2025-05-08 13:18:54 +08:00
|
|
|
|
package auth
|
|
|
|
|
|
|
|
|
|
|
|
// Context 定义认证信息
|
|
|
|
|
|
type Context struct {
|
|
|
|
|
|
Payload Payload `json:"payload"`
|
|
|
|
|
|
Agent Agent `json:"agent,omitempty"`
|
|
|
|
|
|
Permissions map[string]struct{} `json:"permissions,omitempty"`
|
|
|
|
|
|
Metadata map[string]interface{} `json:"metadata,omitempty"`
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
// AnyPermission 检查认证是否包含指定权限
|
|
|
|
|
|
func (a *Context) AnyPermission(requiredPermission ...string) bool {
|
|
|
|
|
|
if a == nil || a.Permissions == nil {
|
|
|
|
|
|
return false
|
|
|
|
|
|
}
|
|
|
|
|
|
for _, permission := range requiredPermission {
|
|
|
|
|
|
if _, ok := a.Permissions[permission]; ok {
|
|
|
|
|
|
return true
|
|
|
|
|
|
}
|
|
|
|
|
|
}
|
|
|
|
|
|
return false
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
// Payload 定义负载信息
|
|
|
|
|
|
type Payload struct {
|
|
|
|
|
|
Id int32 `json:"id,omitempty"`
|
|
|
|
|
|
Type PayloadType `json:"type,omitempty"`
|
|
|
|
|
|
Name string `json:"name,omitempty"`
|
|
|
|
|
|
Avatar string `json:"avatar,omitempty"`
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
type Agent struct {
|
|
|
|
|
|
Id int32 `json:"id,omitempty"`
|
|
|
|
|
|
Addr string `json:"addr,omitempty"`
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
type PayloadType int
|
|
|
|
|
|
|
|
|
|
|
|
const (
|
2025-05-09 18:56:17 +08:00
|
|
|
|
// PayloadNone 游客
|
2025-05-09 15:06:22 +08:00
|
|
|
|
PayloadNone PayloadType = iota
|
2025-05-09 18:56:17 +08:00
|
|
|
|
// PayloadUser 用户
|
2025-05-09 15:06:22 +08:00
|
|
|
|
PayloadUser
|
2025-05-09 18:56:17 +08:00
|
|
|
|
// PayloadAdmin 管理员
|
2025-05-08 13:18:54 +08:00
|
|
|
|
PayloadAdmin
|
2025-05-09 18:56:17 +08:00
|
|
|
|
// PayloadPublicServer 公共服务(public_client)
|
|
|
|
|
|
PayloadPublicServer
|
|
|
|
|
|
// PayloadSecuredServer 安全服务(credential_client)
|
|
|
|
|
|
PayloadSecuredServer
|
|
|
|
|
|
// PayloadInternalServer 内部服务
|
|
|
|
|
|
PayloadInternalServer
|
2025-05-08 13:18:54 +08:00
|
|
|
|
)
|
|
|
|
|
|
|
|
|
|
|
|
func (t PayloadType) ToStr() string {
|
|
|
|
|
|
switch t {
|
|
|
|
|
|
case PayloadUser:
|
|
|
|
|
|
return "user"
|
|
|
|
|
|
case PayloadAdmin:
|
|
|
|
|
|
return "admn"
|
2025-05-09 18:56:17 +08:00
|
|
|
|
case PayloadPublicServer:
|
2025-05-08 13:18:54 +08:00
|
|
|
|
return "cpub"
|
2025-05-09 18:56:17 +08:00
|
|
|
|
case PayloadSecuredServer:
|
2025-05-08 13:18:54 +08:00
|
|
|
|
return "ccnf"
|
2025-05-09 15:06:22 +08:00
|
|
|
|
default:
|
|
|
|
|
|
return "none"
|
2025-05-08 13:18:54 +08:00
|
|
|
|
}
|
|
|
|
|
|
}
|
|
|
|
|
|
|
2025-05-09 15:06:22 +08:00
|
|
|
|
func PayloadTypeFromStr(name string) PayloadType {
|
2025-05-08 13:18:54 +08:00
|
|
|
|
switch name {
|
|
|
|
|
|
case "user":
|
2025-05-09 15:06:22 +08:00
|
|
|
|
return PayloadUser
|
2025-05-08 13:18:54 +08:00
|
|
|
|
case "admn":
|
2025-05-09 15:06:22 +08:00
|
|
|
|
return PayloadAdmin
|
2025-05-08 13:18:54 +08:00
|
|
|
|
case "cpub":
|
2025-05-09 18:56:17 +08:00
|
|
|
|
return PayloadPublicServer
|
2025-05-08 13:18:54 +08:00
|
|
|
|
case "ccnf":
|
2025-05-09 18:56:17 +08:00
|
|
|
|
return PayloadSecuredServer
|
2025-05-09 15:06:22 +08:00
|
|
|
|
default:
|
|
|
|
|
|
return PayloadNone
|
2025-05-08 13:18:54 +08:00
|
|
|
|
}
|
|
|
|
|
|
}
|