@@ -29,6 +29,6 @@ |
||
29 | 29 | $group->permissions()->attach($permission_ids); |
30 | 30 | }); |
31 | 31 | |
32 | - return \Core::groups()->find($group_id); |
|
32 | + return \Core::groups()->find($group_id); |
|
33 | 33 | } |
34 | 34 | } |
@@ -23,7 +23,7 @@ |
||
23 | 23 | */ |
24 | 24 | public function assignPermissions($group_id, $permission_ids) |
25 | 25 | { |
26 | - \DB::transaction(function () use ($group_id, $permission_ids) { |
|
26 | + \DB::transaction(function() use ($group_id, $permission_ids) { |
|
27 | 27 | $group = \Core::groups()->find($group_id); |
28 | 28 | $group->permissions()->detach(); |
29 | 29 | $group->permissions()->attach($permission_ids); |
@@ -4,178 +4,178 @@ |
||
4 | 4 | |
5 | 5 | class UserRepository extends AbstractRepository |
6 | 6 | { |
7 | - /** |
|
8 | - * Return the model full namespace. |
|
9 | - * |
|
10 | - * @return string |
|
11 | - */ |
|
12 | - protected function getModel() |
|
13 | - { |
|
14 | - return 'App\Modules\V1\Acl\AclUser'; |
|
15 | - } |
|
16 | - |
|
17 | - /** |
|
18 | - * Check if the logged in user or the given user |
|
19 | - * has the given permissions on the given model. |
|
20 | - * |
|
21 | - * @param string $nameOfPermission |
|
22 | - * @param string $model |
|
23 | - * @param boolean $user |
|
24 | - * @return boolean |
|
25 | - */ |
|
26 | - public function can($nameOfPermission, $model, $user = false ) |
|
27 | - { |
|
28 | - $user = $user ?: \JWTAuth::parseToken()->authenticate(); |
|
29 | - $permissions = []; |
|
30 | - \Core::users()->find($user->id, ['groups.permissions'])->groups->lists('permissions')->each(function ($permission) use (&$permissions, $model){ |
|
31 | - $permissions = array_merge($permissions, $permission->where('model', $model)->lists('name')->toArray()); |
|
32 | - }); |
|
7 | + /** |
|
8 | + * Return the model full namespace. |
|
9 | + * |
|
10 | + * @return string |
|
11 | + */ |
|
12 | + protected function getModel() |
|
13 | + { |
|
14 | + return 'App\Modules\V1\Acl\AclUser'; |
|
15 | + } |
|
16 | + |
|
17 | + /** |
|
18 | + * Check if the logged in user or the given user |
|
19 | + * has the given permissions on the given model. |
|
20 | + * |
|
21 | + * @param string $nameOfPermission |
|
22 | + * @param string $model |
|
23 | + * @param boolean $user |
|
24 | + * @return boolean |
|
25 | + */ |
|
26 | + public function can($nameOfPermission, $model, $user = false ) |
|
27 | + { |
|
28 | + $user = $user ?: \JWTAuth::parseToken()->authenticate(); |
|
29 | + $permissions = []; |
|
30 | + \Core::users()->find($user->id, ['groups.permissions'])->groups->lists('permissions')->each(function ($permission) use (&$permissions, $model){ |
|
31 | + $permissions = array_merge($permissions, $permission->where('model', $model)->lists('name')->toArray()); |
|
32 | + }); |
|
33 | 33 | |
34 | - return in_array($nameOfPermission, $permissions); |
|
35 | - } |
|
36 | - |
|
37 | - /** |
|
38 | - * Check if the logged in user has the given group. |
|
39 | - * |
|
40 | - * @param string $groupName |
|
41 | - * @return boolean |
|
42 | - */ |
|
43 | - public function hasGroup($groupName) |
|
44 | - { |
|
45 | - $groups = \Core::users()->find(\JWTAuth::parseToken()->authenticate()->id)->groups; |
|
46 | - return $groups->lists('name')->search($groupName, true) === false ? false : true; |
