permissionGuard.ts 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276
  1. import type { Router, RouteRecordRaw } from 'vue-router';
  2. import { usePermissionStoreWithOut } from '/@/store/modules/permission';
  3. import { PageEnum } from '/@/enums/pageEnum';
  4. import { useUserStoreWithOut } from '/@/store/modules/user';
  5. import { PAGE_NOT_FOUND_ROUTE, QIANKUN_ROUTE } from '/@/router/routes/basic';
  6. import { RootRoute } from '/@/router/routes';
  7. import { isOAuth2AppEnv } from '/@/views/sys/login/useLogin';
  8. import { OAUTH2_THIRD_LOGIN_TENANT_ID } from '/@/enums/cacheEnum';
  9. import { useGlobSetting } from '/@/hooks/setting';
  10. import _ from 'lodash';
  11. import { MOCK_LOGIN_URL_QUERY, SKIP_SSO_URL_QUERY } from '../constant';
  12. import { useSso } from '/@/hooks/web/useSso';
  13. import { useAutoLogin } from '/@/hooks/vent/useAutoLogin';
  14. const LOGIN_PATH = PageEnum.BASE_LOGIN;
  15. //auth2登录路由
  16. const OAUTH2_LOGIN_PAGE_PATH = PageEnum.OAUTH2_LOGIN_PAGE_PATH;
  17. //分享免登录路由
  18. const SYS_FILES_PATH = PageEnum.SYS_FILES_PATH;
  19. // 邮件中的跳转地址,对应此路由,携带token免登录直接去办理页面
  20. const TOKEN_LOGIN = PageEnum.TOKEN_LOGIN;
  21. const ROOT_PATH = RootRoute.path;
  22. //update-begin---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3不支持auth2登录------------
  23. //update-begin---author:wangshuai ---date:20221111 for: [VUEN-2472]分享免登录------------
  24. const whitePathList: PageEnum[] = [LOGIN_PATH, OAUTH2_LOGIN_PAGE_PATH, SYS_FILES_PATH, TOKEN_LOGIN];
  25. //update-end---author:wangshuai ---date:20221111 for: [VUEN-2472]分享免登录------------
  26. //update-end---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3不支持auth2登录------------
  27. const glob = useGlobSetting();
  28. export function createPermissionGuard(router: Router) {
  29. // debugger;
  30. const userStore = useUserStoreWithOut();
  31. const permissionStore = usePermissionStoreWithOut();
  32. const { doAutoLogin, doTokenLogin, validateRoute, tokenValidateRoute } = useAutoLogin();
  33. router.beforeEach(async (to, from, next) => {
  34. RootRoute.redirect = glob.homePath || PageEnum.BASE_HOME;
  35. if (_.isEmpty(history.state.current)) {
  36. _.assign(history.state, { current: from.fullPath });
  37. }
  38. if (
  39. from.path === ROOT_PATH &&
  40. to.path === (glob.homePath || PageEnum.BASE_HOME) &&
  41. userStore.getUserInfo.homePath &&
  42. userStore.getUserInfo.homePath !== (glob.homePath || PageEnum.BASE_HOME)
  43. ) {
  44. // mountMicroApp(userStore.getUserInfo.homePath);
  45. next(userStore.getUserInfo.homePath);
  46. document.title = '首页';
  47. return;
  48. }
  49. // 如果符合自动登录的相关条件则直接执行自动登录,覆盖原有的登录信息
  50. if (validateRoute(to)) {
  51. await doAutoLogin(to);
  52. // 自动登录后会动态添加路由,此处应当重定向到fullPath,否则会加载404页面内容
  53. return next({ path: to.fullPath, replace: true, query: to.query });
  54. }
  55. if (tokenValidateRoute(to)) {
  56. await doTokenLogin(to.query['token'] as string);
  57. }
  58. // 如果指定了需要模拟登录则执行模拟登录,覆盖原有的登录信息
  59. if (to.query[MOCK_LOGIN_URL_QUERY.key] === MOCK_LOGIN_URL_QUERY.val) {
  60. await userStore.mockLogin({ goHome: false });
  61. delete to.query[MOCK_LOGIN_URL_QUERY.key];
  62. return next({ path: to.fullPath, replace: true, query: to.query });
  63. }
  64. const token = userStore.getToken;
  65. // Whitelist can be directly entered
  66. if (whitePathList.includes(to.path as PageEnum)) {
  67. if (to.path === LOGIN_PATH && token) {
  68. const isSessionTimeout = userStore.getSessionTimeout;
  69. //update-begin---author:scott ---date:2023-04-24 for:【QQYUN-4713】登录代码调整逻辑有问题,改造待观察--
