<?php namespace Manage\Lib; use Dever; class Auth { protected $login = true; protected $uid; protected $user; public $data = array(); public function __construct() { $info = Dever::load('common')->auth(); if (!$info && $this->login) { $info['uid'] = 1; //Dever::error('请先登录'); } $this->uid = $info['uid']; $this->user = Dever::db('admin')->find($this->uid); if (!$this->user) { Dever::error('请先登录'); } $this->user['auth'] = array('system' => '', 'menu' => '', 'func' => ''); if ($this->user['role']) { $role = Dever::db('role')->select(array('id' => array('in', $this->user['role'])))->fetchAll(); foreach ($role as $k => $v) { $this->user['auth']['system'] .= $v['system'] . ','; $this->user['auth']['menu'] .= $v['menu'] . ','; $this->user['auth']['func'] .= $v['auth'] . ','; } } if ($this->user['auth']['system']) { $this->user['auth']['system'] = rtrim($this->user['auth']['system'], ','); } if ($this->user['auth']['menu']) { $this->user['auth']['menu'] = rtrim($this->user['auth']['menu'], ','); } if ($this->user['auth']['func']) { $this->user['auth']['func'] = ',' . $this->user['auth']['func']; } $this->user['select'] = $info['extend'] ?? false; if (!$this->user['select']) { $this->user['select'] = array('system_id' => 1, 'relation_id' => 1); } $this->checkSystem($this->user['select']['system_id']); } # 设置功能权限 public function getFunc($key, $name, $sort = 1, $param = '') { if (!$key) { $key = md5(base64_encode($name)); } if ($param) { if (is_array($param)) { $param = Dever::json_encode($name); } $key = $key . '_' . md5($param); } $data['menu_id'] = $this->menu['id']; $data['key'] = $key; $info = Dever::db('menu_func')->find($data); $name = $this->menu['name'] . '-' . $name; if (!$info) { $data['name'] = $name; $data['sort'] = $sort; $id = Dever::db('menu_func')->insert($data); Dever::db('menu')->update($this->menu['id'], array('func' => 1)); } else { if ($info['name'] != $name) { $data['name'] = $name; $data['sort'] = $sort; Dever::db('menu_func')->update($info['id'], $data); Dever::db('menu')->update($this->menu['id'], array('func' => 1)); } $id = $info['id']; } if ($this->user['id'] == 1) { return $id; } if ($this->user['auth']['func'] && strpos($this->user['auth']['func'], ',' . $id . ',')) { return $id; } return false; } # 检测系统权限 protected function checkSystem($system_id) { if ($this->user['auth']['system'] && !Dever::check($this->user['auth']['system'], $system_id)) { Dever::error('无系统权限'); } } # 检测菜单权限 protected function checkMenu($menu, $result = true) { if ($this->user['auth']['menu'] && !Dever::check($this->user['auth']['menu'], $menu)) { if ($result) { return true; } Dever::error('无访问权限'); } if ($result) { return false; } } # 检测功能权限 protected function checkFunc() { $id = Dever::input('func'); if (!$id) { return false; } if ($this->user['id'] == 1) { return $id; } if ($this->user['auth']['func'] && strpos($this->user['auth']['func'], ',' . $id . ',')) { return $id; } Dever::error('无操作权限'); } }