|
47 | - } |
|
48 | - |
|
49 | - /** |
|
50 | - * Assign the given group ids to the given user. |
|
51 | - * |
|
52 | - * @param integer $user_id |
|
53 | - * @param array $group_ids |
|
54 | - * @return object |
|
55 | - */ |
|
56 | - public function assignGroups($user_id, $group_ids) |
|
57 | - { |
|
58 | - \DB::transaction(function () use ($user_id, $group_ids) { |
|
59 | - $user = \Core::users()->find($user_id); |
|
60 | - $user->groups()->detach(); |
|
61 | - $user->groups()->attach($group_ids); |
|
62 | - }); |
|
63 | - |
|
64 | - return \Core::users()->find($user_id); |
|
65 | - } |
|
66 | - |
|
67 | - /** |
|
68 | - * Handle a login request to the application. |
|
69 | - * |
|
70 | - * @param array $credentials |
|
71 | - * @return string |
|
72 | - */ |
|
73 | - public function login($credentials) |
|
74 | - { |
|
75 | - if ($this->isBlocked($credentials['email'])) |
|
76 | - { |
|
77 | - \ErrorHandler::userIsBlocked(); |
|
78 | - } |
|
79 | - else if ($token = \JWTAuth::attempt($credentials)) |
|
80 | - { |
|
81 | - return $token; |
|
82 | - } |
|
83 | - else |
|
84 | - { |
|
85 | - \ErrorHandler::loginFailed(); |
|
86 | - } |
|
87 | - } |
|
88 | - |
|
89 | - /** |
|
90 | - * Handle a registration request. |
|
91 | - * |
|
92 | - * @param array $credentials |
|
93 | - * @return string |
|
94 | - */ |
|
95 | - public function register($credentials) |
|
96 | - { |
|
97 | - return \JWTAuth::fromUser(\Core::users()->model->create($credentials)); |
|
98 | - } |
|
99 | - |
|
100 | - /** |
|
101 | - * Logout the user. |
|
102 | - * |
|
103 | - * @return boolean |
|
104 | - */ |
|
105 | - public function logout() |
|
106 | - { |
|
107 | - return \JWTAuth::invalidate(\JWTAuth::getToken()); |
|
108 | - } |
|
109 | - |
|
110 | - /** |
|
111 | - * Block the user. |
|
112 | - * |
|
113 | - * @param integer $user_id |
|
114 | - * @return object |
|
115 | - */ |
|
116 | - public function block($user_id) |
|
117 | - { |
|
118 | - if ( ! $this->hasGroup('Admin')) |
|
119 | - { |
|
120 | - \ErrorHandler::noPermissions(); |
|
121 | - } |
|
122 | - |
|
123 | - $user = \Core::users()->find($user_id); |
|
124 | - $user->blocked = 1; |
|
125 | - $user->save(); |
|
34 | + return in_array($nameOfPermission, $permissions); |
|
35 | + } |
|
36 | + |
|
37 | + /** |
|
38 | + * Check if the logged in user has the given group. |
|
39 | + * |
|
40 | + * @param string $groupName |
|
41 | + * @return boolean |
|
42 | + */ |
|
43 | + public function hasGroup($groupName) |
|
44 | + { |
|
45 | + $groups = \Core::users()->find(\JWTAuth::parseToken()->authenticate()->id)->groups; |
|
46 | + return $groups->lists('name')->search($groupName, true) === false ? false : true; |
|
47 | + } |
|
48 | + |
|
49 | + /** |
|
50 | + * Assign the given group ids to the given user. |
|
51 | + * |
|
52 | + * @param integer $user_id |
|
53 | + * @param array $group_ids |
|
54 | + * @return object |
|
55 | + */ |
|
56 | + public function assignGroups($user_id, $group_ids) |
|
57 | + { |
|
58 | + \DB::transaction(function () use ($user_id, $group_ids) { |
|
59 | + $user = \Core::users()->find($user_id); |
|
60 | + $user->groups()->detach(); |
|
61 | + $user->groups()->attach($group_ids); |
|
62 | + }); |
|
63 | + |
|
64 | + return \Core::users()->find($user_id); |
|
65 | + } |
|
66 | + |
|
67 | + /** |
