stage_check.js 5.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118
  1. 'use strict';
  2. /**
  3. *
  4. * @author Mai
  5. * @date
  6. * @version
  7. */
  8. const status = require('../const/audit').stage.status;
  9. const _ = require('lodash');
  10. module.exports = options => {
  11. /**
  12. * 期校验 中间件
  13. * 1. 读取期数据
  14. * 2. 检验用户是否参与期(不校验具体权限)
  15. *
  16. * 写入ctx.stage数据
  17. * 其中:
  18. * stage.auditors: 审批人列表(退回原报时,加载上一流程)
  19. * stage.curAuditor: 当前审批人(未上报为空,审批通过 or 退回原报时,为空)
  20. * stage.readonly: 登录人,是否可操作
  21. * stage.curTimes: 当前登录人,操作、查阅数据times
  22. * stage.curOrder: 当前登录人,操作、查阅数据order
  23. *
  24. * 该方法为通用方法,如需stage其他数据,请在controller中查询
  25. *
  26. * @param {function} next - 中间件继续执行的方法
  27. * @return {void}
  28. */
  29. return function* stageCheck(next) {
  30. try {
  31. // 读取标段数据
  32. const stageOrder = parseInt(this.params.order);
  33. if (stageOrder <= 0) {
  34. throw '您访问的期不存在';
  35. }
  36. const stage = yield this.service.stage.getDataByCondition({
  37. tid: this.tender.id,
  38. order: stageOrder,
  39. });
  40. if (!stage) {
  41. throw '期数据错误';
  42. }
  43. // 读取原报、审核人数据
  44. stage.auditors = yield this.service.stageAudit.getAuditors(stage.id, stage.times);
  45. stage.curAuditor = yield this.service.stageAudit.getCurAuditor(stage.id, stage.times);
  46. // 权限相关
  47. // todo 校验权限 (标段参与人、分享)
  48. const accountId = this.session.sessionUser.accountId, auditorIds = _.map(stage.auditors, 'aid'), shareIds = [];
  49. if (accountId === stage.user_id) { // 原报
  50. if (stage.curAuditor) {
  51. stage.readOnly = stage.status === status.checking && stage.curAuditor.user_id === accountId;
  52. } else {
  53. stage.readOnly = stage.status !== status.uncheck && stage.status !== status.checkNo;
  54. }
  55. stage.curTimes = stage.times;
  56. if (stage.status === status.uncheck || stage.status === status.checkNo) {
  57. stage.curOrder = 0;
  58. } else if (stage.status === status.checked) {
  59. stage.curOrder = _.max(_.map(stage.auditors, 'order'));
  60. } else {
  61. stage.curOrder = stage.curAuditor.aid === accountId ? stage.curAuditor.order : stage.curAuditor.order - 1;
  62. }
  63. } else if (auditorIds.indexOf(accountId) !== -1) { // 审批人
  64. if (stage.status === status.uncheck) {
  65. throw '您无权查看该数据';
  66. }
  67. stage.readOnly = (stage.status !== status.checking && stage.status !== status.checkNoPre) || accountId !== stage.curAuditor.aid;
  68. stage.curTimes = stage.status === status.checkNo ? stage.times - 1 : stage.times;
  69. if (stage.status === status.checked) {
  70. stage.curOrder = _.max(_.map(stage.auditors, 'order'));
  71. } else if (stage.status === status.checkNo) {
  72. const audit = this.service.stageAudit.getDataByCondition({
  73. sid: stage.id, times: stage.times, status: status.checkNo
  74. });
  75. stage.curOrder = audit.order;
  76. } else {
  77. stage.curOrder = accountId === stage.curAuditor.aid ? stage.curAuditor.order : stage.curAuditor.order - 1;
  78. }
  79. } else if (shareIds.indexOf(accountId) !== -1) { // 分享人
  80. if (stage.status === status.uncheck) {
  81. throw '您无权查看该数据';
  82. }
  83. stage.readOnly = true;
  84. stage.curTimes = stage.status === status.checkNo ? stage.times - 1 : stage.times;
  85. stage.curOrder = stage.status === status.checked ? _.max(_.map(stage.auditors, 'order')) : stage.curAuditor.order - 1;
  86. } else { // 其他不可见
  87. throw '您无权查看该数据';
  88. }
  89. // 获取最新的期
  90. stage.highOrder = yield this.service.stage.count({
  91. tid: this.tender.id,
  92. });
  93. this.stage = stage;
  94. yield next;
  95. } catch (err) {
  96. console.log(err);
  97. // 输出错误到日志
  98. if (err.stack) {
  99. this.logger.error(err);
  100. } else {
  101. this.getLogger('fail').info(JSON.stringify({
  102. error: err,
  103. project: this.session.sessionProject,
  104. user: this.session.sessionUser,
  105. body: this.session.body,
  106. }));
  107. }
  108. // 重定向值标段管理
  109. this.redirect(this.request.headers.referer);
  110. }
  111. };
  112. };