关联对象
  332. $rp = M('RolePower');
  333. // 角色id
  334. $role_id = I('id');
  335. // 权限关联数据删除
  336. $rp_del_state = $rp->where(array('role_id'=>$role_id))->delete();
  337. // 权限关联数据添加
  338. $rp_state = true;
  339. if(!empty($_POST['power_id']))
  340. {
  341. $power_id_list = explode(',', $_POST['power_id']);
  342. foreach($power_id_list as $power_id)
  343. {
  344. if(!empty($power_id))
  345. {
  346. $rp_data = array(
  347. 'role_id' => $role_id,
  348. 'power_id' => $power_id,
  349. 'add_time' => time(),
  350. );
  351. if(!$rp->add($rp_data))
  352. {
  353. $rp_state = false;
  354. break;
  355. }
  356. }
  357. }
  358. }
  359. if($r_state !== false && $rp_del_state !== false && $rp_state !== false)
  360. {
  361. // 提交事务
  362. $r->commit();
  363. // 清除用户权限数据
  364. PowerCacheDelete();
  365. $this->ajaxReturn(L('common_operation_edit_success'));
  366. } else {
  367. // 回滚事务
  368. $r->rollback();
  369. $this->ajaxReturn(L('common_operation_edit_error'), -100);
  370. }
  371. } else {
  372. $this->ajaxReturn($m->getError(), -1);
  373. }
  374. }
  375. /**
  376. * [RoleDelete 角色删除]
  377. * @author Devil
  378. * @blog http://gong.gg/
  379. * @version 0.0.1
  380. * @datetime 2016-12-15T11:03:30+0800
  381. */
  382. public function RoleDelete()
  383. {
  384. // 是否ajax请求
  385. if(!IS_AJAX)
  386. {
  387. $this->error(L('common_unauthorized_access'));
  388. }
  389. // 参数是否有误
  390. if(empty($_POST['id']))
  391. {
  392. $this->ajaxReturn(L('common_param_error'), -1);
  393. }
  394. // 角色模型
  395. $r = M('Role');
  396. // 开启事务
  397. $r->startTrans();
  398. // 删除角色
  399. $role_state = $r->delete(I('id'));
  400. $rp_state = M('RolePower')->where(array('role_id'=>I('id')))->delete();
  401. if($role_state !== false && $rp_state !== false)
  402. {
  403. // 提交事务
  404. $r->commit();
  405. // 清除用户权限数据
  406. PowerCacheDelete();
  407. $this->ajaxReturn(L('common_operation_delete_success'));
  408. } else {
  409. // 回滚事务
  410. $r->rollback();
  411. $this->ajaxReturn(L('common_operation_delete_error'), -100);
  412. }
  413. }
  414. }
  415. ?>