|
68 | + * Handle a login request to the application. |
|
69 | + * |
|
70 | + * @param array $credentials |
|
71 | + * @return string |
|
72 | + */ |
|
73 | + public function login($credentials) |
|
74 | + { |
|
75 | + if ($this->isBlocked($credentials['email'])) |
|
76 | + { |
|
77 | + \ErrorHandler::userIsBlocked(); |
|
78 | + } |
|
79 | + else if ($token = \JWTAuth::attempt($credentials)) |
|
80 | + { |
|
81 | + return $token; |
|
82 | + } |
|
83 | + else |
|
84 | + { |
|
85 | + \ErrorHandler::loginFailed(); |
|
86 | + } |
|
87 | + } |
|
88 | + |
|
89 | + /** |
|
90 | + * Handle a registration request. |
|
91 | + * |
|
92 | + * @param array $credentials |
|
93 | + * @return string |
|
94 | + */ |
|
95 | + public function register($credentials) |
|
96 | + { |
|
97 | + return \JWTAuth::fromUser(\Core::users()->model->create($credentials)); |
|
98 | + } |
|
99 | + |
|
100 | + /** |
|
101 | + * Logout the user. |
|
102 | + * |
|
103 | + * @return boolean |
|
104 | + */ |
|
105 | + public function logout() |
|
106 | + { |
|
107 | + return \JWTAuth::invalidate(\JWTAuth::getToken()); |
|
108 | + } |
|
109 | + |
|
110 | + /** |
|
111 | + * Block the user. |
|
112 | + * |
|
113 | + * @param integer $user_id |
|
114 | + * @return object |
|
115 | + */ |
|
116 | + public function block($user_id) |
|
117 | + { |
|
118 | + if ( ! $this->hasGroup('Admin')) |
|
119 | + { |
|
120 | + \ErrorHandler::noPermissions(); |
|
121 | + } |
|
122 | + |
|
123 | + $user = \Core::users()->find($user_id); |
|
124 | + $user->blocked = 1; |
|
125 | + $user->save(); |
|
126 | 126 | |
127 | - return $user; |
|
128 | - } |
|
129 | - |
|
130 | - /** |
|
131 | - * Unblock the user. |
|
132 | - * |
|
133 | - * @param integer $user_id |
|
134 | - * @return object |
|
135 | - */ |
|
136 | - public function unblock($user_id) |
|
137 | - { |
|
138 | - if ( ! $this->hasGroup('Admin')) |
|
139 | - { |
|
140 | - \ErrorHandler::noPermissions(); |
|
141 | - } |
|
142 | - |
|
143 | - $user = \Core::users()->find($user_id); |
|
144 | - $user->blocked = 0; |
|
145 | - $user->save(); |
|
146 | - |
|
147 | - return $user; |
|
148 | - } |
|
149 | - |
|
150 | - /** |
|
151 | - * Check if the user blocked or not. |
|
152 | - * |
|
153 | - * @param string $email |
|
154 | - * @return boolean |
|
155 | - */ |
|
156 | - public function isBlocked($email) |
|
157 | - { |
|
158 | - $user = \Core::users()->first(['email' => $email]); |
|
159 | - if ( ! $user) |
|
160 | - { |
|
161 | - \ErrorHandler::notFound('email or password'); |
|
162 | - } |
|
163 | - |
|
164 | - return $user->blocked; |
|
165 | - } |
|
166 | - |
|
167 | - /** |
|
168 | - * Handle the editing of the user profile. |
|
169 | - * |
|
170 | - * @param array $profile |
|
171 | - * @return object |
|
172 | - */ |
|
173 | - public function editProfile($profile) |
|
174 | - { |
|
175 | - unset($profile['email']); |
|
176 | - unset($profile['password']); |
|
177 | - $profile['id'] = \JWTAuth::parseToken()->authenticate()->id; |
|
127 | + return $user; |
|
128 | + } |
|
129 | + |
|
130 | + /** |
|
131 | + * Unblock the user. |
|
132 | + * |
|
133 | + * @param integer $user_id |
|
134 | + * @return object |
|
135 | + */ |
|
136 | + public function unblock($user_id) |
|
137 | + { |
|
138 | + if ( ! $this->hasGroup('Admin')) |
|
139 | + { |
|
