2021-07-07 14:59:03 +08:00
|
|
|
// Copyright 2021 The casbin Authors. All Rights Reserved.
|
|
|
|
//
|
|
|
|
// Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
// you may not use this file except in compliance with the License.
|
|
|
|
// You may obtain a copy of the License at
|
|
|
|
//
|
|
|
|
// http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
//
|
|
|
|
// Unless required by applicable law or agreed to in writing, software
|
|
|
|
// distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
// See the License for the specific language governing permissions and
|
|
|
|
// limitations under the License.
|
|
|
|
|
|
|
|
package routers
|
|
|
|
|
|
|
|
import (
|
|
|
|
"strings"
|
|
|
|
|
|
|
|
"github.com/astaxie/beego/context"
|
2021-07-25 09:34:25 +08:00
|
|
|
"github.com/casbin/casdoor/object"
|
|
|
|
"github.com/casbin/casdoor/util"
|
2021-07-07 14:59:03 +08:00
|
|
|
)
|
|
|
|
|
|
|
|
func getUser(ctx *context.Context) (username string) {
|
|
|
|
defer func() {
|
|
|
|
if r := recover(); r != nil {
|
|
|
|
username = getUserByClientIdSecret(ctx)
|
|
|
|
}
|
|
|
|
}()
|
|
|
|
|
|
|
|
username = ctx.Input.Session("username").(string)
|
|
|
|
|
|
|
|
if username == "" {
|
|
|
|
username = getUserByClientIdSecret(ctx)
|
|
|
|
}
|
|
|
|
|
|
|
|
return
|
|
|
|
}
|
|
|
|
|
|
|
|
func getUserByClientIdSecret(ctx *context.Context) string {
|
|
|
|
requestUri := ctx.Request.RequestURI
|
|
|
|
clientId := parseQuery(requestUri, "clientId")
|
|
|
|
clientSecret := parseQuery(requestUri, "clientSecret")
|
|
|
|
if len(clientId) == 0 || len(clientSecret) == 0 {
|
|
|
|
return ""
|
|
|
|
}
|
|
|
|
|
|
|
|
app := object.GetApplicationByClientId(clientId)
|
|
|
|
if app == nil || app.ClientSecret != clientSecret {
|
|
|
|
return ""
|
|
|
|
}
|
2021-08-07 22:02:56 +08:00
|
|
|
return app.Organization + "/" + app.Name
|
2021-07-07 14:59:03 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
func RecordMessage(ctx *context.Context) {
|
|
|
|
if ctx.Request.URL.Path != "/api/login" {
|
|
|
|
user := getUser(ctx)
|
2021-08-07 22:02:56 +08:00
|
|
|
userinfo := strings.Split(user, "/")
|
2021-07-07 14:59:03 +08:00
|
|
|
if user == "" {
|
2021-08-07 22:02:56 +08:00
|
|
|
userinfo = append(userinfo, "")
|
2021-07-07 14:59:03 +08:00
|
|
|
}
|
|
|
|
record := util.Records(ctx)
|
|
|
|
record.Organization = userinfo[0]
|
|
|
|
record.Username = userinfo[1]
|
|
|
|
|
|
|
|
object.AddRecord(record)
|
|
|
|
}
|
|
|
|
}
|