refactor: 拆分多租户
This commit is contained in:
@@ -1,228 +0,0 @@
|
||||
# 多租户用户管理改进说明
|
||||
|
||||
## 改进概述
|
||||
|
||||
本次改进实现了在用户管理中自动维护 `sys_user_tenant` 关联表,支持单租户和多租户两种模式的无缝切换。
|
||||
|
||||
## 核心改进
|
||||
|
||||
### 1. 用户新增时自动创建租户关联
|
||||
|
||||
**修改文件**: `UserServiceImpl.saveUser()`
|
||||
|
||||
**逻辑**:
|
||||
- 创建用户后,判断是否启用多租户(通过 `youlai.tenant.enabled` 配置)
|
||||
- 如果启用,自动向 `sys_user_tenant` 表插入关联记录
|
||||
- 新用户默认设置为该租户的默认租户(`is_default=1`)
|
||||
|
||||
```java
|
||||
// 新增用户
|
||||
boolean result = this.save(entity);
|
||||
|
||||
if (result) {
|
||||
// 保存用户角色
|
||||
userRoleService.saveUserRoles(entity.getId(), userForm.getRoleIds());
|
||||
|
||||
// 如果启用多租户,保存用户租户关联
|
||||
if (Boolean.TRUE.equals(tenantProperties.getEnabled())) {
|
||||
saveUserTenantRelation(entity.getId(), entity.getTenantId(), true);
|
||||
}
|
||||
}
|
||||
```
|
||||
|
||||
### 2. 用户更新时同步租户关联
|
||||
|
||||
**修改文件**: `UserServiceImpl.updateUser()`
|
||||
|
||||
**逻辑**:
|
||||
- 比较用户的旧租户ID和新租户ID
|
||||
- 如果租户发生变更:
|
||||
- 删除旧的租户关联记录
|
||||
- 创建新的租户关联记录
|
||||
|
||||
```java
|
||||
// 如果启用多租户且租户发生变更,更新用户租户关联
|
||||
if (Boolean.TRUE.equals(tenantProperties.getEnabled())) {
|
||||
Long newTenantId = entity.getTenantId();
|
||||
if (newTenantId != null && !newTenantId.equals(oldTenantId)) {
|
||||
// 删除旧的租户关联
|
||||
if (oldTenantId != null) {
|
||||
userTenantMapper.delete(...);
|
||||
}
|
||||
// 保存新的租户关联
|
||||
saveUserTenantRelation(userId, newTenantId, true);
|
||||
}
|
||||
}
|
||||
```
|
||||
|
||||
### 3. 用户删除时清理租户关联
|
||||
|
||||
**修改文件**: `UserServiceImpl.deleteUsers()`
|
||||
|
||||
**逻辑**:
|
||||
- 删除用户后,自动清理 `sys_user_tenant` 表中的关联记录
|
||||
- 避免产生孤立数据
|
||||
|
||||
```java
|
||||
boolean result = this.removeByIds(ids);
|
||||
|
||||
// 如果启用多租户,删除用户租户关联
|
||||
if (result && Boolean.TRUE.equals(tenantProperties.getEnabled())) {
|
||||
for (Long userId : ids) {
|
||||
userTenantMapper.delete(...);
|
||||
log.info("删除用户租户关联:userId={}", userId);
|
||||
}
|
||||
}
|
||||
```
|
||||
|
||||
### 4. 新增私有方法处理关联逻辑
|
||||
|
||||
**新增方法**: `saveUserTenantRelation()`
|
||||
|
||||
**功能**:
|
||||
- 检查关联是否已存在
|
||||
- 存在则更新 `is_default` 标识
|
||||
- 不存在则插入新记录
|
||||
- 添加详细日志记录
|
||||
|
||||
## 配置说明
|
||||
|
||||
### 启用多租户
|
||||
|
||||
在 `application-dev.yml` 中配置:
|
||||
|
||||
```yaml
|
||||
youlai:
|
||||
tenant:
|
||||
enabled: true # 设置为 true 启用多租户
|
||||
column: tenant_id
|
||||
default-tenant-id: 1
|
||||
```
|
||||
|
||||
### 禁用多租户
|
||||
|
||||
```yaml
|
||||
youlai:
|
||||
tenant:
|
||||
enabled: false # 设置为 false 禁用多租户
|
||||
```
|
||||
|
||||
当禁用多租户时:
|
||||
- ✅ 不会自动创建/更新/删除 `sys_user_tenant` 记录
|
||||
- ✅ 只使用 `sys_user.tenant_id` 字段
|
||||
- ✅ 零成本切换,无需修改代码
|
||||
|
||||
## 数据库设计
|
||||
|
||||
### sys_user 表
|
||||
```sql
|
||||
ALTER TABLE `sys_user`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `id`,
|
||||
ADD INDEX `idx_tenant_id` (`tenant_id`);
|
||||
```
|
||||
|
||||
### sys_user_tenant 表
|
||||
```sql
|
||||
CREATE TABLE `sys_user_tenant` (
|
||||
`id` bigint NOT NULL AUTO_INCREMENT COMMENT '主键ID',
|
||||
`user_id` bigint NOT NULL COMMENT '用户ID',
|
||||
`tenant_id` bigint NOT NULL COMMENT '租户ID',
|
||||
`is_default` tinyint DEFAULT '0' COMMENT '是否默认租户(1-是 0-否)',
|
||||
`create_time` datetime DEFAULT CURRENT_TIMESTAMP COMMENT '创建时间',
|
||||
PRIMARY KEY (`id`),
|
||||
UNIQUE KEY `uk_user_tenant` (`user_id`, `tenant_id`),
|
||||
KEY `idx_user_id` (`user_id`),
|
||||
KEY `idx_tenant_id` (`tenant_id`)
|
||||
) ENGINE=InnoDB DEFAULT CHARSET=utf8mb4 COMMENT='用户租户关联表(多租户模式)';
|
||||
```
|
||||
|
||||
## 数据初始化
|
||||
|
||||
执行 SQL 脚本时,会自动为现有用户创建租户关联:
|
||||
|
||||
```sql
|
||||
INSERT INTO `sys_user_tenant` (`user_id`, `tenant_id`, `is_default`)
|
||||
SELECT `id`, 1, 1 FROM `sys_user` WHERE `is_deleted` = 0
|
||||
ON DUPLICATE KEY UPDATE `is_default` = 1;
|
||||
```
|
||||
|
||||
## 使用场景
|
||||
|
||||
### 场景1:单租户模式
|
||||
- 配置:`youlai.tenant.enabled = false`
|
||||
- 用户只属于一个租户
|
||||
- 数据完全隔离
|
||||
- 不需要租户切换功能
|
||||
|
||||
### 场景2:多租户模式
|
||||
- 配置:`youlai.tenant.enabled = true`
|
||||
- 用户可以属于多个租户
|
||||
- 可以在不同租户间切换
|
||||
- 通过 `sys_user_tenant` 表管理关联关系
|
||||
|
||||
## 关键优势
|
||||
|
||||
1. **自动化管理**: 创建/更新/删除用户时自动维护关联表
|
||||
2. **灵活切换**: 通过配置即可在单租户和多租户模式间切换
|
||||
3. **数据一致性**: 确保 `sys_user.tenant_id` 和 `sys_user_tenant` 表数据同步
|
||||
4. **幂等操作**: 支持重复执行,避免重复插入
|
||||
5. **完整日志**: 每次操作都有日志记录,便于追踪问题
|
||||
|
||||
## 注意事项
|
||||
|
||||
1. **事务处理**: 用户的增删改操作都已添加事务注解 `@Transactional`
|
||||
2. **空值检查**: `saveUserTenantRelation()` 方法会检查参数是否为空
|
||||
3. **幂等性**: 插入前会检查记录是否已存在
|
||||
4. **配置优先**: 所有操作都基于 `tenantProperties.getEnabled()` 判断
|
||||
|
||||
## 测试建议
|
||||
|
||||
### 测试场景1:多租户模式下创建用户
|
||||
1. 设置 `youlai.tenant.enabled = true`
|
||||
2. 在租户A下创建用户"张三"
|
||||
3. 验证:
|
||||
- `sys_user` 表插入记录,`tenant_id=A`
|
||||
- `sys_user_tenant` 表插入记录,`user_id=张三, tenant_id=A, is_default=1`
|
||||
|
||||
### 测试场景2:多租户模式下更新用户租户
|
||||
1. 将用户"张三"从租户A转移到租户B
|
||||
2. 验证:
|
||||
- `sys_user` 表更新,`tenant_id=B`
|
||||
- `sys_user_tenant` 表删除旧记录 (A),插入新记录 (B)
|
||||
|
||||
### 测试场景3:多租户模式下删除用户
|
||||
1. 删除用户"张三"
|
||||
2. 验证:
|
||||
- `sys_user` 表标记为删除
|
||||
- `sys_user_tenant` 表删除关联记录
|
||||
|
||||
### 测试场景4:单租户模式
|
||||
1. 设置 `youlai.tenant.enabled = false`
|
||||
2. 创建/更新/删除用户
|
||||
3. 验证:
|
||||
- 只操作 `sys_user` 表
|
||||
- 不操作 `sys_user_tenant` 表
|
||||
|
||||
## 修改文件清单
|
||||
|
||||
- ✅ `UserServiceImpl.java` - 添加多租户关联维护逻辑
|
||||
- ✅ `tenant_add.sql` - 数据库表结构和初始化脚本
|
||||
- ✅ `TenantProperties.java` - 多租户配置类(已存在)
|
||||
- ✅ `UserTenantMapper.java` - MyBatis Mapper(已存在)
|
||||
- ✅ `UserTenant.java` - 实体类(已存在)
|
||||
|
||||
## 向后兼容性
|
||||
|
||||
- ✅ 默认配置为 `enabled: false`,不影响现有单租户系统
|
||||
- ✅ 现有代码无需修改,只需调整配置文件即可启用多租户
|
||||
- ✅ 数据库升级脚本支持多次执行(幂等)
|
||||
|
||||
## 总结
|
||||
|
||||
本次改进完善了多租户用户管理机制,实现了:
|
||||
- 自动维护用户租户关联关系
|
||||
- 支持单/多租户模式灵活切换
|
||||
- 保证数据一致性和完整性
|
||||
- 提供详细的操作日志
|
||||
|
||||
系统现在可以零成本在单租户和多租户模式间切换,只需修改配置文件即可。
|
||||
288
docs/多租户表隔离策略.md
288
docs/多租户表隔离策略.md
@@ -1,288 +0,0 @@
|
||||
# 多租户表隔离策略说明
|
||||
|
||||
## 📋 概述
|
||||
|
||||
本文档说明系统中各业务表的多租户隔离策略,帮助理解哪些表需要租户隔离,哪些表应该共享。
|
||||
|
||||
---
|
||||
|
||||
## 🎯 设计原则
|
||||
|
||||
### 1. **数据隔离**(Tenant Isolation)
|
||||
- 租户私有数据必须严格隔离
|
||||
- 通过 `tenant_id` 字段实现
|
||||
- MyBatis-Plus 多租户插件自动添加过滤条件
|
||||
|
||||
### 2. **功能共享**(Feature Sharing)
|
||||
- 系统功能定义应该标准化
|
||||
- 避免重复数据和维护成本
|
||||
- 通过角色和权限控制访问
|
||||
|
||||
### 3. **灵活配置**(Flexible Configuration)
|
||||
- 通过配置文件控制隔离策略
|
||||
- 可随时调整隔离范围
|
||||
- 零成本切换单租户/多租户
|
||||
|
||||
---
|
||||
|
||||
## 📊 表隔离策略
|
||||
|
||||
### ✅ 需要租户隔离的表
|
||||
|
||||
这些表存储租户私有数据,必须添加 `tenant_id` 字段:
|
||||
|
||||
| 表名 | 说明 | 隔离原因 |
|
||||
|------|------|---------|
|
||||
| `sys_user` | 用户表 | 用户属于特定租户,数据必须隔离 |
|
||||
| `sys_role` | 角色表 | 角色是租户自定义的,不同租户角色不同 |
|
||||
| `sys_dept` | 部门表 | 部门结构是租户私有的组织架构 |
|
||||
| `sys_notice` | 通知公告表 | 通知是租户内部的信息 |
|
||||
| `sys_log` | 系统日志表 | 日志记录租户的操作行为 |
|
||||
| `sys_role_menu` | 角色菜单关联表 | 角色是租户隔离的,关联表也需要隔离 |
|
||||
| `sys_user_role` | 用户角色关联表 | 用户和角色都是租户隔离的 |
|
||||
| `ai_command_record` | AI命令记录表 | 命令记录是租户私有数据 |
|
||||
|
||||
**实现方式**:
|
||||
```sql
|
||||
-- 添加 tenant_id 字段
|
||||
ALTER TABLE `sys_user`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `id`,
|
||||
ADD INDEX `idx_tenant_id` (`tenant_id`);
|
||||
|
||||
-- 初始化为默认租户
|
||||
UPDATE `sys_user` SET `tenant_id` = 1 WHERE `tenant_id` IS NULL;
|
||||
```
|
||||
|
||||
---
|
||||
|
||||
### ❌ 不需要租户隔离的表
|
||||
|
||||
这些表存储系统公共数据,应该所有租户共享:
|
||||
|
||||
| 表名 | 说明 | 共享原因 |
|
||||
|------|------|---------|
|
||||
| `sys_tenant` | 租户表 | 租户表本身不能隔离 |
|
||||
| **`sys_menu`** | **菜单表** | **功能入口定义,标准化共享** |
|
||||
| `sys_dict` | 字典表 | 系统字典通常是标准化的 |
|
||||
| `sys_dict_item` | 字典项表 | 字典值应该统一 |
|
||||
| `sys_config` | 系统配置表 | 系统级配置应该全局统一 |
|
||||
|
||||
**配置方式**:
|
||||
```yaml
|
||||
youlai:
|
||||
tenant:
|
||||
enabled: true
|
||||
ignore-tables:
|
||||
- sys_tenant # 租户表本身
|
||||
- sys_menu # 菜单表(重点!)
|
||||
- sys_dict # 字典表
|
||||
- sys_dict_item # 字典项表
|
||||
- sys_config # 系统配置表
|
||||
```
|
||||
|
||||
---
|
||||
|
||||
## 🔍 重点说明:为什么菜单不隔离?
|
||||
|
||||
### 问题背景
|
||||
```sql
|
||||
-- 错误示例:如果菜单隔离,会产生大量冗余
|
||||
租户A的菜单:
|
||||
- 系统管理 → 用户管理 → 角色管理
|
||||
租户B的菜单:
|
||||
- 系统管理 → 用户管理 → 角色管理
|
||||
租户C的菜单:
|
||||
- 系统管理 → 用户管理 → 角色管理
|
||||
(完全相同的菜单定义重复了3次!)
|
||||
```
|
||||
|
||||
### 推荐方案:菜单共享 + 角色控制
|
||||
|
||||
#### 1. **菜单定义共享**
|
||||
```
|
||||
所有租户共享同一套菜单定义:
|
||||
├─ 系统管理
|
||||
│ ├─ 用户管理
|
||||
│ ├─ 角色管理
|
||||
│ ├─ 菜单管理
|
||||
│ └─ 租户管理
|
||||
├─ 业务管理
|
||||
│ ├─ 订单管理
|
||||
│ └─ 商品管理
|
||||
```
|
||||
|
||||
#### 2. **权限通过角色控制**
|
||||
```typescript
|
||||
// 租户A的管理员角色
|
||||
角色:租户A管理员
|
||||
权限:系统管理、业务管理(全部菜单)
|
||||
|
||||
// 租户A的普通员工角色
|
||||
角色:租户A员工
|
||||
权限:业务管理(部分菜单)
|
||||
|
||||
// 租户B的管理员角色
|
||||
角色:租户B管理员
|
||||
权限:系统管理、业务管理(全部菜单)
|
||||
```
|
||||
|
||||
#### 3. **优势**
|
||||
|
||||
| 维度 | 菜单共享 | 菜单隔离 |
|
||||
|------|---------|---------|
|
||||
| **数据量** | ✅ 少量 | ❌ 大量冗余 |
|
||||
| **升级维护** | ✅ 一次升级 | ❌ 需迁移所有租户 |
|
||||
| **管理成本** | ✅ 低 | ❌ 高 |
|
||||
| **功能一致性** | ✅ 保证统一 | ⚠️ 可能不一致 |
|
||||
| **定制能力** | ⚠️ 通过角色实现 | ✅ 每租户独立 |
|
||||
|
||||
---
|
||||
|
||||
## 💡 权限控制流程
|
||||
|
||||
### 用户访问菜单的流程
|
||||
|
||||
```mermaid
|
||||
graph TD
|
||||
A[用户登录] --> B[获取用户角色]
|
||||
B --> C{角色是否有权限?}
|
||||
C -->|是| D[显示菜单]
|
||||
C -->|否| E[隐藏菜单]
|
||||
|
||||
style A fill:#e1f5ff
|
||||
style D fill:#d4edda
|
||||
style E fill:#f8d7da
|
||||
```
|
||||
|
||||
### 示例代码
|
||||
|
||||
```java
|
||||
// 1. 菜单定义(所有租户共享)
|
||||
sys_menu:
|
||||
id: 1, name: "用户管理", perm: "sys:user:list"
|
||||
|
||||
// 2. 租户A的角色(租户隔离)
|
||||
sys_role (tenant_id=1):
|
||||
id: 10, name: "管理员", tenant_id: 1
|
||||
|
||||
// 3. 角色菜单关联(租户隔离)
|
||||
sys_role_menu (tenant_id=1):
|
||||
role_id: 10, menu_id: 1, tenant_id: 1
|
||||
|
||||
// 查询时自动过滤
|
||||
SELECT t3.perm, t2.code
|
||||
FROM sys_role_menu t1
|
||||
INNER JOIN sys_role t2 ON t1.role_id = t2.id
|
||||
AND t2.tenant_id = 1 -- ✅ 角色租户过滤
|
||||
INNER JOIN sys_menu t3 ON t1.menu_id = t3.id
|
||||
-- ❌ 菜单不需要租户过滤(通过 ignore-tables 配置)
|
||||
WHERE t1.tenant_id = 1 -- ✅ 关联表租户过滤
|
||||
```
|
||||
|
||||
---
|
||||
|
||||
## 🔧 配置示例
|
||||
|
||||
### application-dev.yml
|
||||
|
||||
```yaml
|
||||
youlai:
|
||||
tenant:
|
||||
# 启用多租户
|
||||
enabled: true
|
||||
|
||||
# 租户字段名
|
||||
column: tenant_id
|
||||
|
||||
# 默认租户ID
|
||||
default-tenant-id: 1
|
||||
|
||||
# 忽略多租户过滤的表(重点配置)
|
||||
ignore-tables:
|
||||
- sys_tenant # 租户表本身
|
||||
- sys_menu # 菜单表(所有租户共享)
|
||||
- sys_dict # 字典表
|
||||
- sys_dict_item # 字典项表
|
||||
- sys_config # 系统配置表
|
||||
```
|
||||
|
||||
---
|
||||
|
||||
## ⚠️ 常见问题
|
||||
|
||||
### Q1: 如果需要为不同租户定制菜单怎么办?
|
||||
|
||||
**A:** 有两种方案:
|
||||
|
||||
#### 方案1: 通过角色权限控制(推荐)
|
||||
```
|
||||
租户A看到:菜单A、B、C(通过角色权限配置)
|
||||
租户B看到:菜单A、B(通过角色权限配置)
|
||||
```
|
||||
|
||||
#### 方案2: 菜单隔离(不推荐)
|
||||
```yaml
|
||||
# 将 sys_menu 从 ignore-tables 中移除
|
||||
ignore-tables:
|
||||
- sys_tenant
|
||||
# - sys_menu # 注释掉,启用菜单隔离
|
||||
|
||||
# 然后执行 SQL 添加 tenant_id
|
||||
ALTER TABLE sys_menu
|
||||
ADD COLUMN tenant_id bigint DEFAULT 1;
|
||||
```
|
||||
|
||||
---
|
||||
|
||||
### Q2: 如果后端报错 `Unknown column 't3.tenant_id'` 怎么办?
|
||||
|
||||
**A:** 这个错误说明:
|
||||
1. ❌ `sys_menu` 表没有 `tenant_id` 字段
|
||||
2. ❌ 但配置文件中没有将 `sys_menu` 添加到 `ignore-tables`
|
||||
3. ✅ 解决方案:将 `sys_menu` 添加到 `ignore-tables`(本文档已说明)
|
||||
|
||||
---
|
||||
|
||||
### Q3: 字典表需要隔离吗?
|
||||
|
||||
**A:** 通常不需要,原因:
|
||||
- 字典是系统标准配置(如:性别、状态等)
|
||||
- 所有租户应该使用统一的字典定义
|
||||
- 如果需要租户级字典,可以单独创建 `tenant_dict` 表
|
||||
|
||||
---
|
||||
|
||||
## 📝 总结
|
||||
|
||||
### 核心原则
|
||||
|
||||
1. **数据隔离**:用户、角色、部门等业务数据必须隔离
|
||||
2. **功能共享**:菜单、字典、配置等系统定义应该共享
|
||||
3. **权限控制**:通过角色和权限实现访问控制
|
||||
|
||||
### 最佳实践
|
||||
|
||||
```
|
||||
✅ 推荐做法:
|
||||
- 菜单定义共享
|
||||
- 角色租户隔离
|
||||
- 通过角色控制菜单访问权限
|
||||
|
||||
❌ 不推荐做法:
|
||||
- 为每个租户复制菜单
|
||||
- 菜单和角色都隔离但逻辑相同
|
||||
- 升级时需要迁移所有租户的菜单
|
||||
```
|
||||
|
||||
---
|
||||
|
||||
## 🔗 相关文档
|
||||
|
||||
- [多租户用户管理改进说明](./多租户用户管理改进说明.md)
|
||||
- [tenant_add.sql](../sql/mysql/tenant_add.sql) - 多租户SQL脚本
|
||||
- [TenantProperties.java](../src/main/java/com/youlai/boot/config/property/TenantProperties.java) - 配置类
|
||||
|
||||
---
|
||||
|
||||
**更新时间**:2025-12-12
|
||||
**版本**:v3.0.0
|
||||
@@ -1,136 +0,0 @@
|
||||
-- ============================================
|
||||
-- 多租户支持 SQL 脚本(为现有系统添加多租户功能)
|
||||
-- ============================================
|
||||
-- 说明:此脚本用于为现有表添加 tenant_id 字段,启用多租户功能
|
||||
-- 适用场景:已有系统需要升级支持多租户
|
||||
-- 执行前请确保已备份数据库!