  70. //TODO vben默认写法,暂时不知目的,有问题暂时先注释掉
  71. //await userStore.afterLoginAction();
  72. //update-end---author:scott ---date::2023-04-24 for:【QQYUN-4713】登录代码调整逻辑有问题,改造待观察--
  73. try {
  74. if (!isSessionTimeout) {
  75. next((to.query?.redirect as string) || '/');
  76. document.title = '';
  77. return;
  78. }
  79. } catch {}
  80. //update-begin---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3不支持auth2登录------------
  81. } else if (to.path === LOGIN_PATH && isOAuth2AppEnv() && !token) {
  82. //退出登录进入此逻辑
  83. //如果进入的页面是login页面并且当前是OAuth2app环境,并且token为空,就进入OAuth2登录页面
  84. //update-begin---author:wangshuai ---date:20230224 for:[QQYUN-3440]新建企业微信和钉钉配置表,通过租户模式隔离------------
  85. // if (to.query.tenantId) {
  86. // setAuthCache(OAUTH2_THIRD_LOGIN_TENANT_ID, to.query.tenantId);
  87. // }
  88. next({ path: OAUTH2_LOGIN_PAGE_PATH });
  89. document.title = '登录';
  90. ///
  91. //update-end---author:wangshuai ---date:20230224 for:[QQYUN-3440]新建企业微信和钉钉配置表,通过租户模式隔离------------
  92. return;
  93. //update-end---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3不支持auth2登录------------
  94. }
  95. next();
  96. document.title = to.meta.title;
  97. return;
  98. }
  99. // token does not exist
  100. if (!token) {
  101. // You can access without permission. You need to set the routing meta.ignoreAuth to true
  102. if (to.meta.ignoreAuth) {
  103. next();
  104. document.title = to.meta.title;
  105. return;
  106. }
  107. // query如果没有明确要求跳过sso则执行sso登录
  108. if (to.query[SKIP_SSO_URL_QUERY.key] !== SKIP_SSO_URL_QUERY.val) {
  109. const redirectSso = await useSso().ssoLogin();
  110. // 如果需要重定向到sso页面则取消路由导航
  111. if (redirectSso) return;
  112. }
  113. // @deprecated query中要求自动登录的执行自动登录
  114. // if (to.query[AUTO_LOGIN_URL_QUERY.key] === AUTO_LOGIN_URL_QUERY.val) {
  115. // const userStore = useUserStoreWithOut();
  116. // await userStore.mockLogin({
  117. // goHome: false,
  118. // });
  119. // return next({
  120. // path: to.path,
  121. // query: to.query,
  122. // });
  123. // }
  124. //update-begin---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3 Auth2未实现------------
  125. let path = LOGIN_PATH;
  126. if (whitePathList.includes(to.path as PageEnum)) {
  127. // 在免登录白名单,如果进入的页面是login页面并且当前是OAuth2app环境,就进入OAuth2登录页面
  128. if (to.path === LOGIN_PATH && isOAuth2AppEnv()) {
  129. next({ path: OAUTH2_LOGIN_PAGE_PATH });
  130. document.title = '登录';
  131. } else {
  132. //在免登录白名单,直接进入
  133. // mountMicroApp(to.path);
  134. next();
  135. document.title = to.meta.title;
  136. }
  137. } else {
  138. //update-begin---author:wangshuai ---date:20230302 for:只有首次登陆并且是企业微信或者钉钉的情况下才会调用------------
  139. //----------【首次登陆并且是企业微信或者钉钉的情况下才会调用】-----------------------------------------------
  140. //只有首次登陆并且是企业微信或者钉钉的情况下才会调用
  141. const href = window.location.href;
  142. //判断当前是auth2页面,并且是钉钉/企业微信,并且包含tenantId参数
  143. if (isOAuth2AppEnv() && href.indexOf('/tenantId/') != -1) {
  144. const params = to.params;
  145. if (params && params.path && params.path.length > 0) {
  146. //直接获取参数最后一位
  147. setAuthCache(OAUTH2_THIRD_LOGIN_TENANT_ID, params.path[params.path.length - 1]);
  148. }
  149. }
  150. //---------【首次登陆并且是企业微信或者钉钉的情况下才会调用】------------------------------------------------
  151. //update-end---author:wangshuai ---date:20230302 for:只有首次登陆并且是企业微信或者钉钉的情况下才会调用------------
  152. // 如果当前是在OAuth2APP环境,就跳转到OAuth2登录页面,否则跳转到登录页面
  153. path = isOAuth2AppEnv() ? OAUTH2_LOGIN_PAGE_PATH : LOGIN_PATH;
  154. }