140 | + \ErrorHandler::noPermissions(); |
|
141 | + } |
|
142 | + |
|
143 | + $user = \Core::users()->find($user_id); |
|
144 | + $user->blocked = 0; |
|
145 | + $user->save(); |
|
146 | + |
|
147 | + return $user; |
|
148 | + } |
|
149 | + |
|
150 | + /** |
|
151 | + * Check if the user blocked or not. |
|
152 | + * |
|
153 | + * @param string $email |
|
154 | + * @return boolean |
|
155 | + */ |
|
156 | + public function isBlocked($email) |
|
157 | + { |
|
158 | + $user = \Core::users()->first(['email' => $email]); |
|
159 | + if ( ! $user) |
|
160 | + { |
|
161 | + \ErrorHandler::notFound('email or password'); |
|
162 | + } |
|
163 | + |
|
164 | + return $user->blocked; |
|
165 | + } |
|
166 | + |
|
167 | + /** |
|
168 | + * Handle the editing of the user profile. |
|
169 | + * |
|
170 | + * @param array $profile |
|
171 | + * @return object |
|
172 | + */ |
|
173 | + public function editProfile($profile) |
|
174 | + { |
|
175 | + unset($profile['email']); |
|
176 | + unset($profile['password']); |
|
177 | + $profile['id'] = \JWTAuth::parseToken()->authenticate()->id; |
|
178 | 178 | |
179 | - return $this->save($profile); |
|
180 | - } |
|
179 | + return $this->save($profile); |
|
180 | + } |
|
181 | 181 | } |
@@ -23,11 +23,11 @@ discard block |
||
23 | 23 | * @param boolean $user |
24 | 24 | * @return boolean |
25 | 25 | */ |
26 | - public function can($nameOfPermission, $model, $user = false ) |
|
26 | + public function can($nameOfPermission, $model, $user = false) |
|
27 | 27 | { |
28 | 28 | $user = $user ?: \JWTAuth::parseToken()->authenticate(); |
29 | 29 | $permissions = []; |
30 | - \Core::users()->find($user->id, ['groups.permissions'])->groups->lists('permissions')->each(function ($permission) use (&$permissions, $model){ |
|
30 | + \Core::users()->find($user->id, ['groups.permissions'])->groups->lists('permissions')->each(function($permission) use (&$permissions, $model){ |
|
31 | 31 | $permissions = array_merge($permissions, $permission->where('model', $model)->lists('name')->toArray()); |
32 | 32 | }); |
33 | 33 | |
@@ -55,7 +55,7 @@ discard block |
||
55 | 55 | */ |
56 | 56 | public function assignGroups($user_id, $group_ids) |
57 | 57 | { |
58 | - \DB::transaction(function () use ($user_id, $group_ids) { |
|
58 | + \DB::transaction(function() use ($user_id, $group_ids) { |
|
59 | 59 | $user = \Core::users()->find($user_id); |
60 | 60 | $user->groups()->detach(); |
61 | 61 | $user->groups()->attach($group_ids); |
@@ -75,12 +75,10 @@ |
||
75 | 75 | if ($this->isBlocked($credentials['email'])) |
76 | 76 | { |
77 | 77 | \ErrorHandler::userIsBlocked(); |
78 | - } |
|
79 | - else if ($token = \JWTAuth::attempt($credentials)) |
|
78 | + } else if ($token = \JWTAuth::attempt($credentials)) |
|
80 | 79 | { |
81 | 80 | return $token; |
82 | - } |
|
83 | - else |
|
81 | + } else |
|
84 | 82 | { |
85 | 83 | \ErrorHandler::loginFailed(); |
86 | 84 | } |
@@ -5,36 +5,36 @@ |
||
5 | 5 | |
6 | 6 | class AclPermission extends Model { |
7 | 7 | |
8 | - use SoftDeletes; |
|
9 | - protected $table = 'permissions'; |
|
10 | - protected $dates = ['created_at', 'updated_at', 'deleted_at']; |
|
11 | - protected $hidden = ['deleted_at']; |
|
12 | - protected $guarded = ['id']; |
|
13 | - protected $fillable = ['name', 'model']; |
|
8 | + use SoftDeletes; |
|