|
||||
-- ============================================
|
||||
|
||||
USE youlai_admin;
|
||||
|
||||
SET FOREIGN_KEY_CHECKS = 0;
|
||||
|
||||
-- ============================================
|
||||
-- 1. 创建租户表(如果不存在)
|
||||
-- ============================================
|
||||
DROP TABLE IF EXISTS `sys_tenant`;
|
||||
CREATE TABLE `sys_tenant` (
|
||||
`id` bigint NOT NULL AUTO_INCREMENT COMMENT '租户ID',
|
||||
`name` varchar(100) NOT NULL COMMENT '租户名称',
|
||||
`code` varchar(50) NOT NULL COMMENT '租户编码(唯一)',
|
||||
`contact_name` varchar(50) DEFAULT NULL COMMENT '联系人姓名',
|
||||
`contact_phone` varchar(20) DEFAULT NULL COMMENT '联系人电话',
|
||||
`contact_email` varchar(100) DEFAULT NULL COMMENT '联系人邮箱',
|
||||
`domain` varchar(100) DEFAULT NULL COMMENT '租户域名(用于域名识别)',
|
||||
`logo` varchar(255) DEFAULT NULL COMMENT '租户Logo',
|
||||
`status` tinyint DEFAULT '1' COMMENT '状态(1-正常 0-禁用)',
|
||||
`remark` varchar(500) DEFAULT NULL COMMENT '备注',
|
||||
`expire_time` datetime DEFAULT NULL COMMENT '过期时间(NULL表示永不过期)',
|
||||
`create_time` datetime COMMENT '创建时间',
|
||||
`update_time` datetime COMMENT '更新时间',
|
||||
PRIMARY KEY (`id`),
|
||||
UNIQUE KEY `uk_code` (`code`),
|
||||
UNIQUE KEY `uk_domain` (`domain`),
|
||||
KEY `idx_status` (`status`)
|
||||
) ENGINE=InnoDB AUTO_INCREMENT=1 DEFAULT CHARSET=utf8mb4 COMMENT='系统租户表';
|
||||
|
||||
-- 插入默认租户
|
||||
INSERT INTO `sys_tenant` (`id`, `name`, `code`, `status`, `create_time`) VALUES
|
||||
(1, '默认租户', 'DEFAULT', 1, NOW());
|
||||
|
||||
-- ============================================
|
||||
-- 2. 为业务表添加 tenant_id 字段
|
||||
-- ============================================
|
||||
-- 注意事项:
|
||||
-- 1. MySQL 5.7 不支持 IF NOT EXISTS,如果字段已存在会报错
|
||||
-- 2. 菜单表(sys_menu)不添加 tenant_id,所有租户共享菜单定义
|
||||
-- 权限控制通过角色实现(角色是租户隔离的)
|
||||
-- 3. 建议先检查字段是否存在,或使用 MySQL 8.0+
|
||||
|
||||
-- 用户表:仅在不存在时添加列和索引,避免重复执行报错
|
||||
ALTER TABLE `sys_user`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `id`,
|
||||
ADD INDEX `idx_tenant_id` (`tenant_id`);
|
||||
|
||||
UPDATE `sys_user` SET `tenant_id` = 1 WHERE `tenant_id` IS NULL;
|
||||
|
||||
-- 修改 username 索引:从单列索引改为 (username, tenant_id) 组合唯一索引
|
||||
-- 这样同一租户内用户名唯一,不同租户可以有相同用户名
|
||||
DROP INDEX `login_name` ON `sys_user`;
|
||||
ALTER TABLE `sys_user`
|
||||
ADD UNIQUE KEY `uk_username_tenant` (`username`, `tenant_id`);
|
||||
|
||||
-- 角色表
|
||||
ALTER TABLE `sys_role`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `id`,
|
||||
ADD INDEX `idx_tenant_id` (`tenant_id`);
|
||||
|
||||
UPDATE `sys_role` SET `tenant_id` = 1 WHERE `tenant_id` IS NULL;
|
||||
|
||||
-- 角色菜单关联表
|
||||
ALTER TABLE `sys_role_menu`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `role_id`,
|
||||
ADD INDEX `idx_role_menu_tenant_id` (`tenant_id`);
|
||||
|
||||
UPDATE `sys_role_menu` SET `tenant_id` = 1 WHERE `tenant_id` IS NULL;
|
||||
|
||||
-- 部门表
|
||||
ALTER TABLE `sys_dept`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `id`,
|
||||
ADD INDEX `idx_tenant_id` (`tenant_id`);
|
||||
|
||||
UPDATE `sys_dept` SET `tenant_id` = 1 WHERE `tenant_id` IS NULL;
|
||||
|
||||
-- 通知公告表
|
||||
ALTER TABLE `sys_notice`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `id`,
|
||||
ADD INDEX `idx_tenant_id` (`tenant_id`);
|
||||
|
||||
UPDATE `sys_notice` SET `tenant_id` = 1 WHERE `tenant_id` IS NULL;
|
||||
|
||||
-- 系统日志表
|
||||
ALTER TABLE `sys_log`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `id`,
|
||||
ADD INDEX `idx_tenant_id` (`tenant_id`);
|
||||
|
||||
UPDATE `sys_log` SET `tenant_id` = 1 WHERE `tenant_id` IS NULL;
|
||||
|
||||
-- AI 命令记录表
|
||||
ALTER TABLE `ai_command_record`
|
||||
ADD COLUMN `tenant_id` bigint DEFAULT 1 COMMENT '租户ID' AFTER `id`,
|
||||
ADD INDEX `idx_tenant_id` (`tenant_id`);
|
||||
|
||||
UPDATE `ai_command_record` SET `tenant_id` = 1 WHERE `tenant_id` IS NULL;
|
||||
|
||||
|
||||
-- ============================================
|
||||
-- 4. 添加租户管理菜单和权限(仅在菜单不存在时添加)
|
||||
-- ============================================
|
||||
-- 租户管理主菜单(放在部门管理之后,字典管理之前,ID=6)
|
||||
INSERT INTO `sys_menu` (`id`, `parent_id`, `tree_path`, `name`, `type`, `route_name`, `route_path`, `component`, `perm`, `always_show`, `keep_alive`, `visible`, `sort`, `icon`, `redirect`, `create_time`, `update_time`, `params`)
|
||||
VALUES (6, 1, '0,1', '租户管理', 1, 'Tenant', 'tenant', 'system/tenant/index', NULL, NULL, NULL, 1, 5, 'el-icon-OfficeBuilding', NULL, NOW(), NOW(), NULL)
|
||||
ON DUPLICATE KEY UPDATE `name` = '租户管理';
|
||||
|
||||
|
||||
-- 租户管理权限按钮(ID: 141-145)
|
||||
INSERT INTO `sys_menu` (`id`, `parent_id`, `tree_path`, `name`, `type`, `route_name`, `route_path`, `component`, `perm`, `always_show`, `keep_alive`, `visible`, `sort`, `icon`, `redirect`, `create_time`, `update_time`, `params`)
|
||||
VALUES
|
||||
(141, 6, '0,1,6', '租户查询', 4, NULL, '', NULL, 'sys:tenant:query', NULL, NULL, 1, 1, '', NULL, NOW(), NOW(), NULL),
|
||||
(142, 6, '0,1,6', '租户新增', 4, NULL, '', NULL, 'sys:tenant:add', NULL, NULL, 1, 2, '', NULL, NOW(), NOW(), NULL),
|
||||
(143, 6, '0,1,6', '租户编辑', 4, NULL, '', NULL, 'sys:tenant:edit', NULL, NULL, 1, 3, '', NULL, NOW(), NOW(), NULL),
|
||||
(144, 6, '0,1,6', '租户删除', 4, NULL, '', NULL, 'sys:tenant:delete', NULL, NULL, 1, 4, '', NULL, NOW(), NOW(), NULL),
|
||||
(145, 6, '0,1,6', '租户启用/禁用', 4, NULL, '', NULL, 'sys:tenant:status', NULL, NULL, 1, 5, '', NULL, NOW(), NOW(), NULL)
|
||||
ON DUPLICATE KEY UPDATE `name` = VALUES(`name`);
|
||||
|
||||
-- 为系统管理员角色(role_id=2)分配租户管理菜单权限
|
||||
INSERT INTO `sys_role_menu` (`role_id`, `menu_id`)
|
||||
VALUES
|
||||
(2, 6),
|
||||
(2, 141),
|
||||
(2, 142),
|
||||
(2, 143),
|
||||
(2, 144),
|
||||
(2, 145)
|
||||
ON DUPLICATE KEY UPDATE `role_id` = VALUES(`role_id`);
|
||||
|
||||
SET FOREIGN_KEY_CHECKS = 1;
|
||||
@@ -1,71 +0,0 @@
|
||||
-- ============================================
|
||||
-- 多租户移除脚本(移除多租户功能)
|
||||
-- ============================================
|
||||
-- 说明:此脚本用于移除多租户功能,删除 tenant_id 字段和相关表
|
||||
-- 适用场景:不再需要多租户功能,需要回退到单租户模式
|
||||
-- 执行前请确保已备份数据库!
|
||||
-- 警告:此操作不可逆,请谨慎执行!
|
||||
-- ============================================
|
||||
|
||||
USE youlai_admin;
|
||||
|
||||
SET FOREIGN_KEY_CHECKS = 0;
|
||||
|
||||
-- ============================================
|
||||
-- 1. 删除租户表(可选)
|
||||
-- ============================================
|
||||
-- 注意:如果将来可能再次启用多租户,建议保留此表
|
||||
-- 如需删除,取消下面的注释
|
||||
-- DROP TABLE IF EXISTS `sys_tenant`;
|
||||
|
||||
-- ============================================
|
||||
-- 2. 移除业务表的 tenant_id 字段和索引
|
||||
-- ============================================
|
||||
-- 注意:如果字段不存在会报错,请根据实际情况调整
|
||||
|
||||
-- 用户表
|
||||
-- 先删除组合唯一索引
|
||||
ALTER TABLE `sys_user` DROP INDEX `uk_username_tenant`;
|
||||
-- 删除租户ID索引和字段
|
||||
ALTER TABLE `sys_user` DROP INDEX `idx_tenant_id`;
|
||||
ALTER TABLE `sys_user` DROP COLUMN `tenant_id`;
|
||||
-- 恢复原来的用户名唯一索引
|
||||
ALTER TABLE `sys_user` ADD UNIQUE KEY `login_name` (`username`);
|
||||
|
||||
-- 角色表
|
||||
ALTER TABLE `sys_role` DROP INDEX `idx_tenant_id`;
|
||||
ALTER TABLE `sys_role` DROP COLUMN `tenant_id`;
|
||||
|
||||
-- 角色菜单关联表
|
||||
ALTER TABLE `sys_role_menu` DROP INDEX `idx_role_menu_tenant_id`;
|
||||
ALTER TABLE `sys_role_menu` DROP COLUMN `tenant_id`;
|
||||
|
||||
-- 部门表
|
||||
ALTER TABLE `sys_dept` DROP INDEX `idx_tenant_id`;
|
||||
ALTER TABLE `sys_dept` DROP COLUMN `tenant_id`;
|
||||
|
||||
-- 通知公告表
|
||||
ALTER TABLE `sys_notice` DROP INDEX `idx_tenant_id`;
|
||||
ALTER TABLE `sys_notice` DROP COLUMN `tenant_id`;
|
||||
|
||||
-- 系统日志表
|
||||
ALTER TABLE `sys_log` DROP INDEX `idx_tenant_id`;
|
||||
ALTER TABLE `sys_log` DROP COLUMN `tenant_id`;
|
||||
|
||||
-- AI 命令记录表
|
||||
ALTER TABLE `ai_command_record` DROP INDEX `idx_tenant_id`;
|
||||
ALTER TABLE `ai_command_record` DROP COLUMN `tenant_id`;
|
||||
|
||||
-- ============================================
|
||||
-- 3. 删除租户管理菜单和权限
|
||||
-- ============================================
|
||||
-- 删除角色菜单关联
|
||||
DELETE FROM `sys_role_menu` WHERE `menu_id` IN (6, 141, 142, 143, 144, 145);
|
||||
|
||||
-- 删除租户管理权限按钮
|
||||
DELETE FROM `sys_menu` WHERE `id` IN (141, 142, 143, 144, 145);
|
||||
|
||||
-- 删除租户管理主菜单
|
||||
DELETE FROM `sys_menu` WHERE `id` = 6;
|
||||
|
||||
SET FOREIGN_KEY_CHECKS = 1;
|
||||
@@ -136,125 +136,116 @@ CREATE TABLE `sys_menu` (
|
||||
-- ----------------------------
|
||||
-- Records of sys_menu
|
||||
-- ----------------------------
|
||||
-- 顶级目录(1-10):平台/系统/代码生成/AI助手/文档/接口文档/组件/演示/多级/路由
|
||||
INSERT INTO `sys_menu` VALUES (1, 0, '0', '平台管理', 'C', '', '/platform', 'Layout', NULL, NULL, NULL, 1, 1, 'platform', '/platform/tenant', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2, 0, '0', '系统管理', 'C', '', '/system', 'Layout', NULL, NULL, NULL, 1, 2, 'system', '/system/user', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (3, 0, '0', '代码生成', 'C', '', '/gen', 'Layout', NULL, NULL, NULL, 1, 3, 'code', '/gen/index', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (4, 0, '0', 'AI助手', 'C', '', '/ai', 'Layout', NULL, NULL, NULL, 1, 4, 'platform', '/ai/command-record', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (5, 0, '0', '平台文档', 'C', '', '/doc', 'Layout', NULL, NULL, NULL, 1, 5, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (6, 0, '0', '接口文档', 'C', '', '/api', 'Layout', NULL, NULL, NULL, 1, 6, 'api', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (7, 0, '0', '组件封装', 'C', '', '/component', 'Layout', NULL, NULL, NULL, 1, 7, 'menu', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (8, 0, '0', '功能演示', 'C', '', '/function', 'Layout', NULL, NULL, NULL, 1, 8, 'menu', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (9, 0, '0', '多级菜单', 'C', NULL, '/multi-level', 'Layout', NULL, 1, NULL, 1, 9, 'cascader', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (10, 0, '0', '路由参数', 'C', '', '/route-param', 'Layout', NULL, NULL, NULL, 1, 10, 'el-icon-ElementPlus', '', now(), now(), NULL);
|
||||
-- 顶级目录(1-9):系统/代码生成/AI助手/文档/接口文档/组件/演示/多级/路由
|
||||
INSERT INTO `sys_menu` VALUES (1, 0, '0', '系统管理', 'C', '', '/system', 'Layout', NULL, NULL, NULL, 1, 1, 'system', '/system/user', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2, 0, '0', '代码生成', 'C', '', '/gen', 'Layout', NULL, NULL, NULL, 1, 2, 'code', '/gen/index', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (3, 0, '0', 'AI助手', 'C', '', '/ai', 'Layout', NULL, NULL, NULL, 1, 3, 'platform', '/ai/command-record', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (4, 0, '0', '平台文档', 'C', '', '/doc', 'Layout', NULL, NULL, NULL, 1, 4, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (5, 0, '0', '接口文档', 'C', '', '/api', 'Layout', NULL, NULL, NULL, 1, 5, 'api', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (6, 0, '0', '组件封装', 'C', '', '/component', 'Layout', NULL, NULL, NULL, 1, 6, 'menu', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (7, 0, '0', '功能演示', 'C', '', '/function', 'Layout', NULL, NULL, NULL, 1, 7, 'menu', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (8, 0, '0', '多级菜单', 'C', NULL, '/multi-level', 'Layout', NULL, 1, NULL, 1, 8, 'cascader', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (9, 0, '0', '路由参数', 'C', '', '/route-param', 'Layout', NULL, NULL, NULL, 1, 9, 'el-icon-ElementPlus', '', now(), now(), NULL);
|
||||
|
||||
-- 平台管理(平台方)
|
||||
INSERT INTO `sys_menu` VALUES (110, 1, '0,1', '租户管理', 'M', 'Tenant', 'tenant', 'system/tenant/index', NULL, NULL, 1, 1, 1, 'el-icon-OfficeBuilding', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (1101, 110, '0,1,110', '租户查询', 'B', NULL, '', NULL, 'sys:tenant:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (1102, 110, '0,1,110', '租户新增', 'B', NULL, '', NULL, 'sys:tenant:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (1103, 110, '0,1,110', '租户编辑', 'B', NULL, '', NULL, 'sys:tenant:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (1104, 110, '0,1,110', '租户删除', 'B', NULL, '', NULL, 'sys:tenant:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (1105, 110, '0,1,110', '租户启用/禁用', 'B', NULL, '', NULL, 'sys:tenant:change-status', NULL, NULL, 1, 5, '', NULL, now(), now(), NULL);
|
||||
-- 系统管理
|
||||
INSERT INTO `sys_menu` VALUES (210, 1, '0,1', '用户管理', 'M', 'User', 'user', 'system/user/index', NULL, NULL, 1, 1, 1, 'el-icon-User', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2101, 210, '0,1,210', '用户查询', 'B', NULL, '', NULL, 'sys:user:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2102, 210, '0,1,210', '用户新增', 'B', NULL, '', NULL, 'sys:user:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2103, 210, '0,1,210', '用户编辑', 'B', NULL, '', NULL, 'sys:user:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2104, 210, '0,1,210', '用户删除', 'B', NULL, '', NULL, 'sys:user:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2105, 210, '0,1,210', '重置密码', 'B', NULL, '', NULL, 'sys:user:reset-password', NULL, NULL, 1, 5, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2106, 210, '0,1,210', '用户导入', 'B', NULL, '', NULL, 'sys:user:import', NULL, NULL, 1, 6, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2107, 210, '0,1,210', '用户导出', 'B', NULL, '', NULL, 'sys:user:export', NULL, NULL, 1, 7, '', NULL, now(), now(), NULL);
|
||||
|
||||
-- 系统管理(租户侧)
|
||||
INSERT INTO `sys_menu` VALUES (210, 2, '0,2', '用户管理', 'M', 'User', 'user', 'system/user/index', NULL, NULL, 1, 1, 1, 'el-icon-User', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2101, 210, '0,2,210', '用户查询', 'B', NULL, '', NULL, 'sys:user:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2102, 210, '0,2,210', '用户新增', 'B', NULL, '', NULL, 'sys:user:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2103, 210, '0,2,210', '用户编辑', 'B', NULL, '', NULL, 'sys:user:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2104, 210, '0,2,210', '用户删除', 'B', NULL, '', NULL, 'sys:user:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2105, 210, '0,2,210', '重置密码', 'B', NULL, '', NULL, 'sys:user:reset-password', NULL, NULL, 1, 5, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2106, 210, '0,2,210', '用户导入', 'B', NULL, '', NULL, 'sys:user:import', NULL, NULL, 1, 6, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2107, 210, '0,2,210', '用户导出', 'B', NULL, '', NULL, 'sys:user:export', NULL, NULL, 1, 7, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (220, 1, '0,1', '角色管理', 'M', 'Role', 'role', 'system/role/index', NULL, NULL, 1, 1, 2, 'role', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2201, 220, '0,1,220', '角色查询', 'B', NULL, '', NULL, 'sys:role:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2202, 220, '0,1,220', '角色新增', 'B', NULL, '', NULL, 'sys:role:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2203, 220, '0,1,220', '角色编辑', 'B', NULL, '', NULL, 'sys:role:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2204, 220, '0,1,220', '角色删除', 'B', NULL, '', NULL, 'sys:role:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
|
||||
INSERT INTO `sys_menu` VALUES (220, 2, '0,2', '角色管理', 'M', 'Role', 'role', 'system/role/index', NULL, NULL, 1, 1, 2, 'role', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2201, 220, '0,2,220', '角色查询', 'B', NULL, '', NULL, 'sys:role:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2202, 220, '0,2,220', '角色新增', 'B', NULL, '', NULL, 'sys:role:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2203, 220, '0,2,220', '角色编辑', 'B', NULL, '', NULL, 'sys:role:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2204, 220, '0,2,220', '角色删除', 'B', NULL, '', NULL, 'sys:role:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (230, 1, '0,1', '菜单管理', 'M', 'SysMenu', 'menu', 'system/menu/index', NULL, NULL, 1, 1, 3, 'menu', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2301, 230, '0,1,230', '菜单查询', 'B', NULL, '', NULL, 'sys:menu:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2302, 230, '0,1,230', '菜单新增', 'B', NULL, '', NULL, 'sys:menu:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2303, 230, '0,1,230', '菜单编辑', 'B', NULL, '', NULL, 'sys:menu:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2304, 230, '0,1,230', '菜单删除', 'B', NULL, '', NULL, 'sys:menu:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
