-
Notifications
You must be signed in to change notification settings - Fork 0
/
folderAdmin.go
64 lines (59 loc) · 1.46 KB
/
folderAdmin.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
package controllers
import (
"errors"
"github.com/gitDashboard/gitDashboard/app/models"
"github.com/revel/revel"
)
type FolderAdminController struct {
JWTController
Folder models.Folder
}
func (ctrl *FolderAdminController) isAuthorized(folderToCheck *models.Folder) bool {
if folderToCheck.ID != 0 {
for _, admin := range folderToCheck.Admins {
if admin.ID == ctrl.User.ID {
return true
}
}
var parentFolder models.Folder
db := ctrl.Tx.Preload("Admins").Find(&parentFolder, folderToCheck.ParentID)
if db.Error != nil {
revel.ERROR.Println(db.Error)
return false
}
return ctrl.isAuthorized(&parentFolder)
}
return false
}
func (ctrl *FolderAdminController) CheckPermission() revel.Result {
if ctrl.User.Admin {
return nil
} else {
var folderId uint
var repoId uint
authorized := false
ctrl.Params.Bind(&folderId, "folderId")
ctrl.Params.Bind(&repoId, "repoId")
if folderId == 0 && repoId != 0 {
var repo models.Repo
db := ctrl.Tx.First(&repo, repoId)
if db.Error != nil {
revel.ERROR.Println(db.Error)
return ctrl.RenderError(db.Error)
}
folderId = repo.FolderID
}
if folderId != 0 {
db := ctrl.Tx.Preload("Admins").First(&ctrl.Folder, folderId)
if db.Error != nil {
revel.ERROR.Println(db.Error)
return ctrl.RenderError(db.Error)
}
authorized = ctrl.isAuthorized(&ctrl.Folder)
}
if !authorized {
return ctrl.RenderError(errors.New("401: Not authorized"))
}
return nil
}
}