9 | + protected $table = 'permissions'; |
|
10 | + protected $dates = ['created_at', 'updated_at', 'deleted_at']; |
|
11 | + protected $hidden = ['deleted_at']; |
|
12 | + protected $guarded = ['id']; |
|
13 | + protected $fillable = ['name', 'model']; |
|
14 | 14 | |
15 | - public function getCreatedAtAttribute($value) |
|
16 | - { |
|
17 | - return \Carbon\Carbon::parse($value)->addHours(\Session::get('timeZoneDiff'))->toDateTimeString(); |
|
18 | - } |
|
15 | + public function getCreatedAtAttribute($value) |
|
16 | + { |
|
17 | + return \Carbon\Carbon::parse($value)->addHours(\Session::get('timeZoneDiff'))->toDateTimeString(); |
|
18 | + } |
|
19 | 19 | |
20 | - public function getUpdatedAtAttribute($value) |
|
21 | - { |
|
22 | - return \Carbon\Carbon::parse($value)->addHours(\Session::get('timeZoneDiff'))->toDateTimeString(); |
|
23 | - } |
|
20 | + public function getUpdatedAtAttribute($value) |
|
21 | + { |
|
22 | + return \Carbon\Carbon::parse($value)->addHours(\Session::get('timeZoneDiff'))->toDateTimeString(); |
|
23 | + } |
|
24 | 24 | |
25 | - public function getDeletedAtAttribute($value) |
|
26 | - { |
|
27 | - return \Carbon\Carbon::parse($value)->addHours(\Session::get('timeZoneDiff'))->toDateTimeString(); |
|
28 | - } |
|
25 | + public function getDeletedAtAttribute($value) |
|
26 | + { |
|
27 | + return \Carbon\Carbon::parse($value)->addHours(\Session::get('timeZoneDiff'))->toDateTimeString(); |
|
28 | + } |
|
29 | 29 | |
30 | - public function groups() |
|
31 | - { |
|
32 | - return $this->belongsToMany('\App\Modules\V1\Acl\AclGroup','groups_permissions','permission_id','group_id')->whereNull('groups_permissions.deleted_at')->withTimestamps(); |
|
33 | - } |
|
30 | + public function groups() |
|
31 | + { |
|
32 | + return $this->belongsToMany('\App\Modules\V1\Acl\AclGroup','groups_permissions','permission_id','group_id')->whereNull('groups_permissions.deleted_at')->withTimestamps(); |
|
33 | + } |
|
34 | 34 | |
35 | - public static function boot() |
|
36 | - { |
|
37 | - parent::boot(); |
|
38 | - parent::observe(\App::make('App\Modules\V1\Acl\ModelObservers\AclPermissionObserver')); |
|
39 | - } |
|
35 | + public static function boot() |
|
36 | + { |
|
37 | + parent::boot(); |
|
38 | + parent::observe(\App::make('App\Modules\V1\Acl\ModelObservers\AclPermissionObserver')); |
|
39 | + } |
|
40 | 40 | } |
@@ -29,7 +29,7 @@ |
||
29 | 29 | |
30 | 30 | public function groups() |
31 | 31 | { |
32 | - return $this->belongsToMany('\App\Modules\V1\Acl\AclGroup','groups_permissions','permission_id','group_id')->whereNull('groups_permissions.deleted_at')->withTimestamps(); |
|
32 | + return $this->belongsToMany('\App\Modules\V1\Acl\AclGroup', 'groups_permissions', 'permission_id', 'group_id')->whereNull('groups_permissions.deleted_at')->withTimestamps(); |
|
33 | 33 | } |
34 | 34 | |
35 | 35 | public static function boot() |
@@ -7,10 +7,10 @@ |
||
7 | 7 | |
8 | 8 | class PermissionsController extends BaseApiController |
9 | 9 | { |
10 | - /** |
|
11 | - * The name of the model that is used by the base api controller |
|
12 | - * to preform actions like (add, edit ... etc). |
|
13 | - * @var string |
|
14 | - */ |
|
15 | - protected $model = 'permissions'; |
|
10 | + /** |
|
11 | + * The name of the model that is used by the base api controller |
|