|
||||
INSERT INTO `sys_menu` VALUES (230, 2, '0,2', '菜单管理', 'M', 'SysMenu', 'menu', 'system/menu/index', NULL, NULL, 1, 1, 3, 'menu', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2301, 230, '0,2,230', '菜单查询', 'B', NULL, '', NULL, 'sys:menu:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2302, 230, '0,2,230', '菜单新增', 'B', NULL, '', NULL, 'sys:menu:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2303, 230, '0,2,230', '菜单编辑', 'B', NULL, '', NULL, 'sys:menu:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2304, 230, '0,2,230', '菜单删除', 'B', NULL, '', NULL, 'sys:menu:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (240, 1, '0,1', '部门管理', 'M', 'Dept', 'dept', 'system/dept/index', NULL, NULL, 1, 1, 4, 'tree', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2401, 240, '0,1,240', '部门查询', 'B', NULL, '', NULL, 'sys:dept:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2402, 240, '0,1,240', '部门新增', 'B', NULL, '', NULL, 'sys:dept:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2403, 240, '0,1,240', '部门编辑', 'B', NULL, '', NULL, 'sys:dept:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2404, 240, '0,1,240', '部门删除', 'B', NULL, '', NULL, 'sys:dept:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
|
||||
INSERT INTO `sys_menu` VALUES (240, 2, '0,2', '部门管理', 'M', 'Dept', 'dept', 'system/dept/index', NULL, NULL, 1, 1, 4, 'tree', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2401, 240, '0,2,240', '部门查询', 'B', NULL, '', NULL, 'sys:dept:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2402, 240, '0,2,240', '部门新增', 'B', NULL, '', NULL, 'sys:dept:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2403, 240, '0,2,240', '部门编辑', 'B', NULL, '', NULL, 'sys:dept:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2404, 240, '0,2,240', '部门删除', 'B', NULL, '', NULL, 'sys:dept:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (250, 1, '0,1', '字典管理', 'M', 'Dict', 'dict', 'system/dict/index', NULL, NULL, 1, 1, 5, 'dict', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2501, 250, '0,1,250', '字典查询', 'B', NULL, '', NULL, 'sys:dict:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2502, 250, '0,1,250', '字典新增', 'B', NULL, '', NULL, 'sys:dict:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2503, 250, '0,1,250', '字典编辑', 'B', NULL, '', NULL, 'sys:dict:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2504, 250, '0,1,250', '字典删除', 'B', NULL, '', NULL, 'sys:dict:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
|
||||
INSERT INTO `sys_menu` VALUES (250, 2, '0,2', '字典管理', 'M', 'Dict', 'dict', 'system/dict/index', NULL, NULL, 1, 1, 5, 'dict', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2501, 250, '0,2,250', '字典查询', 'B', NULL, '', NULL, 'sys:dict:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2502, 250, '0,2,250', '字典新增', 'B', NULL, '', NULL, 'sys:dict:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2503, 250, '0,2,250', '字典编辑', 'B', NULL, '', NULL, 'sys:dict:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2504, 250, '0,2,250', '字典删除', 'B', NULL, '', NULL, 'sys:dict:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (251, 250, '0,1,250,251', '字典项', 'M', 'DictItem', 'dict-item', 'system/dict/dict-item', NULL, 0, 1, 0, 6, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2511, 251, '0,1,250,251', '字典项查询', 'B', NULL, '', NULL, 'sys:dict-item:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2512, 251, '0,1,250,251', '字典项新增', 'B', NULL, '', NULL, 'sys:dict-item:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2513, 251, '0,1,250,251', '字典项编辑', 'B', NULL, '', NULL, 'sys:dict-item:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2514, 251, '0,1,250,251', '字典项删除', 'B', NULL, '', NULL, 'sys:dict-item:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
|
||||
INSERT INTO `sys_menu` VALUES (251, 250, '0,2,250,251', '字典项', 'M', 'DictItem', 'dict-item', 'system/dict/dict-item', NULL, 0, 1, 0, 6, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2511, 251, '0,2,250,251', '字典项查询', 'B', NULL, '', NULL, 'sys:dict-item:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2512, 251, '0,2,250,251', '字典项新增', 'B', NULL, '', NULL, 'sys:dict-item:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2513, 251, '0,2,250,251', '字典项编辑', 'B', NULL, '', NULL, 'sys:dict-item:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2514, 251, '0,2,250,251', '字典项删除', 'B', NULL, '', NULL, 'sys:dict-item:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (260, 1, '0,1', '系统日志', 'M', 'Log', 'log', 'system/log/index', NULL, 0, 1, 1, 7, 'document', NULL, now(), now(), NULL);
|
||||
|
||||
INSERT INTO `sys_menu` VALUES (260, 2, '0,2', '系统日志', 'M', 'Log', 'log', 'system/log/index', NULL, 0, 1, 1, 7, 'document', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (270, 1, '0,1', '系统配置', 'M', 'Config', 'config', 'system/config/index', NULL, 0, 1, 1, 8, 'setting', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2701, 270, '0,1,270', '系统配置查询', 'B', NULL, '', NULL, 'sys:config:list', 0, 1, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2702, 270, '0,1,270', '系统配置新增', 'B', NULL, '', NULL, 'sys:config:create', 0, 1, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2703, 270, '0,1,270', '系统配置修改', 'B', NULL, '', NULL, 'sys:config:update', 0, 1, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2704, 270, '0,1,270', '系统配置删除', 'B', NULL, '', NULL, 'sys:config:delete', 0, 1, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2705, 270, '0,1,270', '系统配置刷新', 'B', NULL, '', NULL, 'sys:config:refresh', 0, 1, 1, 5, '', NULL, now(), now(), NULL);
|
||||
|
||||
INSERT INTO `sys_menu` VALUES (270, 2, '0,2', '系统配置', 'M', 'Config', 'config', 'system/config/index', NULL, 0, 1, 1, 8, 'setting', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2701, 270, '0,2,270', '系统配置查询', 'B', NULL, '', NULL, 'sys:config:list', 0, 1, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2702, 270, '0,2,270', '系统配置新增', 'B', NULL, '', NULL, 'sys:config:create', 0, 1, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2703, 270, '0,2,270', '系统配置修改', 'B', NULL, '', NULL, 'sys:config:update', 0, 1, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2704, 270, '0,2,270', '系统配置删除', 'B', NULL, '', NULL, 'sys:config:delete', 0, 1, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2705, 270, '0,2,270', '系统配置刷新', 'B', NULL, '', NULL, 'sys:config:refresh', 0, 1, 1, 5, '', NULL, now(), now(), NULL);
|
||||
|
||||
INSERT INTO `sys_menu` VALUES (280, 2, '0,2', '通知公告', 'M', 'Notice', 'notice', 'system/notice/index', NULL, NULL, NULL, 1, 9, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2801, 280, '0,2,280', '通知查询', 'B', NULL, '', NULL, 'sys:notice:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2802, 280, '0,2,280', '通知新增', 'B', NULL, '', NULL, 'sys:notice:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2803, 280, '0,2,280', '通知编辑', 'B', NULL, '', NULL, 'sys:notice:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2804, 280, '0,2,280', '通知删除', 'B', NULL, '', NULL, 'sys:notice:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2805, 280, '0,2,280', '通知发布', 'B', NULL, '', NULL, 'sys:notice:publish', 0, 1, 1, 5, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2806, 280, '0,2,280', '通知撤回', 'B', NULL, '', NULL, 'sys:notice:revoke', 0, 1, 1, 6, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (280, 1, '0,1', '通知公告', 'M', 'Notice', 'notice', 'system/notice/index', NULL, NULL, NULL, 1, 9, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2801, 280, '0,1,280', '通知查询', 'B', NULL, '', NULL, 'sys:notice:list', NULL, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2802, 280, '0,1,280', '通知新增', 'B', NULL, '', NULL, 'sys:notice:create', NULL, NULL, 1, 2, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2803, 280, '0,1,280', '通知编辑', 'B', NULL, '', NULL, 'sys:notice:update', NULL, NULL, 1, 3, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2804, 280, '0,1,280', '通知删除', 'B', NULL, '', NULL, 'sys:notice:delete', NULL, NULL, 1, 4, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2805, 280, '0,1,280', '通知发布', 'B', NULL, '', NULL, 'sys:notice:publish', 0, 1, 1, 5, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (2806, 280, '0,1,280', '通知撤回', 'B', NULL, '', NULL, 'sys:notice:revoke', 0, 1, 1, 6, '', NULL, now(), now(), NULL);
|
||||
|
||||
-- 代码生成
|
||||
INSERT INTO `sys_menu` VALUES (310, 3, '0,3', '代码生成', 'M', 'Gen', 'gen', 'gen/index', NULL, NULL, 1, 1, 1, 'code', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (310, 2, '0,2', '代码生成', 'M', 'Gen', 'gen', 'gen/index', NULL, NULL, 1, 1, 1, 'code', NULL, now(), now(), NULL);
|
||||
|
||||
-- AI 助手
|
||||
INSERT INTO `sys_menu` VALUES (401, 4, '0,4', 'AI命令记录', 'M', 'AiCommandRecord', 'command-record', 'ai/command-record/index', NULL, NULL, 1, 1, 1, 'document', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (401, 3, '0,3', 'AI命令记录', 'M', 'AiCommandRecord', 'command-record', 'ai/command-record/index', NULL, NULL, 1, 1, 1, 'document', NULL, now(), now(), NULL);
|
||||
|
||||
-- 平台文档(外链通过 route_path 识别)
|
||||
INSERT INTO `sys_menu` VALUES (501, 5, '0,5', '平台文档(外链)', 'M', NULL, 'https://juejin.cn/post/7228990409909108793', '', NULL, NULL, NULL, 1, 1, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (502, 5, '0,5', '后端文档', 'M', NULL, 'https://youlai.blog.csdn.net/article/details/145178880', '', NULL, NULL, NULL, 1, 2, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (503, 5, '0,5', '移动端文档', 'M', NULL, 'https://youlai.blog.csdn.net/article/details/143222890', '', NULL, NULL, NULL, 1, 3, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (504, 5, '0,5', '内部文档', 'M', NULL, 'internal-doc', 'demo/internal-doc', NULL, NULL, NULL, 1, 4, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (501, 4, '0,4', '平台文档(外链)', 'M', NULL, 'https://juejin.cn/post/7228990409909108793', '', NULL, NULL, NULL, 1, 1, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (502, 4, '0,4', '后端文档', 'M', NULL, 'https://youlai.blog.csdn.net/article/details/145178880', '', NULL, NULL, NULL, 1, 2, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (503, 4, '0,4', '移动端文档', 'M', NULL, 'https://youlai.blog.csdn.net/article/details/143222890', '', NULL, NULL, NULL, 1, 3, 'document', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (504, 4, '0,4', '内部文档', 'M', NULL, 'internal-doc', 'demo/internal-doc', NULL, NULL, NULL, 1, 4, 'document', '', now(), now(), NULL);
|
||||
|
||||
-- 接口文档
|
||||
INSERT INTO `sys_menu` VALUES (601, 6, '0,6', 'Apifox', 'M', 'Apifox', 'apifox', 'demo/api/apifox', NULL, NULL, 1, 1, 1, 'api', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (601, 5, '0,5', 'Apifox', 'M', 'Apifox', 'apifox', 'demo/api/apifox', NULL, NULL, 1, 1, 1, 'api', '', now(), now(), NULL);
|
||||
|
||||
-- 组件封装
|
||||
INSERT INTO `sys_menu` VALUES (701, 7, '0,7', '富文本编辑器', 'M', 'WangEditor', 'wang-editor', 'demo/wang-editor', NULL, NULL, 1, 1, 2, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (702, 7, '0,7', '图片上传', 'M', 'Upload', 'upload', 'demo/upload', NULL, NULL, 1, 1, 3, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (703, 7, '0,7', '图标选择器', 'M', 'IconSelect', 'icon-select', 'demo/icon-select', NULL, NULL, 1, 1, 4, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (704, 7, '0,7', '字典组件', 'M', 'DictDemo', 'dict-demo', 'demo/dictionary', NULL, NULL, 1, 1, 4, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (705, 7, '0,7', '增删改查', 'M', 'Curd', 'curd', 'demo/curd/index', NULL, NULL, 1, 1, 0, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (706, 7, '0,7', '列表选择器', 'M', 'TableSelect', 'table-select', 'demo/table-select/index', NULL, NULL, 1, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (707, 7, '0,7', '拖拽组件', 'M', 'Drag', 'drag', 'demo/drag', NULL, NULL, NULL, 1, 5, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (708, 7, '0,7', '滚动文本', 'M', 'TextScroll', 'text-scroll', 'demo/text-scroll', NULL, NULL, NULL, 1, 6, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (709, 7, '0,7', '自适应表格操作列', 'M', 'AutoOperationColumn', 'operation-column', 'demo/auto-operation-column', NULL, NULL, 1, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (701, 6, '0,6', '富文本编辑器', 'M', 'WangEditor', 'wang-editor', 'demo/wang-editor', NULL, NULL, 1, 1, 2, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (702, 6, '0,6', '图片上传', 'M', 'Upload', 'upload', 'demo/upload', NULL, NULL, 1, 1, 3, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (703, 6, '0,6', '图标选择器', 'M', 'IconSelect', 'icon-select', 'demo/icon-select', NULL, NULL, 1, 1, 4, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (704, 6, '0,6', '字典组件', 'M', 'DictDemo', 'dict-demo', 'demo/dictionary', NULL, NULL, 1, 1, 4, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (705, 6, '0,6', '增删改查', 'M', 'Curd', 'curd', 'demo/curd/index', NULL, NULL, 1, 1, 0, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (706, 6, '0,6', '列表选择器', 'M', 'TableSelect', 'table-select', 'demo/table-select/index', NULL, NULL, 1, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (707, 6, '0,6', '拖拽组件', 'M', 'Drag', 'drag', 'demo/drag', NULL, NULL, NULL, 1, 5, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (708, 6, '0,6', '滚动文本', 'M', 'TextScroll', 'text-scroll', 'demo/text-scroll', NULL, NULL, NULL, 1, 6, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (709, 6, '0,6', '自适应表格操作列', 'M', 'AutoOperationColumn', 'operation-column', 'demo/auto-operation-column', NULL, NULL, 1, 1, 1, '', '', now(), now(), NULL);
|
||||
|
||||
-- 功能演示
|
||||
INSERT INTO `sys_menu` VALUES (801, 8, '0,8', 'Websocket', 'M', 'WebSocket', '/function/websocket', 'demo/websocket', NULL, NULL, 1, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (802, 8, '0,8', 'Icons', 'M', 'IconDemo', 'icon-demo', 'demo/icons', NULL, NULL, 1, 1, 2, 'el-icon-Notification', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (803, 8, '0,8', '字典实时同步', 'M', 'DictSync', 'dict-sync', 'demo/dict-sync', NULL, NULL, NULL, 1, 3, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (804, 8, '0,8', 'VxeTable', 'M', 'VxeTable', 'vxe-table', 'demo/vxe-table/index', NULL, NULL, 1, 1, 4, 'el-icon-MagicStick', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (805, 8, '0,8', 'CURD单文件', 'M', 'CurdSingle', 'curd-single', 'demo/curd-single', NULL, NULL, 1, 1, 5, 'el-icon-Reading', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (801, 7, '0,7', 'Websocket', 'M', 'WebSocket', '/function/websocket', 'demo/websocket', NULL, NULL, 1, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (802, 7, '0,7', 'Icons', 'M', 'IconDemo', 'icon-demo', 'demo/icons', NULL, NULL, 1, 1, 2, 'el-icon-Notification', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (803, 7, '0,7', '字典实时同步', 'M', 'DictSync', 'dict-sync', 'demo/dict-sync', NULL, NULL, NULL, 1, 3, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (804, 7, '0,7', 'VxeTable', 'M', 'VxeTable', 'vxe-table', 'demo/vxe-table/index', NULL, NULL, 1, 1, 4, 'el-icon-MagicStick', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (805, 7, '0,7', 'CURD单文件', 'M', 'CurdSingle', 'curd-single', 'demo/curd-single', NULL, NULL, 1, 1, 5, 'el-icon-Reading', '', now(), now(), NULL);
|
||||
|
||||
-- 多级菜单示例
|
||||
