feat: system manager.
This commit is contained in:
@@ -0,0 +1,31 @@
|
||||
package middleware
|
||||
|
||||
import (
|
||||
"hr_receiver/models"
|
||||
"net/http"
|
||||
|
||||
"github.com/gin-gonic/gin"
|
||||
)
|
||||
|
||||
func RequireSuperAdmin() gin.HandlerFunc {
|
||||
return func(c *gin.Context) {
|
||||
roleValue, exists := c.Get("role")
|
||||
if !exists {
|
||||
c.JSON(http.StatusForbidden, gin.H{"error": "missing user role"})
|
||||
c.Abort()
|
||||
return
|
||||
}
|
||||
role, ok := roleValue.(models.UserRole)
|
||||
if !ok {
|
||||
c.JSON(http.StatusForbidden, gin.H{"error": "invalid user role"})
|
||||
c.Abort()
|
||||
return
|
||||
}
|
||||
if role != models.UserRoleSuperAdmin {
|
||||
c.JSON(http.StatusForbidden, gin.H{"error": "super admin required"})
|
||||
c.Abort()
|
||||
return
|
||||
}
|
||||
c.Next()
|
||||
}
|
||||
}
|
||||
Reference in New Issue
Block a user