service.go 4.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230
  1. package ldap
  2. import (
  3. "crypto/md5"
  4. "encoding/hex"
  5. "errors"
  6. "fmt"
  7. "github.com/astaxie/beego/orm"
  8. "nginx-ui/server/config"
  9. "nginx-ui/server/models"
  10. "nginx-ui/server/vo"
  11. )
  12. type Service struct {
  13. }
  14. var ServiceInstance = new(Service)
  15. var UserIns = new(UserService)
  16. // GetServer 获取一个可用的LDAP 连接, 用于登录时获取服务信息
  17. func (c *Service) GetServer() (*models.LdapServer, error) {
  18. o := orm.NewOrm()
  19. server := models.LdapServer{
  20. Active: true,
  21. }
  22. err := o.Read(&server, "Active")
  23. if err != nil {
  24. return nil, err
  25. }
  26. return &server, nil
  27. }
  28. func (c *Service) Login(req *LDAPLoginReq) (*models.User, error) {
  29. server := models.LdapServer{Key: req.ServerKey}
  30. o := orm.NewOrm()
  31. err := o.Read(&server, "Key")
  32. if err != nil {
  33. return nil, errors.New("未找到对应的LDAP服务!")
  34. }
  35. user, err := UserIns.Authentication(&server, req.Account, req.Password)
  36. if err != nil {
  37. return nil, err
  38. }
  39. user.Password = ""
  40. return user, nil
  41. }
  42. // GetServers 获取用户所有的LDAP连接
  43. // get /ldap/server
  44. func (c *Service) GetServers(current *models.User, req *vo.PageReq) (*vo.PageResp, error) {
  45. o := orm.NewOrm()
  46. req.Ensure()
  47. qs := o.QueryTable(&models.LdapServer{})
  48. if !current.IsAdmin() {
  49. qs = qs.Filter("Uid", current.Account)
  50. }
  51. total, err := qs.Count()
  52. if err != nil {
  53. return nil, err
  54. }
  55. qs.OrderBy("Id")
  56. qs.Offset(req.Offset)
  57. qs.Limit(req.PageSize)
  58. var list []*models.LdapServer
  59. _, err = qs.All(&list)
  60. for _, v := range list {
  61. v.Password = config.ReplacePassword
  62. }
  63. if err != nil {
  64. return nil, err
  65. }
  66. resp := vo.PageResp{
  67. Current: req.Current,
  68. PageSize: req.PageSize,
  69. Total: total,
  70. List: list,
  71. }
  72. return &resp, err
  73. }
  74. // Update 保存或者修改
  75. // post /ldap/server
  76. func (c *Service) Update(current *models.User, body *models.LdapServer) (*models.LdapServer, error) {
  77. if body.Url == "" {
  78. return nil, errors.New("请完成服务配置,缺少Url!")
  79. }
  80. if body.Key == "" {
  81. key := md5.Sum([]byte(body.Url))
  82. body.Key = hex.EncodeToString(key[:])
  83. }
  84. o := orm.NewOrm()
  85. if body.Id == 0 {
  86. exist := models.LdapServer{Key: body.Key}
  87. err := o.Read(&exist, "Key")
  88. if err != nil && !errors.Is(err, orm.ErrNoRows) {
  89. return nil, err
  90. }
  91. if exist.Id > 0 {
  92. return nil, errors.New("该服务Url已存在!")
  93. }
  94. }
  95. if body.Id > 0 {
  96. exist := models.LdapServer{Id: body.Id}
  97. err := o.Read(&exist, "Id")
  98. if err != nil {
  99. return nil, err
  100. }
  101. if config.ReplacePassword == body.Password {
  102. body.Password = exist.Password
  103. }
  104. _, err = o.Update(body)
  105. if err != nil {
  106. return nil, err
  107. }
  108. } else {
  109. id, err := o.Insert(body)
  110. if err != nil {
  111. return nil, err
  112. }
  113. body.Id = int(id)
  114. }
  115. return body, nil
  116. }
  117. // Add Update 保存或者修改
  118. func (c *Service) Add(current *models.User, body *models.LdapServer) (*models.LdapServer, error) {
  119. if body.Url == "" {
  120. return nil, errors.New("请完成服务配置,缺少Url!")
  121. }
  122. if body.Key == "" {
  123. key := md5.Sum([]byte(body.Url))
  124. body.Key = hex.EncodeToString(key[:])
  125. }
  126. o := orm.NewOrm()
  127. if body.Id == 0 {
  128. exist := models.LdapServer{Key: body.Key}
  129. err := o.Read(&exist, "Key")
  130. if err != nil && !errors.Is(err, orm.ErrNoRows) {
  131. return nil, err
  132. }
  133. if exist.Id > 0 {
  134. return nil, errors.New("该服务Url已存在!")
  135. }
  136. }
  137. if body.Id > 0 {
  138. exist := models.LdapServer{Id: body.Id}
  139. err := o.Read(&exist, "Id")
  140. if err != nil {
  141. return nil, err
  142. }
  143. if config.ReplacePassword == body.Password {
  144. body.Password = exist.Password
  145. }
  146. _, err = o.Update(body)
  147. if err != nil {
  148. return nil, err
  149. }
  150. } else {
  151. id, err := o.Insert(body)
  152. if err != nil {
  153. return nil, err
  154. }
  155. body.Id = int(id)
  156. }
  157. return body, nil
  158. }
  159. // VerifyServer 验证服务
  160. func (c *Service) VerifyServer(req *VerifyReq) ([]*models.LdapUser, error) {
  161. var server = &models.LdapServer{
  162. Id: req.Id,
  163. }
  164. o := orm.NewOrm()
  165. err := o.Read(server, "Id")
  166. if err != nil {
  167. return nil, err
  168. }
  169. if req.Filter == "" && req.Username != "" {
  170. req.Filter = fmt.Sprintf("(&(objectClass=*)(uid=%s))", req.Username)
  171. }
  172. users, _, err := UserIns.Search(server, req.Filter)
  173. if err != nil {
  174. return nil, err
  175. }
  176. return users, nil
  177. }
  178. // GetUsers 获取全部用户
  179. // get /ldap/users
  180. func (c *Service) GetUsers(current *models.User, req *UserListReq) (*vo.PageResp, error) {
  181. req.Ensure()
  182. o := orm.NewOrm()
  183. qs := o.QueryTable(&models.LdapUser{})
  184. if !current.IsAdmin() {
  185. qs = qs.Filter("Uid", current.Account)
  186. }
  187. qs.Filter("ServerKey", req.ServerKey)
  188. total, err := qs.Count()
  189. if err != nil {
  190. return nil, err
  191. }
  192. qs.OrderBy("Id")
  193. qs.Offset(req.Offset)
  194. qs.Limit(req.PageSize)
  195. var list []*models.LdapUser
  196. _, err = qs.All(&list)
  197. if err != nil {
  198. return nil, err
  199. }
  200. resp := vo.PageResp{
  201. Current: req.Current,
  202. PageSize: req.PageSize,
  203. Total: total,
  204. List: list,
  205. }
  206. return &resp, nil
  207. }