INSERT INTO `sys_menu` VALUES (910, 9, '0,9', '菜单一级', 'C', NULL, 'multi-level1', 'Layout', NULL, 1, NULL, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (911, 910, '0,9,910', '菜单二级', 'C', NULL, 'multi-level2', 'Layout', NULL, 0, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (912, 911, '0,9,910,911', '菜单三级-1', 'M', NULL, 'multi-level3-1', 'demo/multi-level/children/children/level3-1', NULL, 0, 1, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (913, 911, '0,9,910,911', '菜单三级-2', 'M', NULL, 'multi-level3-2', 'demo/multi-level/children/children/level3-2', NULL, 0, 1, 1, 2, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (910, 8, '0,8', '菜单一级', 'C', NULL, 'multi-level1', 'Layout', NULL, 1, NULL, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (911, 910, '0,8,910', '菜单二级', 'C', NULL, 'multi-level2', 'Layout', NULL, 0, NULL, 1, 1, '', NULL, now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (912, 911, '0,8,910,911', '菜单三级-1', 'M', NULL, 'multi-level3-1', 'demo/multi-level/children/children/level3-1', NULL, 0, 1, 1, 1, '', '', now(), now(), NULL);
|
||||
INSERT INTO `sys_menu` VALUES (913, 911, '0,8,910,911', '菜单三级-2', 'M', NULL, 'multi-level3-2', 'demo/multi-level/children/children/level3-2', NULL, 0, 1, 1, 2, '', '', now(), now(), NULL);
|
||||
|
||||
-- 路由参数
|
||||
INSERT INTO `sys_menu` VALUES (1001, 10, '0,10', '参数(type=1)', 'M', 'RouteParamType1', 'route-param-type1', 'demo/route-param', NULL, 0, 1, 1, 1, 'el-icon-Star', NULL, now(), now(), '{\"type\": \"1\"}');
|
||||
INSERT INTO `sys_menu` VALUES (1002, 10, '0,10', '参数(type=2)', 'M', 'RouteParamType2', 'route-param-type2', 'demo/route-param', NULL, 0, 1, 1, 2, 'el-icon-StarFilled', NULL, now(), now(), '{\"type\": \"2\"}');
|
||||
INSERT INTO `sys_menu` VALUES (1001, 9, '0,9', '参数(type=1)', 'M', 'RouteParamType1', 'route-param-type1', 'demo/route-param', NULL, 0, 1, 1, 1, 'el-icon-Star', NULL, now(), now(), '{\"type\": \"1\"}');
|
||||
INSERT INTO `sys_menu` VALUES (1002, 9, '0,9', '参数(type=2)', 'M', 'RouteParamType2', 'route-param-type2', 'demo/route-param', NULL, 0, 1, 1, 2, 'el-icon-StarFilled', NULL, now(), now(), '{\"type\": \"2\"}');
|
||||
|
||||
-- ----------------------------
|
||||
-- Table structure for sys_role
|
||||
@@ -306,9 +297,7 @@ CREATE TABLE `sys_role_menu` (
|
||||
-- ============================================
|
||||
-- 系统管理员角色菜单权限(role_id=2)
|
||||
-- 顶级目录
|
||||
INSERT INTO `sys_role_menu` VALUES (2, 1), (2, 2), (2, 3), (2, 4), (2, 5), (2, 6), (2, 7), (2, 8), (2, 9), (2, 10);
|
||||
-- 平台管理
|
||||
INSERT INTO `sys_role_menu` VALUES (2, 110), (2, 1101), (2, 1102), (2, 1103), (2, 1104), (2, 1105);
|
||||
INSERT INTO `sys_role_menu` VALUES (2, 1), (2, 2), (2, 3), (2, 4), (2, 5), (2, 6), (2, 7), (2, 8), (2, 9);
|
||||
-- 系统管理
|
||||
INSERT INTO `sys_role_menu` VALUES (2, 210), (2, 2101), (2, 2102), (2, 2103), (2, 2104), (2, 2105), (2, 2106), (2, 2107);
|
||||
INSERT INTO `sys_role_menu` VALUES (2, 220), (2, 2201), (2, 2202), (2, 2203), (2, 2204);
|
||||
|
||||
@@ -1,21 +1,14 @@
|
||||
package com.youlai.boot.auth.controller;
|
||||
|
||||
import com.youlai.boot.auth.model.vo.CaptchaVO;
|
||||
import com.youlai.boot.auth.model.vo.ChooseTenantVO;
|
||||
import com.youlai.boot.auth.model.dto.LoginRequest;
|
||||
import com.youlai.boot.auth.model.dto.WxMiniAppPhoneLoginDTO;
|
||||
import com.youlai.boot.common.enums.LogModuleEnum;
|
||||
import com.youlai.boot.config.property.TenantProperties;
|
||||
import com.youlai.boot.core.web.Result;
|
||||
import com.youlai.boot.auth.service.AuthService;
|
||||
import com.youlai.boot.auth.model.dto.WxMiniAppCodeLoginDTO;
|
||||
import com.youlai.boot.common.annotation.Log;
|
||||
import com.youlai.boot.core.web.ResultCode;
|
||||
import com.youlai.boot.security.model.AuthenticationToken;
|
||||
import com.youlai.boot.system.model.entity.User;
|
||||
import com.youlai.boot.system.model.vo.TenantVO;
|
||||
import com.youlai.boot.system.service.TenantService;
|
||||
import com.youlai.boot.system.service.UserService;
|
||||
import io.swagger.v3.oas.annotations.Operation;
|
||||
import io.swagger.v3.oas.annotations.Parameter;
|
||||
import io.swagger.v3.oas.annotations.tags.Tag;
|
||||
@@ -25,8 +18,6 @@ import lombok.extern.slf4j.Slf4j;
|
||||
import org.springframework.security.crypto.password.PasswordEncoder;
|
||||
import org.springframework.web.bind.annotation.*;
|
||||
|
||||
import java.util.List;
|
||||
import java.util.stream.Collectors;
|
||||
|
||||
|
||||
/**
|
||||
@@ -43,9 +34,6 @@ import java.util.stream.Collectors;
|
||||
public class AuthController {
|
||||
|
||||
private final AuthService authService;
|
||||
private final UserService userService;
|
||||
private final TenantService tenantService;
|
||||
private final TenantProperties tenantProperties;
|
||||
|
||||
@Operation(summary = "获取验证码")
|
||||
@GetMapping("/captcha")
|
||||
@@ -60,59 +48,8 @@ public class AuthController {
|
||||
public Result<?> login(@RequestBody @Valid LoginRequest request) {
|
||||
String username = request.getUsername();
|
||||
String password = request.getPassword();
|
||||
Long tenantId = request.getTenantId();
|
||||
|
||||
// 如果未启用多租户,直接登录
|
||||
if (tenantProperties == null || !Boolean.TRUE.equals(tenantProperties.getEnabled())) {
|
||||
AuthenticationToken authenticationToken = authService.login(username, password, null);
|
||||
return Result.success(authenticationToken);
|
||||
}
|
||||
|
||||
// 多租户模式:如果指定了租户ID,直接验证该租户下的密码
|
||||
if (tenantId != null) {
|
||||
AuthenticationToken authenticationToken = authService.login(username, password, tenantId);
|
||||
return Result.success(authenticationToken);
|
||||
}
|
||||
|
||||
// 多租户模式:未指定租户ID,查询该用户名在所有租户下的账户
|
||||
List<User> users = userService.findUserAcrossAllTenants(username);
|
||||
|
||||
if (users.isEmpty()) {
|
||||
return Result.failed("用户不存在");
|
||||
}
|
||||
|
||||
// 过滤出正常状态的用户
|
||||
List<User> activeUsers = users.stream()
|
||||
.filter(user -> user.getStatus() != null && user.getStatus() == 1)
|
||||
.toList();
|
||||
|
||||
if (activeUsers.isEmpty()) {
|
||||
return Result.failed("用户已被禁用");
|
||||
}
|
||||
|
||||
// 如果只有1个租户,尝试验证该租户下的密码(兼容性)
|
||||
if (activeUsers.size() == 1) {
|
||||
User user = activeUsers.get(0);
|
||||
// 登录(Spring Security 会验证密码)
|
||||
AuthenticationToken authenticationToken = authService.login(username, password, user.getTenantId());
|
||||
return Result.success(authenticationToken);
|
||||
}
|
||||
|
||||
// 如果多个租户,返回 choose_tenant 响应(含 tenants 列表)
|
||||
// 注意:此时不验证密码,直接返回租户列表让用户选择
|
||||
List<TenantVO> tenants = activeUsers.stream()
|
||||
.map(user -> tenantService.getTenantById(user.getTenantId()))
|
||||
.filter(tenant -> tenant != null && (tenant.getStatus() == null || tenant.getStatus() == 1))
|
||||
.distinct() // 去重(理论上不会有重复,但保险起见)
|
||||
.collect(Collectors.toList());
|
||||
|
||||
if (tenants.isEmpty()) {
|
||||
return Result.failed("用户所属的租户均不可用");
|
||||
}
|
||||
|
||||
// 返回 choose_tenant 响应
|
||||
ChooseTenantVO chooseTenantVO = new ChooseTenantVO(tenants);
|
||||
return Result.failed(ResultCode.CHOOSE_TENANT, chooseTenantVO);
|
||||
AuthenticationToken authenticationToken = authService.login(username, password);
|
||||
return Result.success(authenticationToken);
|
||||
}
|
||||
|
||||
@Operation(summary = "短信验证码登录")
|
||||
|
||||
@@ -28,8 +28,5 @@ public class LoginRequest {
|
||||
|
||||
@Schema(description = "验证码", example = "1234")
|
||||
private String captchaCode;
|
||||
|
||||
@Schema(description = "租户ID(可选,多租户模式下用于指定租户)", example = "1")
|
||||
private Long tenantId;
|
||||
}
|
||||
|
||||
|
||||
@@ -1,27 +0,0 @@
|
||||
package com.youlai.boot.auth.model.vo;
|
||||
|
||||
import com.youlai.boot.system.model.vo.TenantVO;
|
||||
import io.swagger.v3.oas.annotations.media.Schema;
|
||||
import lombok.AllArgsConstructor;
|
||||
import lombok.Data;
|
||||
import lombok.NoArgsConstructor;
|
||||
|
||||
import java.io.Serializable;
|
||||
import java.util.List;
|
||||
|
||||
/**
|
||||
* 选择租户响应VO
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Data
|
||||
@NoArgsConstructor
|
||||
@AllArgsConstructor
|
||||
@Schema(description = "选择租户响应")
|
||||
public class ChooseTenantVO implements Serializable {
|
||||
|
||||
@Schema(description = "租户列表")
|
||||
private List<TenantVO> tenants;
|
||||
}
|
||||
|
||||
@@ -18,10 +18,9 @@ public interface AuthService {
|
||||
*
|
||||
* @param username 用户名
|
||||
* @param password 密码
|
||||
* @param tenantId 租户ID(可选,多租户模式下用于指定租户)
|
||||
* @return 登录结果
|
||||
*/
|
||||
AuthenticationToken login(String username, String password, Long tenantId);
|
||||
AuthenticationToken login(String username, String password);
|
||||
|
||||
/**
|
||||
* 登出
|
||||
|
||||
@@ -21,7 +21,6 @@ import com.youlai.boot.security.model.WxMiniAppCodeAuthenticationToken;
|
||||
import com.youlai.boot.security.model.WxMiniAppPhoneAuthenticationToken;
|
||||
import com.youlai.boot.security.token.TokenManager;
|
||||
import com.youlai.boot.security.util.SecurityUtils;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import lombok.RequiredArgsConstructor;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
import org.springframework.data.redis.core.RedisTemplate;
|
||||
@@ -62,16 +61,10 @@ public class AuthServiceImpl implements AuthService {
|
||||
*
|
||||
* @param username 用户名
|
||||
* @param password 密码
|
||||
* @param tenantId 租户ID(可选,多租户模式下用于指定租户)
|
||||
* @return 访问令牌
|
||||
*/
|
||||
@Override
|
||||
public AuthenticationToken login(String username, String password, Long tenantId) {
|
||||
// 如果指定了租户ID,需要先设置租户上下文,以便查询该租户下的用户
|
||||
if (tenantId != null) {
|
||||
com.youlai.boot.common.tenant.TenantContextHolder.setTenantId(tenantId);
|
||||
}
|
||||
|
||||
public AuthenticationToken login(String username, String password) {
|
||||
// 1. 创建用于密码认证的令牌(未认证)
|
||||
UsernamePasswordAuthenticationToken authenticationToken =
|
||||
new UsernamePasswordAuthenticationToken(username.trim(), password);
|
||||
|
||||
@@ -1,22 +0,0 @@
|
||||
package com.youlai.boot.common.annotation;
|
||||
|
||||
import java.lang.annotation.ElementType;
|
||||
import java.lang.annotation.Retention;
|
||||
import java.lang.annotation.RetentionPolicy;
|
||||
import java.lang.annotation.Target;
|
||||
|
||||
/**
|
||||
* 忽略多租户注解
|
||||
* <p>
|
||||
* 标注在方法或类上,表示该方法或类下的所有方法忽略多租户过滤
|
||||
* 适用于系统管理、租户管理等不需要租户隔离的场景
|
||||
* </p>
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Target({ElementType.METHOD, ElementType.TYPE})
|
||||
@Retention(RetentionPolicy.RUNTIME)
|
||||
public @interface IgnoreTenant {
|
||||
}
|
||||
|
||||
@@ -13,7 +13,6 @@ import java.time.LocalDateTime;
|
||||
* 基础实体类
|
||||
*
|
||||
* <p>实体类的基类,包含了实体类的公共属性,如创建时间、更新时间、逻辑删除标识等</p>
|
||||
* <p>多租户模式下,会自动添加 tenant_id 字段(通过 MyMetaObjectHandler 自动填充)</p>
|
||||
*
|
||||
* @author Ray
|
||||
* @since 2024/6/23
|
||||
@@ -30,26 +29,6 @@ public class BaseEntity implements Serializable {
|
||||
@TableId(type = IdType.AUTO)
|
||||
private Long id;
|
||||
|
||||
/**
|
||||
* 租户ID(多租户模式)
|
||||
* <p>
|
||||
* 注意:此字段仅在启用多租户时生效
|
||||
* 通过 MyMetaObjectHandler 自动填充,无需手动设置
|
||||
* 如果不需要多租户,可以通过配置 youlai.tenant.enabled=false 禁用
|
||||
* </p>
|
||||
* <p>
|
||||
* 重要说明:
|
||||
* 1. 默认使用 exist = false 标记字段不存在于数据库,避免单租户模式下报错
|
||||
* 2. 在启用多租户时,需要确保数据库表中有 tenant_id 字段
|
||||
* 3. 多租户的数据隔离主要通过 TenantLineHandler 自动添加 WHERE 条件实现
|
||||
* 4. 如果需要在 INSERT 时写入 tenant_id,请将 exist 改为 true 或移除 exist 属性
|
||||
* 5. 或者执行 add_tenant_column.sql 脚本为表添加 tenant_id 字段
|
||||
* </p>
|
||||
*/
|
||||
@TableField(value = "tenant_id", exist = false)
|
||||
@JsonInclude(value = JsonInclude.Include.NON_NULL)
|
||||
private Long tenantId;
|
||||
|
||||
/**
|
||||
* 创建时间
|
||||
*/
|
||||
|
||||
@@ -35,11 +35,6 @@ public interface JwtClaimConstants {
|
||||
*/
|
||||
String AUTHORITIES = "authorities";
|
||||
|
||||
/**
|
||||
* 租户ID
|
||||
*/
|
||||
String TENANT_ID = "tenantId";
|
||||
|
||||
/**
|
||||
* 安全版本号,用于按用户失效历史令牌
|
||||
*/
|
||||
|
||||
@@ -1,83 +0,0 @@
|
||||
package com.youlai.boot.common.tenant;
|
||||
|
||||
import com.alibaba.ttl.TransmittableThreadLocal;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
|
||||
/**
|
||||
* 租户上下文工具类
|
||||
* <p>
|
||||
* 使用 TransmittableThreadLocal 存储当前线程的租户ID,确保线程安全
|
||||
* 支持异步任务、线程池、消息队列等场景的上下文传递
|
||||
* </p>
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Slf4j
|
||||
public class TenantContextHolder {
|
||||
|
||||
/**
|
||||
* 租户ID线程本地变量
|
||||
* 使用 TransmittableThreadLocal 支持父子线程和线程池场景的值传递
|
||||
*/
|
||||
private static final TransmittableThreadLocal<Long> TENANT_ID_HOLDER = new TransmittableThreadLocal<>();
|
||||
|
||||
/**
|
||||
* 忽略租户标志(用于某些场景下临时跳过租户过滤)
|
||||
*/
|
||||
private static final TransmittableThreadLocal<Boolean> IGNORE_TENANT_HOLDER = new TransmittableThreadLocal<>();
|
||||
|
||||
/**
|
||||
* 设置当前租户ID
|
||||
*
|
||||
* @param tenantId 租户ID
|
||||
*/
|
||||
public static void setTenantId(Long tenantId) {
|
||||
if (tenantId != null) {
|
||||
TENANT_ID_HOLDER.set(tenantId);
|
||||
log.debug("设置当前租户ID: {}", tenantId);
|
||||
}
|
||||
}
|
||||
|
||||
/**
|
||||
* 获取当前租户ID
|
||||
*
|
||||
* @return 租户ID,如果未设置则返回 null
|
||||
*/
|
||||
public static Long getTenantId() {
|
||||
return TENANT_ID_HOLDER.get();
|
||||
}
|
||||
|
||||
/**
|
||||
* 设置忽略租户标志
|
||||
*
|
||||
* @param ignore 是否忽略
|
||||
*/
|
||||
public static void setIgnoreTenant(boolean ignore) {
|
||||
IGNORE_TENANT_HOLDER.set(ignore);
|
||||
log.debug("设置忽略租户标志: {}", ignore);
|
||||
}
|
||||
|
||||
/**
|
||||
* 是否忽略租户
|
||||
*
|
||||
* @return true-忽略,false-不忽略
|
||||
*/
|
||||
public static boolean isIgnoreTenant() {
|
||||
Boolean ignore = IGNORE_TENANT_HOLDER.get();
|
||||
return ignore != null && ignore;
|
||||
}
|
||||
|
||||
/**
|
||||
* 清除当前线程的租户上下文
|
||||
* <p>
|
||||
* 必须在请求结束时调用,避免线程池复用导致的数据泄露
|
||||
* </p>
|
||||
*/
|
||||
public static void clear() {
|
||||
TENANT_ID_HOLDER.remove();
|
||||
IGNORE_TENANT_HOLDER.remove();
|
||||
log.debug("清除租户上下文");
|
||||
}
|
||||
}
|
||||
|
||||
@@ -5,11 +5,8 @@ import com.baomidou.mybatisplus.core.config.GlobalConfig;
|
||||
import com.baomidou.mybatisplus.extension.plugins.MybatisPlusInterceptor;
|
||||
import com.baomidou.mybatisplus.extension.plugins.inner.DataPermissionInterceptor;
|
||||
import com.baomidou.mybatisplus.extension.plugins.inner.PaginationInnerInterceptor;
|
||||
import com.baomidou.mybatisplus.extension.plugins.inner.TenantLineInnerInterceptor;
|
||||
import com.youlai.boot.config.property.TenantProperties;
|
||||
import com.youlai.boot.plugin.mybatis.MyDataPermissionHandler;
|
||||
import com.youlai.boot.plugin.mybatis.MyMetaObjectHandler;
|
||||
import com.youlai.boot.plugin.mybatis.MyTenantLineHandler;
|
||||
import org.apache.ibatis.mapping.DatabaseIdProvider;
|
||||
import org.apache.ibatis.mapping.VendorDatabaseIdProvider;
|
||||
import org.springframework.beans.factory.annotation.Autowired;
|
||||
@@ -33,27 +30,13 @@ public class MybatisConfig {
|
||||
@Value("${app.db-type:mysql}")
|
||||
private String dbType;
|
||||
|
||||
@Autowired(required = false)
|
||||
private MyTenantLineHandler myTenantLineHandler;
|
||||
|
||||
@Autowired(required = false)
|
||||
private TenantProperties tenantProperties;
|
||||
|
||||
/**
|
||||
* 分页插件和数据权限插件
|
||||
* <p>
|
||||
* 如果启用了多租户,则添加多租户插件(必须在最前面)
|
||||
* </p>
|
||||
*/
|
||||
@Bean
|
||||
public MybatisPlusInterceptor mybatisPlusInterceptor() {
|
||||
MybatisPlusInterceptor interceptor = new MybatisPlusInterceptor();
|
||||
|
||||
// 多租户插件(如果启用,必须在最前面)
|
||||
if (tenantProperties != null && Boolean.TRUE.equals(tenantProperties.getEnabled()) && myTenantLineHandler != null) {
|
||||
interceptor.addInnerInterceptor(new TenantLineInnerInterceptor(myTenantLineHandler));
|
||||
}
|
||||
|
||||
// 数据权限
|
||||
interceptor.addInnerInterceptor(new DataPermissionInterceptor(new MyDataPermissionHandler()));
|
||||
|
||||
|
||||
@@ -1,76 +0,0 @@
|
||||
package com.youlai.boot.config;
|
||||
|
||||
import com.baomidou.mybatisplus.core.metadata.TableFieldInfo;
|
||||
import com.baomidou.mybatisplus.core.metadata.TableInfo;
|
||||
import com.baomidou.mybatisplus.core.metadata.TableInfoHelper;
