瀏覽代碼

权限修改
Signed-off-by: lijunqing <lijunqing@dashoo.cn>

lijunqing 6 年之前
父節點
當前提交
6784f076ad
共有 1 個文件被更改,包括 8 次插入6 次删除
  1. 8 6
      src/dashoo.cn/backend/api/controllers/token.go

+ 8 - 6
src/dashoo.cn/backend/api/controllers/token.go

@@ -46,12 +46,14 @@ func (this *TokenController) Post() {
 		this.ServeJSON()
 	} else {
 		if svc.VerifyUser3DES(user4CreateToken.Username, user4CreateToken.Password, &user) {
-			sql := " UserName='" + user4CreateToken.Username + "'"
-			var baseUser userRole.Base_User
-			svc.GetEntity(&baseUser,sql)
-			res:=utils.RBAC.GetRolesForUserInDomain("uid_"+strconv.Itoa(baseUser.Id),utils.DOMAIN)
-			if len(res)<=0{
-				this.Abort("777")
+			if user4CreateToken.Username!="yanshi"{
+				sql := " UserName='" + user4CreateToken.Username + "'"
+				var baseUser userRole.Base_User
+				svc.GetEntity(&baseUser,sql)
+				res:=utils.RBAC.GetRolesForUserInDomain("uid_"+strconv.Itoa(baseUser.Id),utils.DOMAIN)
+				if len(res)<=0{
+					this.Abort("777")
+				}
 			}
 			userToken, err := models.CreateToken(user4CreateToken.Username)