  155. //update-end---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3 Auth2未实现------------
  156. // redirect login page
  157. const redirectData: { path: string; replace: boolean; query?: Recordable<string> } = {
  158. //update-begin---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3 Auth2未实现------------
  159. path: path,
  160. //update-end---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3 Auth2未实现------------
  161. replace: true,
  162. };
  163. //update-begin---author:scott ---date:2023-04-24 for:【QQYUN-4713】登录代码调整逻辑有问题,改造待观察--
  164. if (to.fullPath) {
  165. const getFullPath = to.fullPath;
  166. if (
  167. getFullPath == '/' ||
  168. getFullPath == '/500' ||
  169. getFullPath == '/400' ||
  170. getFullPath == '/login?redirect=/' ||
  171. getFullPath == '/login?redirect=/login?redirect=/'
  172. ) {
  173. return;
  174. }
  175. //update-end---author:scott ---date:2023-04-24 for:【QQYUN-4713】登录代码调整逻辑有问题,改造待观察--
  176. redirectData.query = {
  177. ...redirectData.query,
  178. // update-begin-author:sunjianlei date:20230306 for: 修复登录成功后,没有正确重定向的问题
  179. redirect: to.fullPath,
  180. // update-end-author:sunjianlei date:20230306 for: 修复登录成功后,没有正确重定向的问题
  181. };
  182. }
  183. // mountMicroApp(redirectData.path);
  184. next(redirectData);
  185. document.title = '';
  186. return;
  187. }
  188. //==============================【首次登录并且是企业微信或者钉钉的情况下才会调用】==================
  189. //判断是免登录页面,如果页面包含/tenantId/,那么就直接前往主页
  190. if (isOAuth2AppEnv() && to.path.indexOf('/tenantId/') != -1) {
  191. next(userStore.getUserInfo.homePath || PageEnum.BASE_HOME);
  192. document.title = '首页';
  193. return;
  194. }
  195. //==============================【首次登录并且是企业微信或者钉钉的情况下才会调用】==================
  196. // Jump to the 404 page after processing the login
  197. if (
  198. from.path === LOGIN_PATH &&
  199. to.name === PAGE_NOT_FOUND_ROUTE.name &&
  200. to.fullPath !== (userStore.getUserInfo.homePath || glob.homePath || PageEnum.BASE_HOME)
  201. ) {
  202. // mountMicroApp(userStore.getUserInfo.homePath || PageEnum.BASE_HOME);
  203. next(userStore.getUserInfo.homePath || PageEnum.BASE_HOME);
  204. document.title = '首页';
  205. return;
  206. }
  207. // get userinfo while last fetch time is empty
  208. if (userStore.getLastUpdateTime === 0) {
  209. try {
  210. await userStore.getUserInfoAction();
  211. } catch (err) {
  212. console.info(err);
  213. // mountMicroApp(to.path);
  214. next();
  215. document.title = to.meta.title;
  216. }
  217. }
  218. if (permissionStore.getIsDynamicAddedRoute) {
  219. // mountMicroApp(to.path);
  220. next();
  221. document.title = to.meta.title;
  222. return;
  223. }
  224. const routes = await permissionStore.buildRoutesAction();
  225. routes.forEach((route) => {
  226. router.addRoute(route as unknown as RouteRecordRaw);
  227. });
  228. router.addRoute(PAGE_NOT_FOUND_ROUTE as unknown as RouteRecordRaw); //
  229. router.addRoute(QIANKUN_ROUTE as unknown as RouteRecordRaw);
  230. permissionStore.setDynamicAddedRoute(true);
  231. if (to.name === PAGE_NOT_FOUND_ROUTE.name) {
  232. // 动态添加路由后,此处应当重定向到fullPath,否则会加载404页面内容
  233. next({ path: to.fullPath, replace: true, query: to.query });
  234. } else {
  235. const redirectPath = (from.query.redirect || to.path) as string;
  236. const redirect = decodeURIComponent(redirectPath);
  237. const nextData = to.path === redirect ? { ...to, replace: true } : { path: redirect };
  238. // mountMicroApp(nextData.path);
  239. next(nextData);
  240. document.title = '';
  241. }
  242. });
  243. }