|
||||
import com.youlai.boot.config.property.TenantProperties;
|
||||
import lombok.RequiredArgsConstructor;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
import org.springframework.beans.factory.InitializingBean;
|
||||
import org.springframework.boot.autoconfigure.condition.ConditionalOnProperty;
|
||||
import org.springframework.stereotype.Component;
|
||||
|
||||
import java.lang.reflect.Field;
|
||||
import java.util.List;
|
||||
|
||||
/**
|
||||
* 多租户动态字段配置
|
||||
* <p>
|
||||
* 在多租户模式启用时,动态修改 BaseEntity 中 tenant_id 字段的 exist 属性为 true
|
||||
* 这样可以实现:
|
||||
* - 单租户模式:tenant_id exist=false,不映射该字段,兼容没有该字段的表
|
||||
* - 多租户模式:tenant_id exist=true,自动填充租户ID到INSERT/UPDATE语句
|
||||
* </p>
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Slf4j
|
||||
@Component
|
||||
@RequiredArgsConstructor
|
||||
@ConditionalOnProperty(prefix = "youlai.tenant", name = "enabled", havingValue = "true")
|
||||
public class TenantDynamicFieldConfig implements InitializingBean {
|
||||
|
||||
private final TenantProperties tenantProperties;
|
||||
|
||||
@Override
|
||||
public void afterPropertiesSet() {
|
||||
log.info("多租户模式已启用,开始动态配置 tenant_id 字段映射...");
|
||||
|
||||
int modifiedCount = 0;
|
||||
List<TableInfo> tableInfos = TableInfoHelper.getTableInfos();
|
||||
|
||||
for (TableInfo tableInfo : tableInfos) {
|
||||
// 检查是否是忽略的表
|
||||
String tableName = tableInfo.getTableName();
|
||||
if (tenantProperties.getIgnoreTables().contains(tableName)) {
|
||||
log.debug("表 {} 在忽略列表中,跳过 tenant_id 字段配置", tableName);
|
||||
continue;
|
||||
}
|
||||
|
||||
// 查找 tenant_id 字段
|
||||
TableFieldInfo tenantField = tableInfo.getFieldList().stream()
|
||||
.filter(field -> tenantProperties.getColumn().equals(field.getColumn()))
|
||||
.findFirst()
|
||||
.orElse(null);
|
||||
|
||||
if (tenantField != null) {
|
||||
try {
|
||||
// 通过反射修改 exist 属性为 true
|
||||
Field existField = TableFieldInfo.class.getDeclaredField("exist");
|
||||
existField.setAccessible(true);
|
||||
existField.set(tenantField, true);
|
||||
|
||||
modifiedCount++;
|
||||
log.debug("已为表 {} 启用 tenant_id 字段映射", tableName);
|
||||
} catch (NoSuchFieldException | IllegalAccessException e) {
|
||||
log.warn("修改表 {} 的 tenant_id 字段配置失败: {}", tableName, e.getMessage());
|
||||
}
|
||||
} else {
|
||||
log.warn("表 {} 未找到 tenant_id 字段,请检查实体类是否继承 BaseEntity", tableName);
|
||||
}
|
||||
}
|
||||
|
||||
log.info("多租户字段配置完成,共修改 {} 张表", modifiedCount);
|
||||
}
|
||||
}
|
||||
@@ -1,52 +0,0 @@
|
||||
package com.youlai.boot.config.property;
|
||||
|
||||
import lombok.Data;
|
||||
import org.springframework.boot.context.properties.ConfigurationProperties;
|
||||
import org.springframework.stereotype.Component;
|
||||
|
||||
import java.util.ArrayList;
|
||||
import java.util.List;
|
||||
|
||||
/**
|
||||
* 多租户配置属性
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Data
|
||||
@Component
|
||||
@ConfigurationProperties(prefix = "youlai.tenant")
|
||||
public class TenantProperties {
|
||||
|
||||
/**
|
||||
* 是否启用多租户功能
|
||||
* 默认:false(不启用)
|
||||
*/
|
||||
private Boolean enabled = false;
|
||||
|
||||
/**
|
||||
* 租户字段名
|
||||
* 默认:tenant_id
|
||||
*/
|
||||
private String column = "tenant_id";
|
||||
|
||||
/**
|
||||
* 默认租户ID(用于兼容旧数据,tenant_id 为 NULL 时使用)
|
||||
* 默认:1
|
||||
*/
|
||||
private Long defaultTenantId = 1L;
|
||||
|
||||
/**
|
||||
* 忽略多租户过滤的表名列表
|
||||
* 系统表、租户表等不需要租户隔离的表
|
||||
*/
|
||||
private List<String> ignoreTables = new ArrayList<>();
|
||||
|
||||
/**
|
||||
* 请求头中的租户ID字段名
|
||||
* 默认:tenant-id
|
||||
*/
|
||||
private String headerName = "tenant-id";
|
||||
|
||||
}
|
||||
|
||||
@@ -1,46 +0,0 @@
|
||||
package com.youlai.boot.core.aspect;
|
||||
|
||||
import com.youlai.boot.common.annotation.IgnoreTenant;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
import org.aspectj.lang.ProceedingJoinPoint;
|
||||
import org.aspectj.lang.annotation.Around;
|
||||
import org.aspectj.lang.annotation.Aspect;
|
||||
import org.springframework.boot.autoconfigure.condition.ConditionalOnProperty;
|
||||
import org.springframework.core.annotation.Order;
|
||||
import org.springframework.stereotype.Component;
|
||||
|
||||
/**
|
||||
* 多租户切面
|
||||
* <p>
|
||||
* 处理 @IgnoreTenant 注解,临时跳过租户过滤
|
||||
* </p>
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Aspect
|
||||
@Component
|
||||
@Order(1)
|
||||
@Slf4j
|
||||
@ConditionalOnProperty(prefix = "youlai.tenant", name = "enabled", havingValue = "true", matchIfMissing = false)
|
||||
public class TenantAspect {
|
||||
|
||||
/**
|
||||
* 环绕通知:处理 @IgnoreTenant 注解
|
||||
*/
|
||||
@Around("@annotation(ignoreTenant) || @within(ignoreTenant)")
|
||||
public Object around(ProceedingJoinPoint joinPoint, IgnoreTenant ignoreTenant) throws Throwable {
|
||||
try {
|
||||
// 设置忽略租户标志
|
||||
TenantContextHolder.setIgnoreTenant(true);
|
||||
log.debug("方法 {} 忽略多租户过滤", joinPoint.getSignature().getName());
|
||||
// 执行原方法
|
||||
return joinPoint.proceed();
|
||||
} finally {
|
||||
// 恢复租户过滤
|
||||
TenantContextHolder.setIgnoreTenant(false);
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
@@ -6,7 +6,7 @@ import com.youlai.boot.common.constant.RedisConstants;
|
||||
import com.youlai.boot.common.constant.SystemConstants;
|
||||
import com.youlai.boot.core.web.ResultCode;
|
||||
import com.youlai.boot.common.util.IPUtils;
|
||||
import com.youlai.boot.core.web.WebResponseHelper;
|
||||
import com.youlai.boot.core.web.WebResponseWriter;
|
||||
import com.youlai.boot.system.service.ConfigService;
|
||||
import jakarta.servlet.FilterChain;
|
||||
import jakarta.servlet.ServletException;
|
||||
@@ -88,7 +88,7 @@ public class RateLimiterFilter extends OncePerRequestFilter {
|
||||
// 判断是否限流
|
||||
if (rateLimit(ip)) {
|
||||
// 返回限流错误信息
|
||||
WebResponseHelper.writeError(response, ResultCode.REQUEST_CONCURRENCY_LIMIT_EXCEEDED);
|
||||
WebResponseWriter.writeError(response, ResultCode.REQUEST_CONCURRENCY_LIMIT_EXCEEDED);
|
||||
return;
|
||||
}
|
||||
|
||||
|
||||
@@ -1,97 +0,0 @@
|
||||
package com.youlai.boot.core.filter;
|
||||
|
||||
import com.youlai.boot.common.constant.SecurityConstants;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.config.property.TenantProperties;
|
||||
import com.youlai.boot.security.model.SysUserDetails;
|
||||
import com.youlai.boot.security.token.TokenManager;
|
||||
import jakarta.servlet.FilterChain;
|
||||
import jakarta.servlet.ServletException;
|
||||
import jakarta.servlet.http.HttpServletRequest;
|
||||
import jakarta.servlet.http.HttpServletResponse;
|
||||
import lombok.RequiredArgsConstructor;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
import org.springframework.boot.autoconfigure.condition.ConditionalOnProperty;
|
||||
import org.springframework.core.annotation.Order;
|
||||
import org.springframework.security.core.Authentication;
|
||||
import org.springframework.security.core.context.SecurityContextHolder;
|
||||
import org.springframework.stereotype.Component;
|
||||
import org.springframework.util.StringUtils;
|
||||
import org.springframework.web.filter.OncePerRequestFilter;
|
||||
|
||||
import java.io.IOException;
|
||||
|
||||
/**
|
||||
* 租户上下文过滤器
|
||||
* <p>
|
||||
* 从请求头中获取租户ID,设置到线程上下文
|
||||
* 请求结束时自动清除上下文,避免线程池复用导致的数据泄露
|
||||
* </p>
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Slf4j
|
||||
@Component
|
||||
@Order(1) // 确保在其他过滤器之前执行
|
||||
@RequiredArgsConstructor
|
||||
@ConditionalOnProperty(prefix = "youlai.tenant", name = "enabled", havingValue = "true", matchIfMissing = false)
|
||||
public class TenantContextFilter extends OncePerRequestFilter {
|
||||
|
||||
private final TenantProperties tenantProperties;
|
||||
private final TokenManager tokenManager;
|
||||
|
||||
@Override
|
||||
protected void doFilterInternal(HttpServletRequest request, HttpServletResponse response, FilterChain filterChain)
|
||||
throws ServletException, IOException {
|
||||
|
||||
try {
|
||||
// 1) 优先从已认证用户中获取租户ID
|
||||
Long tenantId = resolveTenantFromAuthentication(SecurityContextHolder.getContext().getAuthentication());
|
||||
|
||||
// 2) 如果尚未获取到,尝试从 Token 中解析
|
||||
if (tenantId == null) {
|
||||
tenantId = resolveTenantFromToken(request);
|
||||
}
|
||||
|
||||
// 3) 仍为空则使用默认租户
|
||||
if (tenantId == null) {
|
||||
Long defaultTenantId = tenantProperties.getDefaultTenantId();
|
||||
if (defaultTenantId != null) {
|
||||
tenantId = defaultTenantId;
|
||||
}
|
||||
}
|
||||
|
||||
if (tenantId != null) {
|
||||
TenantContextHolder.setTenantId(tenantId);
|
||||
log.debug("TenantContextFilter set tenantId: {}", tenantId);
|
||||
}
|
||||
|
||||
filterChain.doFilter(request, response);
|
||||
} finally {
|
||||
TenantContextHolder.clear();
|
||||
}
|
||||
}
|
||||
|
||||
private Long resolveTenantFromAuthentication(Authentication authentication) {
|
||||
if (authentication == null) {
|
||||
return null;
|
||||
}
|
||||
Object principal = authentication.getPrincipal();
|
||||
if (principal instanceof SysUserDetails details) {
|
||||
return details.getTenantId();
|
||||
}
|
||||
return null;
|
||||
}
|
||||
|
||||
private Long resolveTenantFromToken(HttpServletRequest request) {
|
||||
String authHeader = request.getHeader("Authorization");
|
||||
if (!StringUtils.hasText(authHeader) || !authHeader.startsWith(SecurityConstants.BEARER_TOKEN_PREFIX)) {
|
||||
return null;
|
||||
}
|
||||
String token = authHeader.substring(SecurityConstants.BEARER_TOKEN_PREFIX.length());
|
||||
Authentication authentication = tokenManager.parseToken(token);
|
||||
return resolveTenantFromAuthentication(authentication);
|
||||
}
|
||||
}
|
||||
|
||||
@@ -76,9 +76,6 @@ public enum ResultCode implements IResultCode, Serializable {
|
||||
USER_VERIFICATION_CODE_ATTEMPT_LIMIT_EXCEEDED("A0241", "用户验证码尝试次数超限"),
|
||||
USER_VERIFICATION_CODE_EXPIRED("A0242", "用户验证码过期"),
|
||||
|
||||
// 多租户登录
|
||||
CHOOSE_TENANT("A0250", "请选择登录租户"),
|
||||
|
||||
/** 二级宏观错误码 */
|
||||
ACCESS_PERMISSION_EXCEPTION("A0300", "访问权限异常"),
|
||||
ACCESS_UNAUTHORIZED("A0301", "访问未授权"),
|
||||
|
||||
@@ -1,77 +0,0 @@
|
||||
package com.youlai.boot.core.web;
|
||||
|
||||
import cn.hutool.extra.servlet.JakartaServletUtil;
|
||||
import cn.hutool.json.JSONUtil;
|
||||
import jakarta.servlet.http.HttpServletResponse;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
import org.springframework.http.HttpStatus;
|
||||
import org.springframework.http.MediaType;
|
||||
|
||||
import java.nio.charset.StandardCharsets;
|
||||
|
||||
/**
|
||||
* Web响应辅助类
|
||||
* <p>
|
||||
* 用于在过滤器、处理器等无法使用 @RestControllerAdvice 的场景中统一处理响应
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 2.0.0
|
||||
*/
|
||||
@Slf4j
|
||||
public class WebResponseHelper {
|
||||
|
||||
/**
|
||||
* 写入错误响应
|
||||
*
|
||||
* @param response HttpServletResponse
|
||||
* @param resultCode 响应结果码
|
||||
*/
|
||||
public static void writeError(HttpServletResponse response, ResultCode resultCode) {
|
||||
writeError(response, resultCode, null);
|
||||
}
|
||||
|
||||
/**
|
||||
* 写入错误响应(带自定义消息)
|
||||
*
|
||||
* @param response HttpServletResponse
|
||||
* @param resultCode 响应结果码
|
||||
* @param message 自定义消息
|
||||
*/
|
||||
public static void writeError(HttpServletResponse response, ResultCode resultCode, String message) {
|
||||
try {
|
||||
// 设置HTTP状态码
|
||||
int httpStatus = mapHttpStatus(resultCode);
|
||||
response.setStatus(httpStatus);
|
||||
response.setCharacterEncoding(StandardCharsets.UTF_8.toString());
|
||||
// 构建响应对象
|
||||
Result<?> result = message == null
|
||||
? Result.failed(resultCode)
|
||||
: Result.failed(resultCode, message);
|
||||
|
||||
// 写入响应
|
||||
JakartaServletUtil.write(response,
|
||||
JSONUtil.toJsonStr(result),
|
||||
MediaType.APPLICATION_JSON_VALUE
|
||||
);
|
||||
|
||||
} catch (Exception e) {
|
||||
log.error("写入错误响应失败: resultCode={}, message={}", resultCode, message, e);
|
||||
}
|
||||
}
|
||||
|
||||
/**
|
||||
* 根据业务结果码映射HTTP状态码
|
||||
*
|
||||
* @param resultCode 业务结果码
|
||||
* @return HTTP状态码
|
||||
*/
|
||||
private static int mapHttpStatus(ResultCode resultCode) {
|
||||
return switch (resultCode) {
|
||||
case ACCESS_UNAUTHORIZED,
|
||||
ACCESS_TOKEN_INVALID,
|
||||
REFRESH_TOKEN_INVALID -> HttpStatus.UNAUTHORIZED.value();
|
||||
default -> HttpStatus.BAD_REQUEST.value();
|
||||
};
|
||||
}
|
||||
}
|
||||
|
||||
122
src/main/java/com/youlai/boot/core/web/WebResponseWriter.java
Normal file
122
src/main/java/com/youlai/boot/core/web/WebResponseWriter.java
Normal file
@@ -0,0 +1,122 @@
|
||||
package com.youlai.boot.core.web;
|
||||
|
||||
import cn.hutool.extra.servlet.JakartaServletUtil;
|
||||
import cn.hutool.json.JSONUtil;
|
||||
import jakarta.servlet.http.HttpServletResponse;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
import org.springframework.http.HttpStatus;
|
||||
import org.springframework.http.MediaType;
|
||||
|
||||
import java.nio.charset.StandardCharsets;
|
||||
|
||||
/**
|
||||
* Web响应写入器
|
||||
* <p>
|
||||
* 用于在过滤器、Security处理器等无法使用 @RestControllerAdvice 的场景中统一写入HTTP响应。
|
||||
* 支持写入成功响应和错误响应。
|
||||
* 此类为工具类,所有方法均为静态方法,禁止实例化。
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 2.0.0
|
||||
*/
|
||||
@Slf4j
|
||||
public final class WebResponseWriter {
|
||||
|
||||
/**
|
||||
* 私有构造函数,防止实例化
|
||||
*/
|
||||
private WebResponseWriter() {
|
||||
throw new UnsupportedOperationException("工具类不允许实例化");
|
||||
}
|
||||
|
||||
/**
|
||||
* 写入成功响应
|
||||
*
|
||||
* @param response HttpServletResponse
|
||||
* @param data 响应数据(可选)
|
||||
*/
|
||||
public static void writeSuccess(HttpServletResponse response, Object data) {
|
||||
writeResult(response, Result.success(data), HttpStatus.OK.value());
|
||||
}
|
||||
|
||||
/**
|
||||
* 写入成功响应(无数据)
|
||||
*
|
||||
* @param response HttpServletResponse
|
||||
*/
|
||||
public static void writeSuccess(HttpServletResponse response) {
|
||||
writeSuccess(response, null);
|
||||
}
|
||||
|
||||
/**
|
||||
* 写入错误响应
|
||||
*
|
||||
* @param response HttpServletResponse
|
||||
* @param resultCode 响应结果码
|
||||
*/
|
||||
public static void writeError(HttpServletResponse response, ResultCode resultCode) {
|
||||
writeError(response, resultCode, null);
|
||||
}
|
||||
|
||||
/**
|
||||
* 写入错误响应(带自定义消息)
|
||||
*
|
||||
* @param response HttpServletResponse
|
||||
* @param resultCode 响应结果码
|
||||
* @param message 自定义消息(可选,为 null 时使用 resultCode 的默认消息)
|
||||
*/
|
||||
public static void writeError(HttpServletResponse response, ResultCode resultCode, String message) {
|
||||
Result<?> result = message == null
|
||||
? Result.failed(resultCode)
|
||||
: Result.failed(resultCode, message);
|
||||
|
||||
int httpStatus = mapHttpStatus(resultCode);
|
||||
writeResult(response, result, httpStatus);
|
||||
}
|
||||
|
||||
/**
|
||||
* 写入响应结果(通用方法)
|
||||
*
|
||||
* @param response HttpServletResponse
|
||||
* @param result 响应结果对象
|
||||
* @param httpStatus HTTP状态码
|
||||
*/
|
||||
private static void writeResult(HttpServletResponse response, Result<?> result, int httpStatus) {
|
||||
try {
|
||||
// 设置HTTP状态码
|
||||
response.setStatus(httpStatus);
|
||||
|
||||
// 设置响应编码和内容类型
|
||||
response.setCharacterEncoding(StandardCharsets.UTF_8.toString());
|
||||
response.setContentType(MediaType.APPLICATION_JSON_VALUE);
|
||||
|
||||
// 写入响应
|
||||
JakartaServletUtil.write(response,
|
||||
JSONUtil.toJsonStr(result),
|
||||
MediaType.APPLICATION_JSON_VALUE
|
||||
);
|
||||
|
||||
} catch (Exception e) {
|
||||
log.error("写入响应时发生未知异常: httpStatus={}, result={}", httpStatus, result, e);
|
||||
}
|
||||
}
|
||||
|
||||
/**
|
||||
* 根据业务结果码映射HTTP状态码
|
||||
*
|
||||
* @param resultCode 业务结果码
|
||||
* @return HTTP状态码
|
||||
*/
|
||||
private static int mapHttpStatus(ResultCode resultCode) {
|
||||
return switch (resultCode) {
|
||||
case ACCESS_UNAUTHORIZED,
|
||||
ACCESS_TOKEN_INVALID,
|
||||
REFRESH_TOKEN_INVALID -> HttpStatus.UNAUTHORIZED.value();
