permissionGuard.ts 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261
  1. import type { Router, RouteRecordRaw } from 'vue-router';
  2. import { usePermissionStoreWithOut } from '/@/store/modules/permission';
  3. import { PageEnum } from '/@/enums/pageEnum';
  4. import { useUserStoreWithOut } from '/@/store/modules/user';
  5. import { PAGE_NOT_FOUND_ROUTE, QIANKUN_ROUTE } from '/@/router/routes/basic';
  6. import { RootRoute } from '/@/router/routes';
  7. import { isOAuth2AppEnv } from '/@/views/sys/login/useLogin';
  8. import { OAUTH2_THIRD_LOGIN_TENANT_ID } from '/@/enums/cacheEnum';
  9. import { useGlobSetting } from '/@/hooks/setting';
  10. import _ from 'lodash';
  11. import { AUTO_LOGIN_URL_QUERY, SKIP_SSO_URL_QUERY } from '../constant';
  12. import { useSso } from '/@/hooks/web/useSso';
  13. import { useAutoLogin } from '/@/hooks/vent/useAutoLogin';
  14. const LOGIN_PATH = PageEnum.BASE_LOGIN;
  15. //auth2登录路由
  16. const OAUTH2_LOGIN_PAGE_PATH = PageEnum.OAUTH2_LOGIN_PAGE_PATH;
  17. //分享免登录路由
  18. const SYS_FILES_PATH = PageEnum.SYS_FILES_PATH;
  19. // 邮件中的跳转地址,对应此路由,携带token免登录直接去办理页面
  20. const TOKEN_LOGIN = PageEnum.TOKEN_LOGIN;
  21. const ROOT_PATH = RootRoute.path;
  22. //update-begin---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3不支持auth2登录------------
  23. //update-begin---author:wangshuai ---date:20221111 for: [VUEN-2472]分享免登录------------
  24. const whitePathList: PageEnum[] = [LOGIN_PATH, OAUTH2_LOGIN_PAGE_PATH, SYS_FILES_PATH, TOKEN_LOGIN];
  25. //update-end---author:wangshuai ---date:20221111 for: [VUEN-2472]分享免登录------------
  26. //update-end---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3不支持auth2登录------------
  27. const glob = useGlobSetting();
  28. export function createPermissionGuard(router: Router) {
  29. const userStore = useUserStoreWithOut();
  30. const permissionStore = usePermissionStoreWithOut();
  31. const { doAutoLogin } = useAutoLogin();
  32. router.beforeEach(async (to, from, next) => {
  33. RootRoute.redirect = glob.homePath || PageEnum.BASE_HOME;
  34. if (_.isEmpty(history.state.current)) {
  35. _.assign(history.state, { current: from.fullPath });
  36. }
  37. if (
  38. from.path === ROOT_PATH &&
  39. to.path === (glob.homePath || PageEnum.BASE_HOME) &&
  40. userStore.getUserInfo.homePath &&
  41. userStore.getUserInfo.homePath !== (glob.homePath || PageEnum.BASE_HOME)
  42. ) {
  43. // mountMicroApp(userStore.getUserInfo.homePath);
  44. next(userStore.getUserInfo.homePath);
  45. document.title = '首页';
  46. return;
  47. }
  48. // 如果符合自动登录的相关条件则直接执行自动登录,覆盖原有的登录信息
  49. await doAutoLogin(to);
  50. const token = userStore.getToken;
  51. // Whitelist can be directly entered
  52. if (whitePathList.includes(to.path as PageEnum)) {
  53. if (to.path === LOGIN_PATH && token) {
  54. const isSessionTimeout = userStore.getSessionTimeout;
  55. //update-begin---author:scott ---date:2023-04-24 for:【QQYUN-4713】登录代码调整逻辑有问题,改造待观察--
  56. //TODO vben默认写法,暂时不知目的,有问题暂时先注释掉
  57. //await userStore.afterLoginAction();
  58. //update-end---author:scott ---date::2023-04-24 for:【QQYUN-4713】登录代码调整逻辑有问题,改造待观察--
  59. try {
  60. if (!isSessionTimeout) {
  61. next((to.query?.redirect as string) || '/');
  62. document.title = '';
  63. return;
  64. }
  65. } catch {}
