- JWT claims extended with tenantId; login enforces strict tenant verification - AuthorityMiddleware: tenant scope check + Casbin path permission + anti-spoofing - CRM relation API (upstream/downstream one-hop, create/update/history, full graph) - CrmRepo backed by PostgreSQL with $N placeholders - gRPC tenant propagation via UnaryClientInterceptor (x-tenant-id metadata) - All legacy tables (12) gain tenant_id column with indexes - All model queries inject WHERE tenant_id filter - Casbin gorm-adapter downgraded to v3.28.0 for v2 compatibility - GraphSyncWorker (Kafka -> Neo4j) with idempotent MERGE - Full graph API restricted to admin role only - Database migrations for MySQL (CRM tables + tenant columns) and PostgreSQL (CRM init) - Docker Compose: added postgres service to main stack, graph stack with Kafka/Debezium/Neo4j Made-with: Cursor
71 lines
1.9 KiB
Go
Executable File
71 lines
1.9 KiB
Go
Executable File
package model
|
|
|
|
import (
|
|
"context"
|
|
"fmt"
|
|
|
|
"github.com/zeromicro/go-zero/core/stores/cache"
|
|
"github.com/zeromicro/go-zero/core/stores/sqlx"
|
|
)
|
|
|
|
var _ SysRoleModel = (*customSysRoleModel)(nil)
|
|
|
|
type (
|
|
SysRoleModel interface {
|
|
sysRoleModel
|
|
FindList(ctx context.Context, tenantId string, page, pageSize int64, roleName string, status int64) ([]*SysRole, int64, error)
|
|
FindAll(ctx context.Context, tenantId string) ([]*SysRole, error)
|
|
}
|
|
|
|
customSysRoleModel struct {
|
|
*defaultSysRoleModel
|
|
}
|
|
)
|
|
|
|
func NewSysRoleModel(conn sqlx.SqlConn, c cache.CacheConf, opts ...cache.Option) SysRoleModel {
|
|
return &customSysRoleModel{
|
|
defaultSysRoleModel: newSysRoleModel(conn, c, opts...),
|
|
}
|
|
}
|
|
|
|
func (m *customSysRoleModel) FindList(ctx context.Context, tenantId string, page, pageSize int64, roleName string, status int64) ([]*SysRole, int64, error) {
|
|
where := "WHERE tenant_id = ?"
|
|
args := []interface{}{tenantId}
|
|
|
|
if roleName != "" {
|
|
where += " AND role_name LIKE ?"
|
|
args = append(args, "%"+roleName+"%")
|
|
}
|
|
if status >= 0 {
|
|
where += " AND status = ?"
|
|
args = append(args, status)
|
|
}
|
|
|
|
var total int64
|
|
countQuery := fmt.Sprintf("SELECT COUNT(*) FROM %s %s", m.table, where)
|
|
err := m.QueryRowNoCacheCtx(ctx, &total, countQuery, args...)
|
|
if err != nil {
|
|
return nil, 0, err
|
|
}
|
|
|
|
var list []*SysRole
|
|
query := fmt.Sprintf("SELECT %s FROM %s %s ORDER BY sort_order ASC, created_at DESC LIMIT ? OFFSET ?", sysRoleRows, m.table, where)
|
|
args = append(args, pageSize, (page-1)*pageSize)
|
|
err = m.QueryRowsNoCacheCtx(ctx, &list, query, args...)
|
|
if err != nil {
|
|
return nil, 0, err
|
|
}
|
|
|
|
return list, total, nil
|
|
}
|
|
|
|
func (m *customSysRoleModel) FindAll(ctx context.Context, tenantId string) ([]*SysRole, error) {
|
|
var list []*SysRole
|
|
query := fmt.Sprintf("SELECT %s FROM %s WHERE tenant_id = ? ORDER BY sort_order ASC", sysRoleRows, m.table)
|
|
err := m.QueryRowsNoCacheCtx(ctx, &list, query, tenantId)
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
return list, nil
|
|
}
|