|
||||
default -> HttpStatus.BAD_REQUEST.value();
|
||||
};
|
||||
}
|
||||
}
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -1,8 +1,6 @@
|
||||
package com.youlai.boot.plugin.mybatis;
|
||||
|
||||
import com.baomidou.mybatisplus.core.handlers.MetaObjectHandler;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.config.property.TenantProperties;
|
||||
import lombok.RequiredArgsConstructor;
|
||||
import org.apache.ibatis.reflection.MetaObject;
|
||||
import org.springframework.beans.factory.annotation.Autowired;
|
||||
@@ -13,7 +11,7 @@ import java.time.LocalDateTime;
|
||||
/**
|
||||
* mybatis-plus 字段自动填充
|
||||
* <p>
|
||||
* 支持自动填充创建时间、更新时间和租户ID
|
||||
* 支持自动填充创建时间、更新时间
|
||||
* </p>
|
||||
*
|
||||
* @author Ray.Hao
|
||||
@@ -23,15 +21,8 @@ import java.time.LocalDateTime;
|
||||
@RequiredArgsConstructor
|
||||
public class MyMetaObjectHandler implements MetaObjectHandler {
|
||||
|
||||
@Autowired(required = false)
|
||||
private TenantProperties tenantProperties;
|
||||
|
||||
/**
|
||||
* 新增填充创建时间、更新时间和租户ID
|
||||
* <p>
|
||||
* 多租户模式下,tenant_id 字段的 exist 属性会被 TenantDynamicFieldConfig 动态设置为 true,
|
||||
* 因此这里的 strictInsertFill 可以正常工作
|
||||
* </p>
|
||||
* 新增填充创建时间、更新时间
|
||||
*
|
||||
* @param metaObject 元数据
|
||||
*/
|
||||
@@ -39,21 +30,6 @@ public class MyMetaObjectHandler implements MetaObjectHandler {
|
||||
public void insertFill(MetaObject metaObject) {
|
||||
this.strictInsertFill(metaObject, "createTime", LocalDateTime::now, LocalDateTime.class);
|
||||
this.strictUpdateFill(metaObject, "updateTime", LocalDateTime::now, LocalDateTime.class);
|
||||
|
||||
// 如果启用了多租户,自动填充租户ID
|
||||
if (tenantProperties != null && Boolean.TRUE.equals(tenantProperties.getEnabled())) {
|
||||
Long tenantId = TenantContextHolder.getTenantId();
|
||||
if (tenantId == null) {
|
||||
// 如果上下文中没有租户ID,使用默认租户ID
|
||||
tenantId = tenantProperties.getDefaultTenantId();
|
||||
}
|
||||
if (tenantId != null) {
|
||||
// 使用 strictInsertFill 自动填充租户ID
|
||||
// 注意:由于 TenantDynamicFieldConfig 已将 exist 设置为 true,这里可以正常填充
|
||||
Long finalTenantId = tenantId;
|
||||
this.strictInsertFill(metaObject, "tenantId", () -> finalTenantId, Long.class);
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
/**
|
||||
|
||||
@@ -1,90 +0,0 @@
|
||||
package com.youlai.boot.plugin.mybatis;
|
||||
|
||||
import com.baomidou.mybatisplus.extension.plugins.handler.TenantLineHandler;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.config.property.TenantProperties;
|
||||
import lombok.RequiredArgsConstructor;
|
||||
import net.sf.jsqlparser.expression.Expression;
|
||||
import net.sf.jsqlparser.expression.LongValue;
|
||||
import net.sf.jsqlparser.expression.NullValue;
|
||||
import org.springframework.boot.autoconfigure.condition.ConditionalOnProperty;
|
||||
import org.springframework.stereotype.Component;
|
||||
|
||||
import java.util.List;
|
||||
|
||||
/**
|
||||
* MyBatis-Plus 多租户处理器
|
||||
* <p>
|
||||
* 实现 TenantLineHandler 接口,自动为 SQL 添加租户过滤条件
|
||||
* 仅在启用多租户时注册(通过 @ConditionalOnProperty 控制)
|
||||
* </p>
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Component
|
||||
@RequiredArgsConstructor
|
||||
@ConditionalOnProperty(prefix = "youlai.tenant", name = "enabled", havingValue = "true", matchIfMissing = false)
|
||||
public class MyTenantLineHandler implements TenantLineHandler {
|
||||
|
||||
private final TenantProperties tenantProperties;
|
||||
|
||||
/**
|
||||
* 获取租户ID表达式
|
||||
* <p>
|
||||
* 从 TenantContextHolder 获取当前租户ID
|
||||
* 如果未设置或忽略租户,返回 NULL(不添加租户条件)
|
||||
* </p>
|
||||
*
|
||||
* @return 租户ID表达式
|
||||
*/
|
||||
@Override
|
||||
public Expression getTenantId() {
|
||||
// 如果设置了忽略租户标志,返回 NULL(不添加租户条件)
|
||||
if (TenantContextHolder.isIgnoreTenant()) {
|
||||
return new NullValue();
|
||||
}
|
||||
|
||||
// 获取当前租户ID
|
||||
Long tenantId = TenantContextHolder.getTenantId();
|
||||
|
||||
// 如果未设置租户ID,使用默认租户ID
|
||||
if (tenantId == null) {
|
||||
tenantId = tenantProperties.getDefaultTenantId();
|
||||
}
|
||||
|
||||
return new LongValue(tenantId);
|
||||
}
|
||||
|
||||
/**
|
||||
* 获取租户字段名
|
||||
*
|
||||
* @return 租户字段名
|
||||
*/
|
||||
@Override
|
||||
public String getTenantIdColumn() {
|
||||
return tenantProperties.getColumn();
|
||||
}
|
||||
|
||||
/**
|
||||
* 判断表是否忽略多租户过滤
|
||||
* <p>
|
||||
* 系统表、租户表等不需要租户隔离的表应返回 true
|
||||
* </p>
|
||||
*
|
||||
* @param tableName 表名
|
||||
* @return true-忽略,false-不忽略
|
||||
*/
|
||||
@Override
|
||||
public boolean ignoreTable(String tableName) {
|
||||
List<String> ignoreTables = tenantProperties.getIgnoreTables();
|
||||
if (ignoreTables == null || ignoreTables.isEmpty()) {
|
||||
return false;
|
||||
}
|
||||
|
||||
// 忽略表名匹配(不区分大小写)
|
||||
return ignoreTables.stream()
|
||||
.anyMatch(ignoreTable -> ignoreTable.equalsIgnoreCase(tableName));
|
||||
}
|
||||
}
|
||||
|
||||
@@ -7,7 +7,7 @@ import cn.hutool.json.JSONUtil;
|
||||
import com.youlai.boot.common.constant.RedisConstants;
|
||||
import com.youlai.boot.common.constant.SecurityConstants;
|
||||
import com.youlai.boot.core.web.ResultCode;
|
||||
import com.youlai.boot.core.web.WebResponseHelper;
|
||||
import com.youlai.boot.core.web.WebResponseWriter;
|
||||
import jakarta.servlet.FilterChain;
|
||||
import jakarta.servlet.ServletException;
|
||||
import jakarta.servlet.ServletInputStream;
|
||||
@@ -61,7 +61,7 @@ public class CaptchaValidationFilter extends OncePerRequestFilter {
|
||||
// 仅支持 JSON 登录
|
||||
String contentType = request.getContentType();
|
||||
if (contentType == null || !contentType.contains(MediaType.APPLICATION_JSON_VALUE)) {
|
||||
WebResponseHelper.writeError(response, ResultCode.USER_VERIFICATION_CODE_ERROR);
|
||||
WebResponseWriter.writeError(response, ResultCode.USER_VERIFICATION_CODE_ERROR);
|
||||
return;
|
||||
}
|
||||
|
||||
@@ -80,7 +80,7 @@ public class CaptchaValidationFilter extends OncePerRequestFilter {
|
||||
}
|
||||
|
||||
if (StrUtil.isBlank(captchaCode) || StrUtil.isBlank(captchaId)) {
|
||||
WebResponseHelper.writeError(response, ResultCode.USER_VERIFICATION_CODE_ERROR);
|
||||
WebResponseWriter.writeError(response, ResultCode.USER_VERIFICATION_CODE_ERROR);
|
||||
return;
|
||||
}
|
||||
|
||||
@@ -88,7 +88,7 @@ public class CaptchaValidationFilter extends OncePerRequestFilter {
|
||||
StrUtil.format(RedisConstants.Captcha.IMAGE_CODE, captchaId)
|
||||
);
|
||||
if (cacheVerifyCode == null) {
|
||||
WebResponseHelper.writeError(response, ResultCode.USER_VERIFICATION_CODE_EXPIRED);
|
||||
WebResponseWriter.writeError(response, ResultCode.USER_VERIFICATION_CODE_EXPIRED);
|
||||
return;
|
||||
}
|
||||
|
||||
@@ -96,7 +96,7 @@ public class CaptchaValidationFilter extends OncePerRequestFilter {
|
||||
HttpServletRequest repeatableRequest = new RepeatableReadRequestWrapper(requestWrapper, bodyBytes);
|
||||
chain.doFilter(repeatableRequest, response);
|
||||
} else {
|
||||
WebResponseHelper.writeError(response, ResultCode.USER_VERIFICATION_CODE_ERROR);
|
||||
WebResponseWriter.writeError(response, ResultCode.USER_VERIFICATION_CODE_ERROR);
|
||||
}
|
||||
}
|
||||
|
||||
|
||||
@@ -3,7 +3,7 @@ package com.youlai.boot.security.filter;
|
||||
import cn.hutool.core.util.StrUtil;
|
||||
import com.youlai.boot.common.constant.SecurityConstants;
|
||||
import com.youlai.boot.core.web.ResultCode;
|
||||
import com.youlai.boot.core.web.WebResponseHelper;
|
||||
import com.youlai.boot.core.web.WebResponseWriter;
|
||||
import com.youlai.boot.security.token.TokenManager;
|
||||
import jakarta.servlet.FilterChain;
|
||||
import jakarta.servlet.ServletException;
|
||||
@@ -52,7 +52,7 @@ public class TokenAuthenticationFilter extends OncePerRequestFilter {
|
||||
// 执行令牌有效性检查(包含密码学验签和过期时间验证)
|
||||
boolean isValidToken = tokenManager.validateToken(rawToken);
|
||||
if (!isValidToken) {
|
||||
WebResponseHelper.writeError(response, ResultCode.ACCESS_TOKEN_INVALID);
|
||||
WebResponseWriter.writeError(response, ResultCode.ACCESS_TOKEN_INVALID);
|
||||
return;
|
||||
}
|
||||
|
||||
@@ -63,7 +63,7 @@ public class TokenAuthenticationFilter extends OncePerRequestFilter {
|
||||
} catch (Exception ex) {
|
||||
// 安全上下文清除保障(防止上下文残留)
|
||||
SecurityContextHolder.clearContext();
|
||||
WebResponseHelper.writeError(response, ResultCode.ACCESS_TOKEN_INVALID);
|
||||
WebResponseWriter.writeError(response, ResultCode.ACCESS_TOKEN_INVALID);
|
||||
return;
|
||||
}
|
||||
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
package com.youlai.boot.security.handler;
|
||||
|
||||
import com.youlai.boot.core.web.ResultCode;
|
||||
import com.youlai.boot.core.web.WebResponseHelper;
|
||||
import com.youlai.boot.core.web.WebResponseWriter;
|
||||
import org.springframework.security.access.AccessDeniedException;
|
||||
import org.springframework.security.web.access.AccessDeniedHandler;
|
||||
import org.springframework.stereotype.Component;
|
||||
@@ -20,7 +20,7 @@ public class MyAccessDeniedHandler implements AccessDeniedHandler {
|
||||
|
||||
@Override
|
||||
public void handle(HttpServletRequest request, HttpServletResponse response, AccessDeniedException accessDeniedException) {
|
||||
WebResponseHelper.writeError(response, ResultCode.ACCESS_UNAUTHORIZED);
|
||||
WebResponseWriter.writeError(response, ResultCode.ACCESS_UNAUTHORIZED);
|
||||
}
|
||||
|
||||
}
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
package com.youlai.boot.security.handler;
|
||||
|
||||
import com.youlai.boot.core.web.ResultCode;
|
||||
import com.youlai.boot.core.web.WebResponseHelper;
|
||||
import com.youlai.boot.core.web.WebResponseWriter;
|
||||
import org.springframework.security.authentication.BadCredentialsException;
|
||||
import org.springframework.security.authentication.InsufficientAuthenticationException;
|
||||
import org.springframework.security.core.AuthenticationException;
|
||||
@@ -32,13 +32,13 @@ public class MyAuthenticationEntryPoint implements AuthenticationEntryPoint {
|
||||
public void commence(HttpServletRequest request, HttpServletResponse response, AuthenticationException authException) throws IOException, ServletException {
|
||||
if (authException instanceof BadCredentialsException) {
|
||||
// 用户名或密码错误
|
||||
WebResponseHelper.writeError(response, ResultCode.USER_PASSWORD_ERROR);
|
||||
WebResponseWriter.writeError(response, ResultCode.USER_PASSWORD_ERROR);
|
||||
} else if(authException instanceof InsufficientAuthenticationException){
|
||||
// 请求头缺失Authorization、Token格式错误、Token过期、签名验证失败
|
||||
WebResponseHelper.writeError(response, ResultCode.ACCESS_TOKEN_INVALID);
|
||||
WebResponseWriter.writeError(response, ResultCode.ACCESS_TOKEN_INVALID);
|
||||
} else {
|
||||
// 其他未明确处理的认证异常(如账户被锁定、账户禁用等)
|
||||
WebResponseHelper.writeError(response, ResultCode.USER_LOGIN_EXCEPTION, authException.getMessage());
|
||||
WebResponseWriter.writeError(response, ResultCode.USER_LOGIN_EXCEPTION, authException.getMessage());
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
@@ -38,11 +38,6 @@ public class OnlineUser {
|
||||
*/
|
||||
private Integer dataScope;
|
||||
|
||||
/**
|
||||
* 租户ID
|
||||
*/
|
||||
private Long tenantId;
|
||||
|
||||
/**
|
||||
* 角色权限集合
|
||||
*/
|
||||
|
||||
@@ -56,11 +56,6 @@ public class SysUserDetails implements UserDetails {
|
||||
*/
|
||||
private Integer dataScope;
|
||||
|
||||
/**
|
||||
* 租户ID
|
||||
*/
|
||||
private Long tenantId;
|
||||
|
||||
/**
|
||||
* 用户角色权限集合
|
||||
*/
|
||||
@@ -78,7 +73,6 @@ public class SysUserDetails implements UserDetails {
|
||||
this.enabled = ObjectUtil.equal(user.getStatus(), 1);
|
||||
this.deptId = user.getDeptId();
|
||||
this.dataScope = user.getDataScope();
|
||||
this.tenantId = user.getTenantId();
|
||||
|
||||
// 初始化角色权限集合
|
||||
this.authorities = CollectionUtil.isNotEmpty(user.getRoles())
|
||||
|
||||
@@ -54,9 +54,4 @@ public class UserAuthCredentials {
|
||||
*/
|
||||
private Integer dataScope;
|
||||
|
||||
/**
|
||||
* 租户ID(从登录上下文中获取)
|
||||
*/
|
||||
private Long tenantId;
|
||||
|
||||
}
|
||||
|
||||
@@ -3,8 +3,6 @@ package com.youlai.boot.security.service;
|
||||
import cn.hutool.core.collection.CollectionUtil;
|
||||
import cn.hutool.core.util.StrUtil;
|
||||
import com.youlai.boot.common.constant.RedisConstants;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.config.property.TenantProperties;
|
||||
import com.youlai.boot.security.util.SecurityUtils;
|
||||
import lombok.RequiredArgsConstructor;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
@@ -26,7 +24,6 @@ import java.util.*;
|
||||
public class PermissionService {
|
||||
|
||||
private final RedisTemplate<String, Object> redisTemplate;
|
||||
private final TenantProperties tenantProperties;
|
||||
|
||||
/**
|
||||
* 判断当前登录用户是否拥有操作权限
|
||||
@@ -70,20 +67,7 @@ public class PermissionService {
|
||||
|
||||
|
||||
/**
|
||||
* 构建租户权限缓存key
|
||||
*
|
||||
* @param tenantId 租户ID
|
||||
* @return 缓存key
|
||||
*/
|
||||
private String buildRolePermsCacheKey(Long tenantId) {
|
||||
if (!tenantProperties.getEnabled() || tenantId == null) {
|
||||
return RedisConstants.System.ROLE_PERMS;
|
||||
}
|
||||
return RedisConstants.System.ROLE_PERMS + ":" + tenantId;
|
||||
}
|
||||
|
||||
/**
|
||||
* 从缓存中获取角色权限列表(兼容单租户和多租户)
|
||||
* 从缓存中获取角色权限列表
|
||||
*
|
||||
* @param roleCodes 角色编码集合
|
||||
* @return 角色权限列表
|
||||
@@ -93,9 +77,8 @@ public class PermissionService {
|
||||
return Collections.emptySet();
|
||||
}
|
||||
|
||||
// 获取当前租户ID并构建缓存Key
|
||||
Long tenantId = TenantContextHolder.getTenantId();
|
||||
String cacheKey = buildRolePermsCacheKey(tenantId);
|
||||
// 构建缓存Key
|
||||
String cacheKey = RedisConstants.System.ROLE_PERMS;
|
||||
|
||||
Set<String> perms = new HashSet<>();
|
||||
Collection<Object> roleCodesAsObjects = new ArrayList<>(roleCodes);
|
||||
|
||||
@@ -1,6 +1,5 @@
|
||||
package com.youlai.boot.security.service;
|
||||
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.security.model.SysUserDetails;
|
||||
import com.youlai.boot.security.model.UserAuthCredentials;
|
||||
import com.youlai.boot.system.service.UserService;
|
||||
@@ -38,8 +37,6 @@ public class SysUserDetailsService implements UserDetailsService {
|
||||
if (userAuthCredentials == null) {
|
||||
throw new UsernameNotFoundException(username);
|
||||
}
|
||||
// 将当前上下文中的租户ID写入认证凭证,便于后续 Token 携带租户信息
|
||||
userAuthCredentials.setTenantId(TenantContextHolder.getTenantId());
|
||||
return new SysUserDetails(userAuthCredentials);
|
||||
} catch (Exception e) {
|
||||
// 记录异常日志
|
||||
|
||||
@@ -91,7 +91,6 @@ public class JwtTokenManager implements TokenManager {
|
||||
userDetails.setUserId(payloads.getLong(JwtClaimConstants.USER_ID)); // 用户ID
|
||||
userDetails.setDeptId(payloads.getLong(JwtClaimConstants.DEPT_ID)); // 部门ID
|
||||
userDetails.setDataScope(payloads.getInt(JwtClaimConstants.DATA_SCOPE)); // 数据权限范围
|
||||
userDetails.setTenantId(payloads.getLong(JwtClaimConstants.TENANT_ID)); // 租户ID
|
||||
|
||||
userDetails.setUsername(payloads.getStr(JWTPayload.SUBJECT)); // 用户名
|
||||
// 角色集合
|
||||
@@ -276,7 +275,6 @@ public class JwtTokenManager implements TokenManager {
|
||||
payload.put(JwtClaimConstants.USER_ID, userDetails.getUserId()); // 用户ID
|
||||
payload.put(JwtClaimConstants.DEPT_ID, userDetails.getDeptId()); // 部门ID
|
||||
payload.put(JwtClaimConstants.DATA_SCOPE, userDetails.getDataScope()); // 数据权限范围
|
||||
payload.put(JwtClaimConstants.TENANT_ID, userDetails.getTenantId()); // 租户ID
|
||||
|
||||
// claims 中添加角色信息
|
||||
Set<String> roles = authentication.getAuthorities().stream()
|
||||
|
||||
@@ -61,7 +61,6 @@ public class RedisTokenManager implements TokenManager {
|
||||
user.getUsername(),
|
||||
user.getDeptId(),
|
||||
user.getDataScope(),
|
||||
user.getTenantId(),
|
||||
user.getAuthorities().stream()
|
||||
.map(GrantedAuthority::getAuthority)
|
||||
.collect(Collectors.toSet())