  66. //update-begin---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3不支持auth2登录------------
  67. } else if (to.path === LOGIN_PATH && isOAuth2AppEnv() && !token) {
  68. //退出登录进入此逻辑
  69. //如果进入的页面是login页面并且当前是OAuth2app环境,并且token为空,就进入OAuth2登录页面
  70. //update-begin---author:wangshuai ---date:20230224 for:[QQYUN-3440]新建企业微信和钉钉配置表,通过租户模式隔离------------
  71. // if (to.query.tenantId) {
  72. // setAuthCache(OAUTH2_THIRD_LOGIN_TENANT_ID, to.query.tenantId);
  73. // }
  74. next({ path: OAUTH2_LOGIN_PAGE_PATH });
  75. document.title = '登录';
  76. ///
  77. //update-end---author:wangshuai ---date:20230224 for:[QQYUN-3440]新建企业微信和钉钉配置表,通过租户模式隔离------------
  78. return;
  79. //update-end---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3不支持auth2登录------------
  80. }
  81. next();
  82. document.title = to.meta.title;
  83. return;
  84. }
  85. // token does not exist
  86. if (!token) {
  87. // You can access without permission. You need to set the routing meta.ignoreAuth to true
  88. if (to.meta.ignoreAuth) {
  89. next();
  90. document.title = to.meta.title;
  91. return;
  92. }
  93. // query如果没有明确要求跳过sso则执行sso登录
  94. if (to.query[SKIP_SSO_URL_QUERY.key] !== SKIP_SSO_URL_QUERY.val) {
  95. const redirectSso = await useSso().ssoLogin();
  96. // 如果需要重定向到sso页面则取消路由导航
  97. if (redirectSso) return;
  98. }
  99. // query中要求自动登录的执行自动登录
  100. if (to.query[AUTO_LOGIN_URL_QUERY.key] === AUTO_LOGIN_URL_QUERY.val) {
  101. const userStore = useUserStoreWithOut();
  102. await userStore.mockLogin({
  103. goHome: false,
  104. });
  105. return next({
  106. path: to.path,
  107. query: to.query,
  108. });
  109. }
  110. //update-begin---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3 Auth2未实现------------
  111. let path = LOGIN_PATH;
  112. if (whitePathList.includes(to.path as PageEnum)) {
  113. // 在免登录白名单,如果进入的页面是login页面并且当前是OAuth2app环境,就进入OAuth2登录页面
  114. if (to.path === LOGIN_PATH && isOAuth2AppEnv()) {
  115. next({ path: OAUTH2_LOGIN_PAGE_PATH });
  116. document.title = '登录';
  117. } else {
  118. //在免登录白名单,直接进入
  119. // mountMicroApp(to.path);
  120. next();
  121. document.title = to.meta.title;
  122. }
  123. } else {
  124. //update-begin---author:wangshuai ---date:20230302 for:只有首次登陆并且是企业微信或者钉钉的情况下才会调用------------
  125. //----------【首次登陆并且是企业微信或者钉钉的情况下才会调用】-----------------------------------------------
  126. //只有首次登陆并且是企业微信或者钉钉的情况下才会调用
  127. const href = window.location.href;
  128. //判断当前是auth2页面,并且是钉钉/企业微信,并且包含tenantId参数
  129. if (isOAuth2AppEnv() && href.indexOf('/tenantId/') != -1) {
  130. const params = to.params;
  131. if (params && params.path && params.path.length > 0) {
  132. //直接获取参数最后一位
  133. setAuthCache(OAUTH2_THIRD_LOGIN_TENANT_ID, params.path[params.path.length - 1]);
  134. }
  135. }
  136. //---------【首次登陆并且是企业微信或者钉钉的情况下才会调用】------------------------------------------------
  137. //update-end---author:wangshuai ---date:20230302 for:只有首次登陆并且是企业微信或者钉钉的情况下才会调用------------
  138. // 如果当前是在OAuth2APP环境,就跳转到OAuth2登录页面,否则跳转到登录页面
  139. path = isOAuth2AppEnv() ? OAUTH2_LOGIN_PAGE_PATH : LOGIN_PATH;
  140. }
  141. //update-end---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3 Auth2未实现------------
  142. // redirect login page
  143. const redirectData: { path: string; replace: boolean; query?: Recordable<string> } = {
