updateUserLogic.go 5.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160
  1. package user
  2. import (
  3. "context"
  4. "errors"
  5. "strings"
  6. "perms-system-server/internal/consts"
  7. authHelper "perms-system-server/internal/logic/auth"
  8. "perms-system-server/internal/middleware"
  9. userModel "perms-system-server/internal/model/user"
  10. "perms-system-server/internal/response"
  11. "perms-system-server/internal/svc"
  12. "perms-system-server/internal/types"
  13. "perms-system-server/internal/util"
  14. "github.com/zeromicro/go-zero/core/logx"
  15. )
  16. type UpdateUserLogic struct {
  17. logx.Logger
  18. ctx context.Context
  19. svcCtx *svc.ServiceContext
  20. }
  21. func NewUpdateUserLogic(ctx context.Context, svcCtx *svc.ServiceContext) *UpdateUserLogic {
  22. return &UpdateUserLogic{
  23. Logger: logx.WithContext(ctx),
  24. ctx: ctx,
  25. svcCtx: svcCtx,
  26. }
  27. }
  28. // UpdateUser 更新用户信息。修改用户昵称、邮箱、手机、备注、部门归属等。用户可修改自身非敏感字段,管理者可修改下属用户信息。
  29. func (l *UpdateUserLogic) UpdateUser(req *types.UpdateUserReq) error {
  30. caller := middleware.GetUserDetails(l.ctx)
  31. if caller == nil {
  32. return response.ErrUnauthorized("未登录")
  33. }
  34. if caller.UserId == req.Id {
  35. if req.DeptId != nil || req.Status != 0 {
  36. return response.ErrForbidden("不允许修改自己的部门和状态")
  37. }
  38. }
  39. // 前置 FindOne,后续 CheckManageAccess / ValidateStatusChange 都复用此对象,避免一次请求内
  40. // 对 target 做 2~3 次重复查询(见审计 M-5)。
  41. user, err := l.svcCtx.SysUserModel.FindOne(l.ctx, req.Id)
  42. if err != nil {
  43. return response.ErrNotFound("用户不存在")
  44. }
  45. if caller.UserId != req.Id {
  46. productCode := middleware.GetProductCode(l.ctx)
  47. if err := authHelper.CheckManageAccess(l.ctx, l.svcCtx, req.Id, productCode, authHelper.WithPrefetchedTarget(user)); err != nil {
  48. return err
  49. }
  50. }
  51. // req.Status != 0 仅会落在 caller.UserId != req.Id 分支(上方 caller==target 的请求已经拦截),
  52. // 此处沿用 ValidateStatusChange 的超管保护语义,避免再次 FindOne。
  53. if req.Status != 0 && user.IsSuperAdmin == consts.IsSuperAdminYes {
  54. return response.ErrForbidden("不能修改超级管理员的状态")
  55. }
  56. if caller.UserId != req.Id && user.IsSuperAdmin == consts.IsSuperAdminYes {
  57. if req.DeptId != nil {
  58. return response.ErrForbidden("不能通过此接口修改其他超级管理员的部门")
  59. }
  60. }
  61. if req.Nickname != nil && len(*req.Nickname) > 64 {
  62. return response.ErrBadRequest("昵称长度不能超过64个字符")
  63. }
  64. if req.Email != nil && len(*req.Email) > 64 {
  65. return response.ErrBadRequest("邮箱长度不能超过64个字符")
  66. }
  67. if req.Phone != nil && len(*req.Phone) > 32 {
  68. return response.ErrBadRequest("手机号长度不能超过32个字符")
  69. }
  70. if req.Remark != nil && len(*req.Remark) > 255 {
  71. return response.ErrBadRequest("备注长度不能超过255个字符")
  72. }
  73. nickname := user.Nickname
  74. email := user.Email
  75. phone := user.Phone
  76. remark := user.Remark
  77. deptId := user.DeptId
  78. if req.Nickname != nil {
  79. nickname = *req.Nickname
  80. }
  81. if req.Email != nil {
  82. if *req.Email != "" && !util.IsValidEmail(*req.Email) {
  83. return response.ErrBadRequest("邮箱格式不正确")
  84. }
  85. email = *req.Email
  86. }
  87. if req.Phone != nil {
  88. if *req.Phone != "" && !util.IsValidPhone(*req.Phone) {
  89. return response.ErrBadRequest("手机号格式不正确")
  90. }
  91. phone = *req.Phone
  92. }
  93. if req.Remark != nil {
  94. remark = *req.Remark
  95. }
  96. if req.DeptId != nil {
  97. if *req.DeptId > 0 {
  98. newDept, err := l.svcCtx.SysDeptModel.FindOne(l.ctx, *req.DeptId)
  99. if err != nil {
  100. return response.ErrBadRequest("部门不存在")
  101. }
  102. if !caller.IsSuperAdmin &&
  103. caller.MemberType != consts.MemberTypeAdmin &&
  104. caller.DeptPath != "" &&
  105. !strings.HasPrefix(newDept.Path, caller.DeptPath) {
  106. return response.ErrForbidden("无权将用户调入非自己管辖的部门")
  107. }
  108. } else {
  109. // deptId=0 意味着"把用户移出部门树";一旦生效目标将失去 DeptPath,此后 MEMBER / DEVELOPER
  110. // 级别的调用者都通不过 checkDeptHierarchy 对"目标必须归属部门"的强校验,无法再被管辖。
  111. // 因此仅超管和产品 ADMIN 有权执行该破坏组织结构语义的操作(见审计 H-4)。
  112. if !caller.IsSuperAdmin && caller.MemberType != consts.MemberTypeAdmin {
  113. return response.ErrForbidden("仅超级管理员或产品管理员可将用户移出部门")
  114. }
  115. }
  116. deptId = *req.DeptId
  117. }
  118. statusChanged := false
  119. if req.Status != 0 {
  120. if req.Status != consts.StatusEnabled && req.Status != consts.StatusDisabled {
  121. return response.ErrBadRequest("状态值无效,仅支持 1(启用) 和 2(冻结)")
  122. }
  123. if user.Status != req.Status {
  124. statusChanged = true
  125. }
  126. }
  127. newStatus := user.Status
  128. if statusChanged {
  129. newStatus = req.Status
  130. }
  131. if err := l.svcCtx.SysUserModel.UpdateProfile(
  132. l.ctx, req.Id, user.Username,
  133. nickname, email, phone, remark, deptId,
  134. newStatus, statusChanged, user.UpdateTime,
  135. ); err != nil {
  136. if errors.Is(err, userModel.ErrUpdateConflict) {
  137. return response.ErrConflict("数据已被其他操作修改,请刷新后重试")
  138. }
  139. return err
  140. }
  141. l.svcCtx.UserDetailsLoader.Clean(l.ctx, req.Id)
  142. return nil
  143. }