|
||||
@@ -269,7 +268,6 @@ public class RedisTokenManager implements TokenManager {
|
||||
userDetails.setUsername(onlineUser.getUsername());
|
||||
userDetails.setDeptId(onlineUser.getDeptId());
|
||||
userDetails.setDataScope(onlineUser.getDataScope());
|
||||
userDetails.setTenantId(onlineUser.getTenantId());
|
||||
userDetails.setAuthorities(authorities);
|
||||
return userDetails;
|
||||
}
|
||||
|
||||
@@ -1,116 +0,0 @@
|
||||
package com.youlai.boot.system.controller;
|
||||
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.core.web.Result;
|
||||
import com.youlai.boot.security.util.SecurityUtils;
|
||||
import com.youlai.boot.system.model.vo.TenantVO;
|
||||
import com.youlai.boot.system.service.TenantService;
|
||||
import io.swagger.v3.oas.annotations.Operation;
|
||||
import io.swagger.v3.oas.annotations.Parameter;
|
||||
import io.swagger.v3.oas.annotations.tags.Tag;
|
||||
import jakarta.servlet.http.HttpServletRequest;
|
||||
import lombok.RequiredArgsConstructor;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
import org.springframework.boot.autoconfigure.condition.ConditionalOnProperty;
|
||||
import org.springframework.web.bind.annotation.*;
|
||||
|
||||
import java.util.List;
|
||||
|
||||
/**
|
||||
* 租户管理控制器
|
||||
* <p>
|
||||
* 提供租户切换、查询等功能
|
||||
* </p>
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Tag(name = "租户管理接口")
|
||||
@RestController
|
||||
@RequestMapping("/api/v1/tenants")
|
||||
@RequiredArgsConstructor
|
||||
@Slf4j
|
||||
@ConditionalOnProperty(prefix = "youlai.tenant", name = "enabled", havingValue = "true", matchIfMissing = false)
|
||||
public class TenantController {
|
||||
|
||||
private final TenantService tenantService;
|
||||
|
||||
/**
|
||||
* 获取当前用户的租户列表
|
||||
* <p>
|
||||
* 根据当前登录用户查询其所属的所有租户
|
||||
* </p>
|
||||
*
|
||||
* @return 租户列表
|
||||
*/
|
||||
@Operation(summary = "获取当前用户可访问的租户列表")
|
||||
@GetMapping
|
||||
public Result<List<TenantVO>> getAccessibleTenants() {
|
||||
Long userId = SecurityUtils.getUserId();
|
||||
List<TenantVO> tenantList = tenantService.getAccessibleTenants(userId);
|
||||
log.debug("用户 {} 可访问 {} 个租户", userId, tenantList.size());
|
||||
return Result.success(tenantList);
|
||||
}
|
||||
|
||||
/**
|
||||
* 获取当前租户信息
|
||||
*
|
||||
* @return 当前租户信息
|
||||
*/
|
||||
@Operation(summary = "获取当前租户信息")
|
||||
@GetMapping("/current")
|
||||
public Result<TenantVO> getCurrentTenant() {
|
||||
Long tenantId = TenantContextHolder.getTenantId();
|
||||
if (tenantId == null) {
|
||||
return Result.success(null);
|
||||
}
|
||||
TenantVO tenant = tenantService.getTenantById(tenantId);
|
||||
return Result.success(tenant);
|
||||
}
|
||||
|
||||
/**
|
||||
* 切换租户
|
||||
* <p>
|
||||
* 切换当前用户的租户上下文,需要验证用户是否有权限访问该租户
|
||||
* </p>
|
||||
*
|
||||
* @param tenantId 目标租户ID
|
||||
* @return 切换结果
|
||||
*/
|
||||
@Operation(summary = "切换租户")
|
||||
@PostMapping("/{tenantId}/switch")
|
||||
public Result<TenantVO> switchTenant(
|
||||
@Parameter(description = "租户ID") @PathVariable Long tenantId,
|
||||
HttpServletRequest request
|
||||
) {
|
||||
Long userId = SecurityUtils.getUserId();
|
||||
Long fromTenantId = TenantContextHolder.getTenantId();
|
||||
|
||||
log.info("用户 {} 请求切换租户:{} -> {}", userId, fromTenantId, tenantId);
|
||||
|
||||
// 验证用户是否可以访问该租户
|
||||
if (!tenantService.canAccessTenant(userId, tenantId)) {
|
||||
log.warn("用户 {} 无权访问租户 {}", userId, tenantId);
|
||||
return Result.failed("无权访问该租户");
|
||||
}
|
||||
|
||||
// 验证租户是否存在且正常
|
||||
TenantVO tenant = tenantService.getTenantById(tenantId);
|
||||
if (tenant == null) {
|
||||
log.warn("用户 {} 尝试切换到不存在的租户 {}", userId, tenantId);
|
||||
return Result.failed("租户不存在");
|
||||
}
|
||||
if (tenant.getStatus() == null || tenant.getStatus() != 1) {
|
||||
log.warn("用户 {} 尝试切换到已禁用的租户 {}", userId, tenantId);
|
||||
return Result.failed("租户已禁用");
|
||||
}
|
||||
|
||||
// 设置新的租户上下文
|
||||
TenantContextHolder.setTenantId(tenantId);
|
||||
|
||||
log.info("用户 {} 成功切换租户:{} -> {}", userId, fromTenantId, tenantId);
|
||||
|
||||
return Result.success(tenant);
|
||||
}
|
||||
}
|
||||
|
||||
@@ -1,16 +0,0 @@
|
||||
package com.youlai.boot.system.mapper;
|
||||
|
||||
import com.baomidou.mybatisplus.core.mapper.BaseMapper;
|
||||
import com.youlai.boot.system.model.entity.Tenant;
|
||||
import org.apache.ibatis.annotations.Mapper;
|
||||
|
||||
/**
|
||||
* 租户 Mapper
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Mapper
|
||||
public interface TenantMapper extends BaseMapper<Tenant> {
|
||||
}
|
||||
|
||||
@@ -13,11 +13,6 @@ import java.util.Set;
|
||||
@Data
|
||||
public class RolePermsBO {
|
||||
|
||||
/**
|
||||
* 租户ID
|
||||
*/
|
||||
private Long tenantId;
|
||||
|
||||
/**
|
||||
* 角色编码
|
||||
*/
|
||||
|
||||
@@ -1,6 +1,8 @@
|
||||
package com.youlai.boot.system.model.entity;
|
||||
|
||||
import com.baomidou.mybatisplus.annotation.TableField;
|
||||
import com.baomidou.mybatisplus.annotation.TableName;
|
||||
import com.fasterxml.jackson.annotation.JsonInclude;
|
||||
import com.youlai.boot.common.base.BaseEntity;
|
||||
import lombok.Getter;
|
||||
import lombok.Setter;
|
||||
|
||||
@@ -1,6 +1,7 @@
|
||||
package com.youlai.boot.system.model.entity;
|
||||
|
||||
import com.baomidou.mybatisplus.annotation.*;
|
||||
import com.fasterxml.jackson.annotation.JsonInclude;
|
||||
import com.youlai.boot.common.enums.LogModuleEnum;
|
||||
import lombok.Data;
|
||||
|
||||
@@ -107,5 +108,4 @@ public class Log implements Serializable {
|
||||
@TableField(fill = FieldFill.INSERT)
|
||||
private LocalDateTime createTime;
|
||||
|
||||
|
||||
}
|
||||
@@ -1,6 +1,8 @@
|
||||
package com.youlai.boot.system.model.entity;
|
||||
|
||||
import com.baomidou.mybatisplus.annotation.TableField;
|
||||
import com.baomidou.mybatisplus.annotation.TableName;
|
||||
import com.fasterxml.jackson.annotation.JsonInclude;
|
||||
import com.youlai.boot.common.base.BaseEntity;
|
||||
import lombok.Getter;
|
||||
import lombok.Setter;
|
||||
|
||||
@@ -1,6 +1,8 @@
|
||||
package com.youlai.boot.system.model.entity;
|
||||
|
||||
import com.baomidou.mybatisplus.annotation.TableField;
|
||||
import com.baomidou.mybatisplus.annotation.TableName;
|
||||
import com.fasterxml.jackson.annotation.JsonInclude;
|
||||
import com.youlai.boot.common.base.BaseEntity;
|
||||
import lombok.Getter;
|
||||
import lombok.Setter;
|
||||
|
||||
@@ -1,6 +1,8 @@
|
||||
package com.youlai.boot.system.model.entity;
|
||||
|
||||
import com.baomidou.mybatisplus.annotation.TableField;
|
||||
import com.baomidou.mybatisplus.annotation.TableName;
|
||||
import com.fasterxml.jackson.annotation.JsonInclude;
|
||||
import lombok.AllArgsConstructor;
|
||||
import lombok.Data;
|
||||
import lombok.NoArgsConstructor;
|
||||
|
||||
@@ -1,71 +0,0 @@
|
||||
package com.youlai.boot.system.model.entity;
|
||||
|
||||
import com.baomidou.mybatisplus.annotation.TableName;
|
||||
import com.youlai.boot.common.base.BaseEntity;
|
||||
import lombok.Data;
|
||||
import lombok.EqualsAndHashCode;
|
||||
|
||||
import java.time.LocalDateTime;
|
||||
|
||||
/**
|
||||
* 租户实体
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Data
|
||||
@EqualsAndHashCode(callSuper = true)
|
||||
@TableName("sys_tenant")
|
||||
public class Tenant extends BaseEntity {
|
||||
|
||||
/**
|
||||
* 租户名称
|
||||
*/
|
||||
private String name;
|
||||
|
||||
/**
|
||||
* 租户编码(唯一)
|
||||
*/
|
||||
private String code;
|
||||
|
||||
/**
|
||||
* 联系人姓名
|
||||
*/
|
||||
private String contactName;
|
||||
|
||||
/**
|
||||
* 联系人电话
|
||||
*/
|
||||
private String contactPhone;
|
||||
|
||||
/**
|
||||
* 联系人邮箱
|
||||
*/
|
||||
private String contactEmail;
|
||||
|
||||
/**
|
||||
* 租户域名(用于域名识别)
|
||||
*/
|
||||
private String domain;
|
||||
|
||||
/**
|
||||
* 租户Logo
|
||||
*/
|
||||
private String logo;
|
||||
|
||||
/**
|
||||
* 状态(1-正常 0-禁用)
|
||||
*/
|
||||
private Integer status;
|
||||
|
||||
/**
|
||||
* 备注
|
||||
*/
|
||||
private String remark;
|
||||
|
||||
/**
|
||||
* 过期时间(NULL表示永不过期)
|
||||
*/
|
||||
private LocalDateTime expireTime;
|
||||
}
|
||||
|
||||
@@ -1,6 +1,8 @@
|
||||
package com.youlai.boot.system.model.entity;
|
||||
|
||||
import com.baomidou.mybatisplus.annotation.TableField;
|
||||
import com.baomidou.mybatisplus.annotation.TableName;
|
||||
import com.fasterxml.jackson.annotation.JsonInclude;
|
||||
import com.youlai.boot.common.base.BaseEntity;
|
||||
import lombok.Getter;
|
||||
import lombok.Setter;
|
||||
@@ -18,13 +20,11 @@ public class User extends BaseEntity {
|
||||
*/
|
||||
private String username;
|
||||
|
||||
|
||||
/**
|
||||
* 昵称
|
||||
*/
|
||||
private String nickname;
|
||||
|
||||
|
||||
/**
|
||||
* 性别((1-男 2-女 0-保密)
|
||||
*/
|
||||
|
||||
@@ -1,9 +1,11 @@
|
||||
package com.youlai.boot.system.model.entity;
|
||||
|
||||
import com.baomidou.mybatisplus.annotation.IdType;
|
||||
import com.baomidou.mybatisplus.annotation.TableField;
|
||||
import com.baomidou.mybatisplus.annotation.TableId;
|
||||
import com.baomidou.mybatisplus.annotation.TableLogic;
|
||||
import com.baomidou.mybatisplus.annotation.TableName;
|
||||
import com.fasterxml.jackson.annotation.JsonInclude;
|
||||
import com.youlai.boot.common.base.BaseEntity;
|
||||
import lombok.Getter;
|
||||
import lombok.Setter;
|
||||
|
||||
@@ -1,48 +0,0 @@
|
||||
package com.youlai.boot.system.model.vo;
|
||||
|
||||
import io.swagger.v3.oas.annotations.media.Schema;
|
||||
import lombok.Data;
|
||||
|
||||
import java.io.Serializable;
|
||||
|
||||
/**
|
||||
* 租户VO
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Data
|
||||
@Schema(description = "租户信息")
|
||||
public class TenantVO implements Serializable {
|
||||
|
||||
@Schema(description = "租户ID")
|
||||
private Long id;
|
||||
|
||||
@Schema(description = "租户名称")
|
||||
private String name;
|
||||
|
||||
@Schema(description = "租户编码")
|
||||
private String code;
|
||||
|
||||
@Schema(description = "租户状态(1-正常 0-禁用)")
|
||||
private Integer status;
|
||||
|
||||
@Schema(description = "联系人姓名")
|
||||
private String contactName;
|
||||
|
||||
@Schema(description = "联系人电话")
|
||||
private String contactPhone;
|
||||
|
||||
@Schema(description = "联系人邮箱")
|
||||
private String contactEmail;
|
||||
|
||||
@Schema(description = "租户域名")
|
||||
private String domain;
|
||||
|
||||
@Schema(description = "租户Logo")
|
||||
private String logo;
|
||||
|
||||
@Schema(description = "是否默认租户")
|
||||
private Boolean isDefault;
|
||||
}
|
||||
|
||||
@@ -1,55 +0,0 @@
|
||||
package com.youlai.boot.system.service;
|
||||
|
||||
import com.baomidou.mybatisplus.extension.service.IService;
|
||||
import com.youlai.boot.system.model.entity.Tenant;
|
||||
import com.youlai.boot.system.model.vo.TenantVO;
|
||||
|
||||
import java.util.List;
|
||||
|
||||
/**
|
||||
* 租户服务接口
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
public interface TenantService extends IService<Tenant> {
|
||||
|
||||
/**
|
||||
* 获取用户可访问的租户列表
|
||||
* <p>
|
||||
* 通过用户名查询该用户在所有租户下的账户,返回可访问的租户列表
|
||||
* </p>
|
||||
*
|
||||
* @param userId 用户ID
|
||||
* @return 可访问的租户列表
|
||||
*/
|
||||
List<TenantVO> getAccessibleTenants(Long userId);
|
||||
|
||||
/**
|
||||
* 根据租户ID查询租户信息
|
||||
*
|
||||
* @param tenantId 租户ID
|
||||
* @return 租户信息
|
||||
*/
|
||||
TenantVO getTenantById(Long tenantId);
|
||||
|
||||
/**
|
||||
* 根据域名查询租户ID
|
||||
*
|
||||
* @param domain 域名
|
||||
* @return 租户ID
|
||||
*/
|
||||
Long getTenantIdByDomain(String domain);
|
||||
|
||||
/**
|
||||
* 检查用户是否可以访问指定租户
|
||||
* <p>
|
||||
* 验证该用户名在目标租户下是否存在账户
|
||||
* </p>
|
||||
*
|
||||
* @param userId 用户ID
|
||||
* @param tenantId 租户ID
|
||||
* @return true-可访问,false-不可访问
|
||||
*/
|
||||
boolean canAccessTenant(Long userId, Long tenantId);
|
||||
}
|
||||
@@ -73,26 +73,6 @@ public interface UserService extends IService<User> {
|
||||
*/
|
||||
UserAuthCredentials getAuthCredentialsByUsername(String username);
|
||||
|
||||
/**
|
||||
* 根据用户名和租户ID获取认证信息(用于多租户登录)
|
||||
*
|
||||
* @param username 用户名
|
||||
* @param tenantId 租户ID
|
||||
* @return {@link UserAuthCredentials}
|
||||
*/
|
||||
UserAuthCredentials getAuthCredentialsByUsernameAndTenant(String username, Long tenantId);
|
||||
|
||||
/**
|
||||
* 跨租户查询用户账户列表
|
||||
* <p>
|
||||
* 查询该用户名在所有租户下的账户记录,用于多租户登录时判断是否需要选择租户
|
||||
* </p>
|
||||
*
|
||||
* @param username 用户名
|
||||
* @return 用户账户列表(每个租户一条记录)
|
||||
*/
|
||||
List<User> findUserAcrossAllTenants(String username);
|
||||
|
||||
|
||||
/**
|
||||
* 获取导出用户列表
|
||||
|
||||
@@ -157,7 +157,31 @@ public class MenuServiceImpl extends ServiceImpl<MenuMapper, Menu> implements Me
|
||||
.orderByAsc(Menu::getSort)
|
||||
);
|
||||
} else {
|
||||
// 普通用户:通过角色获取菜单(权限控制已过滤)
|
||||
menuList = this.baseMapper.getMenusByRoleCodes(roleCodes);
|
||||
|
||||
// 双重保障:动态查询"平台管理"目录,过滤其子菜单
|
||||
// 通过路由路径识别平台管理目录,避免硬编码
|
||||
Menu platformMenu = this.getOne(new LambdaQueryWrapper<Menu>()
|
||||
.eq(Menu::getRoutePath, "/platform")
|
||||
.eq(Menu::getParentId, SystemConstants.ROOT_NODE_ID)
|
||||
.eq(Menu::getType, MenuTypeEnum.CATALOG.getValue())
|
||||
.last("LIMIT 1")
|
||||
);
|
||||
|
||||
if (platformMenu != null) {
|
||||
final Long platformMenuId = platformMenu.getId();
|
||||
menuList = menuList.stream()
|
||||
.filter(menu -> {
|
||||
String treePath = menu.getTreePath();
|
||||
// 排除平台管理目录及其子菜单
|
||||
// treePath 格式:0,1 或 0,1,110 等
|
||||
return treePath == null ||
|
||||
(!treePath.startsWith("0," + platformMenuId + ",") &&
|
||||
!treePath.equals("0," + platformMenuId));
|
||||
})
|
||||
.collect(Collectors.toList());
|
||||
}
|
||||
}
|
||||
return buildRoutes(SystemConstants.ROOT_NODE_ID, menuList);
|
||||
}
|
||||
|
||||
@@ -3,8 +3,6 @@ package com.youlai.boot.system.service.impl;
|
||||
import cn.hutool.core.collection.CollectionUtil;
|
||||
import com.baomidou.mybatisplus.extension.service.impl.ServiceImpl;
|
||||
import com.youlai.boot.common.constant.RedisConstants;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.config.property.TenantProperties;
|
||||
import com.youlai.boot.system.mapper.RoleMenuMapper;
|
||||
import com.youlai.boot.system.model.bo.RolePermsBO;
|
||||
import com.youlai.boot.system.model.entity.RoleMenu;
|
||||
@@ -19,7 +17,7 @@ import java.util.List;
|
||||
import java.util.Set;
|
||||
|
||||
/**
|
||||
* 角色菜单服务实现类(多租户优化版)
|
||||
* 角色菜单服务实现类
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 2.5.0
|
||||
@@ -30,25 +28,6 @@ import java.util.Set;
|
||||
public class RoleMenuServiceImpl extends ServiceImpl<RoleMenuMapper, RoleMenu> implements RoleMenuService {
|
||||
|
||||
private final RedisTemplate<String, Object> redisTemplate;
|
||||
private final TenantProperties tenantProperties;
|
||||
|
||||
/**
|
||||
* 构建租户权限缓存key
|
||||
*
|
||||
* @param tenantId 租户ID
|
||||
* @return 缓存key
|
||||
* - 多租户开启: system:role:perms:{tenantId}
|
||||
* - 多租户关闭: system:role:perms
|
||||
*/
|
||||
private String buildRolePermsCacheKey(Long tenantId) {
|
||||
// 判断是否启用多租户
|
||||
if (!tenantProperties.getEnabled() || tenantId == null) {
|
||||
// 单租户模式或多租户未开启:使用原有Key
|
||||
return RedisConstants.System.ROLE_PERMS;
|
||||
}
|
||||
// 多租户模式开启:Key按租户隔离
|
||||
return RedisConstants.System.ROLE_PERMS + ":" + tenantId;
|
||||
}
|
||||
|
||||
/**
|
||||
* 启动时初始化权限缓存
|
||||
@@ -64,50 +43,30 @@ public class RoleMenuServiceImpl extends ServiceImpl<RoleMenuMapper, RoleMenu> i
|
||||
return;
|
||||
}
|
||||
|
||||
if (tenantProperties.getEnabled()) {
|
||||
// 多租户模式:按租户分组缓存
|
||||
allRolePermsList.forEach(rolePerms -> {
|
||||
Long tenantId = rolePerms.getTenantId();
|
||||
if (tenantId == null) {
|
||||
log.warn("多租户模式下,角色[{}]缺少tenantId,跳过", rolePerms.getRoleCode());
|
||||
return;
|
||||
}
|
||||
String cacheKey = RedisConstants.System.ROLE_PERMS + ":" + tenantId;
|
||||
String roleCode = rolePerms.getRoleCode();
|
||||
Set<String> perms = rolePerms.getPerms();