  144. //update-begin---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3 Auth2未实现------------
  145. path: path,
  146. //update-end---author:wangshuai ---date:20220629 for:[issues/I5BG1I]vue3 Auth2未实现------------
  147. replace: true,
  148. };
  149. //update-begin---author:scott ---date:2023-04-24 for:【QQYUN-4713】登录代码调整逻辑有问题,改造待观察--
  150. if (to.fullPath) {
  151. const getFullPath = to.fullPath;
  152. if (
  153. getFullPath == '/' ||
  154. getFullPath == '/500' ||
  155. getFullPath == '/400' ||
  156. getFullPath == '/login?redirect=/' ||
  157. getFullPath == '/login?redirect=/login?redirect=/'
  158. ) {
  159. return;
  160. }
  161. //update-end---author:scott ---date:2023-04-24 for:【QQYUN-4713】登录代码调整逻辑有问题,改造待观察--
  162. redirectData.query = {
  163. ...redirectData.query,
  164. // update-begin-author:sunjianlei date:20230306 for: 修复登录成功后,没有正确重定向的问题
  165. redirect: to.fullPath,
  166. // update-end-author:sunjianlei date:20230306 for: 修复登录成功后,没有正确重定向的问题
  167. };
  168. }
  169. // mountMicroApp(redirectData.path);
  170. next(redirectData);
  171. document.title = '';
  172. return;
  173. }
  174. //==============================【首次登录并且是企业微信或者钉钉的情况下才会调用】==================
  175. //判断是免登录页面,如果页面包含/tenantId/,那么就直接前往主页
  176. if (isOAuth2AppEnv() && to.path.indexOf('/tenantId/') != -1) {
  177. next(userStore.getUserInfo.homePath || PageEnum.BASE_HOME);
  178. document.title = '首页';
  179. return;
  180. }
  181. //==============================【首次登录并且是企业微信或者钉钉的情况下才会调用】==================
  182. // Jump to the 404 page after processing the login
  183. if (
  184. from.path === LOGIN_PATH &&
  185. to.name === PAGE_NOT_FOUND_ROUTE.name &&
  186. to.fullPath !== (userStore.getUserInfo.homePath || glob.homePath || PageEnum.BASE_HOME)
  187. ) {
  188. // mountMicroApp(userStore.getUserInfo.homePath || PageEnum.BASE_HOME);
  189. next(userStore.getUserInfo.homePath || PageEnum.BASE_HOME);
  190. document.title = '首页';
  191. return;
  192. }
  193. // get userinfo while last fetch time is empty
  194. if (userStore.getLastUpdateTime === 0) {
  195. try {
  196. await userStore.getUserInfoAction();
  197. } catch (err) {
  198. console.info(err);
  199. // mountMicroApp(to.path);
  200. next();
  201. document.title = to.meta.title;
  202. }
  203. }
  204. if (permissionStore.getIsDynamicAddedRoute) {
  205. // mountMicroApp(to.path);
  206. next();
  207. document.title = to.meta.title;
  208. return;
  209. }
  210. const routes = await permissionStore.buildRoutesAction();
  211. routes.forEach((route) => {
  212. router.addRoute(route as unknown as RouteRecordRaw);
  213. });
  214. router.addRoute(PAGE_NOT_FOUND_ROUTE as unknown as RouteRecordRaw); //
  215. router.addRoute(QIANKUN_ROUTE as unknown as RouteRecordRaw);
  216. permissionStore.setDynamicAddedRoute(true);
  217. if (to.name === PAGE_NOT_FOUND_ROUTE.name) {
  218. // 动态添加路由后,此处应当重定向到fullPath,否则会加载404页面内容
  219. next({ path: to.fullPath, replace: true, query: to.query });
  220. } else {
  221. const redirectPath = (from.query.redirect || to.path) as string;
  222. const redirect = decodeURIComponent(redirectPath);
  223. const nextData = to.path === redirect ? { ...to, replace: true } : { path: redirect };
  224. // mountMicroApp(nextData.path);
  225. next(nextData);
  226. document.title = '';
  227. }
  228. });
  229. }