|
||||
|
||||
if (CollectionUtil.isNotEmpty(perms)) {
|
||||
redisTemplate.opsForHash().put(cacheKey, roleCode, perms);
|
||||
}
|
||||
});
|
||||
log.info("权限缓存初始化完成(多租户模式),共{}条数据", allRolePermsList.size());
|
||||
} else {
|
||||
// 单租户模式:所有数据统一缓存
|
||||
String cacheKey = RedisConstants.System.ROLE_PERMS;
|
||||
allRolePermsList.forEach(rolePerms -> {
|
||||
String roleCode = rolePerms.getRoleCode();
|
||||
Set<String> perms = rolePerms.getPerms();
|
||||
|
||||
if (CollectionUtil.isNotEmpty(perms)) {
|
||||
redisTemplate.opsForHash().put(cacheKey, roleCode, perms);
|
||||
}
|
||||
});
|
||||
log.info("权限缓存初始化完成(单租户模式),共{}条数据", allRolePermsList.size());
|
||||
}
|
||||
// 所有数据统一缓存
|
||||
String cacheKey = RedisConstants.System.ROLE_PERMS;
|
||||
allRolePermsList.forEach(rolePerms -> {
|
||||
String roleCode = rolePerms.getRoleCode();
|
||||
Set<String> perms = rolePerms.getPerms();
|
||||
|
||||
if (CollectionUtil.isNotEmpty(perms)) {
|
||||
redisTemplate.opsForHash().put(cacheKey, roleCode, perms);
|
||||
}
|
||||
});
|
||||
log.info("权限缓存初始化完成,共{}条数据", allRolePermsList.size());
|
||||
}
|
||||
|
||||
/**
|
||||
* 刷新当前租户权限缓存
|
||||
* 刷新权限缓存
|
||||
*/
|
||||
@Override
|
||||
public void refreshRolePermsCache() {
|
||||
Long tenantId = TenantContextHolder.getTenantId();
|
||||
String cacheKey = buildRolePermsCacheKey(tenantId);
|
||||
String cacheKey = RedisConstants.System.ROLE_PERMS;
|
||||
|
||||
// 清理当前租户权限缓存
|
||||
// 清理权限缓存
|
||||
redisTemplate.delete(cacheKey);
|
||||
|
||||
// 重新加载当前租户权限
|
||||
// 重新加载权限
|
||||
List<RolePermsBO> list = this.baseMapper.getRolePermsList(null);
|
||||
if (CollectionUtil.isNotEmpty(list)) {
|
||||
list.forEach(item -> {
|
||||
@@ -119,11 +78,7 @@ public class RoleMenuServiceImpl extends ServiceImpl<RoleMenuMapper, RoleMenu> i
|
||||
});
|
||||
}
|
||||
|
||||
if (tenantId == null) {
|
||||
log.info("权限缓存刷新完成(单租户模式)");
|
||||
} else {
|
||||
log.info("租户[{}]权限缓存刷新完成", tenantId);
|
||||
}
|
||||
log.info("权限缓存刷新完成");
|
||||
}
|
||||
|
||||
/**
|
||||
@@ -131,8 +86,7 @@ public class RoleMenuServiceImpl extends ServiceImpl<RoleMenuMapper, RoleMenu> i
|
||||
*/
|
||||
@Override
|
||||
public void refreshRolePermsCache(String roleCode) {
|
||||
Long tenantId = TenantContextHolder.getTenantId();
|
||||
String cacheKey = buildRolePermsCacheKey(tenantId);
|
||||
String cacheKey = RedisConstants.System.ROLE_PERMS;
|
||||
|
||||
// 清理指定角色缓存
|
||||
redisTemplate.opsForHash().delete(cacheKey, roleCode);
|
||||
@@ -149,11 +103,7 @@ public class RoleMenuServiceImpl extends ServiceImpl<RoleMenuMapper, RoleMenu> i
|
||||
}
|
||||
}
|
||||
|
||||
if (tenantId == null) {
|
||||
log.info("角色[{}]权限缓存刷新完成(单租户模式)", roleCode);
|
||||
} else {
|
||||
log.info("租户[{}]角色[{}]权限缓存刷新完成", tenantId, roleCode);
|
||||
}
|
||||
log.info("角色[{}]权限缓存刷新完成", roleCode);
|
||||
}
|
||||
|
||||
/**
|
||||
@@ -161,8 +111,7 @@ public class RoleMenuServiceImpl extends ServiceImpl<RoleMenuMapper, RoleMenu> i
|
||||
*/
|
||||
@Override
|
||||
public void refreshRolePermsCache(String oldRoleCode, String newRoleCode) {
|
||||
Long tenantId = TenantContextHolder.getTenantId();
|
||||
String cacheKey = buildRolePermsCacheKey(tenantId);
|
||||
String cacheKey = RedisConstants.System.ROLE_PERMS;
|
||||
|
||||
// 清理旧角色权限缓存
|
||||
redisTemplate.opsForHash().delete(cacheKey, oldRoleCode);
|
||||
@@ -179,11 +128,7 @@ public class RoleMenuServiceImpl extends ServiceImpl<RoleMenuMapper, RoleMenu> i
|
||||
}
|
||||
}
|
||||
|
||||
if (tenantId == null) {
|
||||
log.info("角色编码变更: {} -> {},权限缓存已更新(单租户模式)", oldRoleCode, newRoleCode);
|
||||
} else {
|
||||
log.info("租户[{}]角色编码变更: {} -> {},权限缓存已更新", tenantId, oldRoleCode, newRoleCode);
|
||||
}
|
||||
log.info("角色编码变更: {} -> {},权限缓存已更新", oldRoleCode, newRoleCode);
|
||||
}
|
||||
|
||||
/**
|
||||
|
||||
@@ -1,150 +0,0 @@
|
||||
package com.youlai.boot.system.service.impl;
|
||||
|
||||
import com.baomidou.mybatisplus.core.conditions.query.LambdaQueryWrapper;
|
||||
import com.baomidou.mybatisplus.extension.service.impl.ServiceImpl;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.system.mapper.TenantMapper;
|
||||
import com.youlai.boot.system.mapper.UserMapper;
|
||||
import com.youlai.boot.system.model.entity.Tenant;
|
||||
import com.youlai.boot.system.model.entity.User;
|
||||
import com.youlai.boot.system.model.vo.TenantVO;
|
||||
import com.youlai.boot.system.service.TenantService;
|
||||
import lombok.RequiredArgsConstructor;
|
||||
import lombok.extern.slf4j.Slf4j;
|
||||
import org.springframework.beans.BeanUtils;
|
||||
import org.springframework.stereotype.Service;
|
||||
|
||||
import java.util.List;
|
||||
import java.util.stream.Collectors;
|
||||
import java.util.stream.IntStream;
|
||||
|
||||
/**
|
||||
* 租户服务实现类
|
||||
*
|
||||
* @author Ray.Hao
|
||||
* @since 3.0.0
|
||||
*/
|
||||
@Service
|
||||
@Slf4j
|
||||
@RequiredArgsConstructor
|
||||
public class TenantServiceImpl extends ServiceImpl<TenantMapper, Tenant> implements TenantService {
|
||||
|
||||
private final UserMapper userMapper;
|
||||
|
||||
@Override
|
||||
public List<TenantVO> getAccessibleTenants(Long userId) {
|
||||
// 临时忽略租户过滤,查询所有租户
|
||||
TenantContextHolder.setIgnoreTenant(true);
|
||||
try {
|
||||
// 先根据用户ID查询用户信息(获取 username)
|
||||
User user = userMapper.selectById(userId);
|
||||
if (user == null) {
|
||||
return List.of();
|
||||
}
|
||||
|
||||
// 通过 username 查询该用户在所有租户下的记录,获取租户ID列表
|
||||
List<User> users = userMapper.selectList(
|
||||
new LambdaQueryWrapper<User>()
|
||||
.eq(User::getUsername, user.getUsername())
|
||||
.eq(User::getIsDeleted, 0)
|
||||
);
|
||||
|
||||
if (users.isEmpty()) {
|
||||
return List.of();
|
||||
}
|
||||
|
||||
// 提取租户ID列表(去重)
|
||||
List<Long> tenantIds = users.stream()
|
||||
.map(User::getTenantId)
|
||||
.filter(tenantId -> tenantId != null)
|
||||
.distinct()
|
||||
.collect(Collectors.toList());
|
||||
|
||||
if (tenantIds.isEmpty()) {
|
||||
return List.of();
|
||||
}
|
||||
|
||||
// 查询租户信息
|
||||
List<Tenant> tenants = this.list(
|
||||
new LambdaQueryWrapper<Tenant>()
|
||||
.in(Tenant::getId, tenantIds)
|
||||
.eq(Tenant::getStatus, 1) // 只查询正常状态的租户
|
||||
.orderByDesc(Tenant::getId)
|
||||
);
|
||||
|
||||
// 转换为VO,第一个租户作为默认租户
|
||||
return IntStream.range(0, tenants.size())
|
||||
.mapToObj(index -> {
|
||||
Tenant tenant = tenants.get(index);
|
||||
TenantVO vo = new TenantVO();
|
||||
BeanUtils.copyProperties(tenant, vo);
|
||||
// 第一个租户作为默认租户
|
||||
if (index == 0) {
|
||||
vo.setIsDefault(true);
|
||||
}
|
||||
return vo;
|
||||
})
|
||||
.collect(Collectors.toList());
|
||||
} finally {
|
||||
TenantContextHolder.setIgnoreTenant(false);
|
||||
}
|
||||
}
|
||||
|
||||
@Override
|
||||
public TenantVO getTenantById(Long tenantId) {
|
||||
TenantContextHolder.setIgnoreTenant(true);
|
||||
try {
|
||||
Tenant tenant = this.getById(tenantId);
|
||||
if (tenant == null) {
|
||||
return null;
|
||||
}
|
||||
TenantVO vo = new TenantVO();
|
||||
BeanUtils.copyProperties(tenant, vo);
|
||||
return vo;
|
||||
} finally {
|
||||
TenantContextHolder.setIgnoreTenant(false);
|
||||
}
|
||||
}
|
||||
|
||||
@Override
|
||||
public Long getTenantIdByDomain(String domain) {
|
||||
TenantContextHolder.setIgnoreTenant(true);
|
||||
try {
|
||||
Tenant tenant = this.getOne(
|
||||
new LambdaQueryWrapper<Tenant>()
|
||||
.eq(Tenant::getDomain, domain)
|
||||
.eq(Tenant::getStatus, 1)
|
||||
.last("LIMIT 1")
|
||||
);
|
||||
return tenant != null ? tenant.getId() : null;
|
||||
} finally {
|
||||
TenantContextHolder.setIgnoreTenant(false);
|
||||
}
|
||||
}
|
||||
|
||||
@Override
|
||||
public boolean canAccessTenant(Long userId, Long tenantId) {
|
||||
TenantContextHolder.setIgnoreTenant(true);
|
||||
try {
|
||||
// 先根据用户ID查询用户信息(获取 username)
|
||||
User user = userMapper.selectById(userId);
|
||||
if (user == null) {
|
||||
return false;
|
||||
}
|
||||
|
||||
// 检查该 username 在指定租户下是否存在用户记录
|
||||
User tenantUser = userMapper.selectOne(
|
||||
new LambdaQueryWrapper<User>()
|
||||
.eq(User::getUsername, user.getUsername())
|
||||
.eq(User::getTenantId, tenantId)
|
||||
.eq(User::getIsDeleted, 0)
|
||||
.last("LIMIT 1")
|
||||
);
|
||||
return tenantUser != null;
|
||||
} finally {
|
||||
TenantContextHolder.setIgnoreTenant(false);
|
||||
}
|
||||
}
|
||||
|
||||
}
|
||||
|
||||
@@ -18,7 +18,6 @@ import com.youlai.boot.security.model.UserAuthCredentials;
|
||||
import com.youlai.boot.security.service.PermissionService;
|
||||
import com.youlai.boot.security.token.TokenManager;
|
||||
import com.youlai.boot.security.util.SecurityUtils;
|
||||
import com.youlai.boot.common.tenant.TenantContextHolder;
|
||||
import com.youlai.boot.platform.mail.service.MailService;
|
||||
import com.youlai.boot.system.converter.UserConverter;
|
||||
import com.youlai.boot.system.enums.DictCodeEnum;
|
||||
@@ -77,8 +76,6 @@ public class UserServiceImpl extends ServiceImpl<UserMapper, User> implements Us
|
||||
|
||||
private final UserConverter userConverter;
|
||||
|
||||
private final com.youlai.boot.config.property.TenantProperties tenantProperties;
|
||||
|
||||
|
||||
/**
|
||||
* 获取用户分页列表
|
||||
@@ -130,22 +127,15 @@ public class UserServiceImpl extends ServiceImpl<UserMapper, User> implements Us
|
||||
// 实体转换 form->entity
|
||||
User entity = userConverter.toEntity(userForm);
|
||||
|
||||
// 获取当前操作员的租户ID(新增用户时,租户ID由 MyMetaObjectHandler 自动填充)
|
||||
Long tenantId = TenantContextHolder.getTenantId();
|
||||
Assert.notNull(tenantId, "租户ID不能为空");
|
||||
|
||||
// 检查同一租户下用户名是否已存在(新设计:用户名在租户内唯一)
|
||||
// 检查用户名是否已存在
|
||||
long count = this.count(new LambdaQueryWrapper<User>()
|
||||
.eq(User::getUsername, username)
|
||||
.eq(User::getTenantId, tenantId));
|
||||
Assert.isTrue(count == 0, "该租户下用户名已存在");
|
||||
.eq(User::getUsername, username));
|
||||
Assert.isTrue(count == 0, "用户名已存在");
|
||||
|
||||
// 设置默认加密密码
|
||||
String defaultEncryptPwd = passwordEncoder.encode(SystemConstants.DEFAULT_PASSWORD);
|
||||
entity.setPassword(defaultEncryptPwd);
|
||||
entity.setCreateBy(SecurityUtils.getUserId());
|
||||
|
||||
// 注意:租户ID由 MyMetaObjectHandler.insertFill() 自动填充,无需手动设置
|
||||
|
||||
// 新增用户
|
||||
boolean result = this.save(entity);
|
||||
@@ -173,28 +163,17 @@ public class UserServiceImpl extends ServiceImpl<UserMapper, User> implements Us
|
||||
// 获取原用户信息
|
||||
User oldUser = this.getById(userId);
|
||||
Assert.notNull(oldUser, "用户不存在");
|
||||
|
||||
Long oldTenantId = oldUser.getTenantId();
|
||||
Long currentTenantId = TenantContextHolder.getTenantId();
|
||||
|
||||
// 验证:只能修改当前租户下的用户(防止跨租户修改)
|
||||
Assert.isTrue(oldTenantId != null && oldTenantId.equals(currentTenantId),
|
||||
"只能修改当前租户下的用户");
|
||||
|
||||
// 检查同一租户下用户名是否已存在(排除当前用户)
|
||||
// 检查用户名是否已存在(排除当前用户)
|
||||
long count = this.count(new LambdaQueryWrapper<User>()
|
||||
.eq(User::getUsername, username)
|
||||
.eq(User::getTenantId, currentTenantId)
|
||||
.ne(User::getId, userId)
|
||||
);
|
||||
Assert.isTrue(count == 0, "该租户下用户名已存在");
|
||||
Assert.isTrue(count == 0, "用户名已存在");
|
||||
|
||||
// form -> entity
|
||||
User entity = userConverter.toEntity(userForm);
|
||||
entity.setUpdateBy(SecurityUtils.getUserId());
|
||||
|
||||
// 保持租户ID不变(不允许跨租户修改用户)
|
||||
entity.setTenantId(oldTenantId);
|
||||
|
||||
// 修改用户
|
||||
boolean result = this.updateById(entity);
|
||||
@@ -222,9 +201,6 @@ public class UserServiceImpl extends ServiceImpl<UserMapper, User> implements Us
|
||||
.collect(Collectors.toList());
|
||||
|
||||
boolean result = this.removeByIds(ids);
|
||||
|
||||
// 新设计:用户删除时,tenant_id 字段会随用户记录一起逻辑删除,无需额外处理
|
||||
|
||||
return result;
|
||||
}
|
||||
|
||||
@@ -246,45 +222,6 @@ public class UserServiceImpl extends ServiceImpl<UserMapper, User> implements Us
|
||||
return userAuthCredentials;
|
||||
}
|
||||
|
||||
@Override
|
||||
public UserAuthCredentials getAuthCredentialsByUsernameAndTenant(String username, Long tenantId) {
|
||||
// 临时忽略租户过滤,查询指定租户下的用户
|
||||
TenantContextHolder.setIgnoreTenant(true);
|
||||
try {
|
||||
// 先查询用户
|
||||
User user = this.getOne(
|
||||
new LambdaQueryWrapper<User>()
|
||||
.eq(User::getUsername, username)
|
||||
.eq(User::getTenantId, tenantId)
|
||||
.eq(User::getIsDeleted, 0)
|
||||
.last("LIMIT 1")
|
||||
);
|
||||
if (user == null) {
|
||||
return null;
|
||||
}
|
||||
// 设置租户上下文,然后查询认证信息(这样会包含该租户下的角色)
|
||||
TenantContextHolder.setTenantId(tenantId);
|
||||
return getAuthCredentialsByUsername(username);
|
||||
} finally {
|
||||
TenantContextHolder.setIgnoreTenant(false);
|
||||
}
|
||||
}
|
||||
|
||||
@Override
|
||||
public List<User> findUserAcrossAllTenants(String username) {
|
||||
// 临时忽略租户过滤,查询该用户名在所有租户下的账户记录
|
||||
TenantContextHolder.setIgnoreTenant(true);
|
||||
try {
|
||||
return this.list(
|
||||
new LambdaQueryWrapper<User>()
|
||||
.eq(User::getUsername, username)
|
||||
.eq(User::getIsDeleted, 0)
|
||||
.orderByAsc(User::getTenantId)
|
||||
);
|
||||
} finally {
|
||||
TenantContextHolder.setIgnoreTenant(false);
|
||||
}
|
||||
}
|
||||
|
||||
/**
|
||||
* 根据OpenID获取用户认证信息
|
||||
|
||||
@@ -263,36 +263,4 @@ captcha:
|
||||
wx:
|
||||
miniapp:
|
||||
app-id: xxxxxx
|
||||
app-secret: xxxxxx
|
||||
|
||||
# ============================================
|
||||
# 多租户配置
|
||||
# ============================================
|
||||
# 说明:通过 youlai.tenant.enabled 控制是否启用多租户功能
|
||||
# 启用后,所有 SQL 查询会自动添加 tenant_id 过滤条件
|
||||
# ============================================
|
||||
youlai:
|
||||
tenant:
|
||||
# 是否启用多租户功能(默认:false)
|
||||
# 设置为 true 启用多租户,设置为 false 禁用多租户(零成本切换)
|
||||
enabled: true
|
||||
|
||||
# 租户字段名(默认:tenant_id)
|
||||
column: tenant_id
|
||||
|
||||
# 默认租户ID(用于兼容旧数据,tenant_id 为 NULL 时使用)
|
||||
default-tenant-id: 1
|
||||
|
||||
# 请求头中的租户ID字段名(默认:tenant-id)
|
||||
header-name: tenant-id
|
||||
|
||||
# 忽略多租户过滤的表名列表(系统表、租户表等不需要租户隔离的表)
|
||||
ignore-tables:
|
||||
- sys_tenant # 租户表本身
|
||||
- sys_menu # 菜单表(功能入口定义,所有租户共享)
|
||||
- sys_dict # 字典表(通常共享)
|
||||
- sys_dict_item # 字典项表(通常共享)
|
||||
- sys_config # 系统配置表(通常共享)
|
||||
- gen_table # 代码生成表(平台共用)
|
||||
- gen_table_column # 代码生成字段表(平台共用)
|
||||
# ============================================
|
||||
app-secret: xxxxxx
|
||||
@@ -319,32 +319,3 @@ ai:
|
||||
max-executions-per-minute: 10
|
||||
max-executions-per-day: 100
|
||||
|
||||
# ============================================
|
||||
# 多租户配置
|
||||
# ============================================
|
||||
# 说明:通过 youlai.tenant.enabled 控制是否启用多租户功能
|
||||
# 启用后,所有 SQL 查询会自动添加 tenant_id 过滤条件
|
||||
# ============================================
|
||||
youlai:
|
||||
tenant:
|
||||
# 是否启用多租户功能(默认:false)
|
||||
# 设置为 true 启用多租户,设置为 false 禁用多租户(零成本切换)
|
||||
enabled: true
|
||||
|
||||
# 租户字段名(默认:tenant_id)
|
||||
column: tenant_id
|
||||
|
||||
# 默认租户ID(用于兼容旧数据,tenant_id 为 NULL 时使用)
|
||||
default-tenant-id: 1
|
||||
|
||||
# 请求头中的租户ID字段名(默认:tenant-id)
|
||||
header-name: tenant-id
|
||||
|
||||
# 忽略多租户过滤的表名列表(系统表、租户表等不需要租户隔离的表)
|
||||
ignore-tables:
|
||||
- sys_tenant # 租户表本身
|
||||
- sys_menu # 菜单表(功能入口定义,所有租户共享)
|
||||
- sys_dict # 字典表(通常共享)
|
||||
- sys_dict_item # 字典项表(通常共享)
|
||||
- sys_config # 系统配置表(通常共享)
|
||||
# ============================================
|
||||
|
||||
@@ -17,7 +17,6 @@
|
||||
|
||||
<!-- 权限和拥有权限的角色的映射 -->
|
||||
<resultMap id="PremRolesMap" type="com.youlai.boot.system.model.bo.RolePermsBO">
|
||||
<result property="tenantId" column="tenant_id"/>
|
||||
<result property="roleCode" column="role_code"/>
|
||||
<collection property="perms" ofType="string" javaType="java.util.Set">
|
||||
<result column="perm"/>
|
||||
@@ -27,7 +26,6 @@
|
||||
<!-- 获取权限和拥有权限的角色列表 -->
|
||||
<select id="getRolePermsList" resultMap="PremRolesMap">
|
||||
SELECT
|
||||
t2.tenant_id,
|
||||
t2.`code` role_code,
|
||||
t3.perm
|
||||
FROM
|
||||
|
||||
Reference in New Issue
Block a user