12 | + * to preform actions like (add, edit ... etc). |
|
13 | + * @var string |
|
14 | + */ |
|
15 | + protected $model = 'permissions'; |
|
16 | 16 | } |
@@ -8,35 +8,35 @@ |
||
8 | 8 | |
9 | 9 | class GroupsController extends BaseApiController |
10 | 10 | { |
11 | - /** |
|
12 | - * The name of the model that is used by the base api controller |
|
13 | - * to preform actions like (add, edit ... etc). |
|
14 | - * @var string |
|
15 | - */ |
|
16 | - protected $model = 'groups'; |
|
11 | + /** |
|
12 | + * The name of the model that is used by the base api controller |
|
13 | + * to preform actions like (add, edit ... etc). |
|
14 | + * @var string |
|
15 | + */ |
|
16 | + protected $model = 'groups'; |
|
17 | 17 | |
18 | - /** |
|
19 | - * The validations rules used by the base api controller |
|
20 | - * to check before add. |
|
21 | - * @var array |
|
22 | - */ |
|
23 | - protected $validationRules = [ |
|
24 | - 'name' => 'required|string|max:100|unique:groups,name,{id}' |
|
25 | - ]; |
|
18 | + /** |
|
19 | + * The validations rules used by the base api controller |
|
20 | + * to check before add. |
|
21 | + * @var array |
|
22 | + */ |
|
23 | + protected $validationRules = [ |
|
24 | + 'name' => 'required|string|max:100|unique:groups,name,{id}' |
|
25 | + ]; |
|
26 | 26 | |
27 | - /** |
|
28 | - * Handle an assign permissions to group request. |
|
29 | - * |
|
30 | - * @param \Illuminate\Http\Request $request |
|
31 | - * @return \Illuminate\Http\Response |
|
32 | - */ |
|
33 | - public function postAssignpermissions(Request $request) |
|
34 | - { |
|
35 | - $this->validate($request, [ |
|
36 | - 'permission_ids' => 'required|exists:permissions,id', |
|
37 | - 'group_id' => 'required|exists:groups,id' |
|
38 | - ]); |
|
27 | + /** |
|
28 | + * Handle an assign permissions to group request. |
|
29 | + * |
|
30 | + * @param \Illuminate\Http\Request $request |
|
31 | + * @return \Illuminate\Http\Response |
|
32 | + */ |
|
33 | + public function postAssignpermissions(Request $request) |
|
34 | + { |
|
35 | + $this->validate($request, [ |
|
36 | + 'permission_ids' => 'required|exists:permissions,id', |
|
37 | + 'group_id' => 'required|exists:groups,id' |
|
38 | + ]); |
|
39 | 39 | |
40 | - return \Response::json(\Core::groups()->assignPermissions($request->get('group_id'), $request->get('permission_ids')), 200); |
|
41 | - } |
|
40 | + return \Response::json(\Core::groups()->assignPermissions($request->get('group_id'), $request->get('permission_ids')), 200); |
|
41 | + } |
|
42 | 42 | } |
@@ -13,14 +13,14 @@ |
||
13 | 13 | * to preform actions like (add, edit ... etc). |
14 | 14 | * @var string |
15 | 15 | */ |
16 | - protected $model = 'groups'; |
|
16 | + protected $model = 'groups'; |
|
17 | 17 | |
18 | 18 | /** |
19 | 19 | * The validations rules used by the base api controller |
20 | 20 | * to check before add. |
21 | 21 | * @var array |
22 | 22 | */ |
23 | - protected $validationRules = [ |
|
23 | + protected $validationRules = [ |
|
24 | 24 | 'name' => 'required|string|max:100|unique:groups,name,{id}' |
25 | 25 | ]; |
26 | 26 |
@@ -7,136 +7,136 @@ |
||
7 | 7 | |
8 | 8 | class UsersController extends BaseApiController |
9 | 9 | { |
10 | - /** |
|
11 | - * The name of the model that is used by the base api controller |
|
12 | - * to preform actions like (add, edit ... etc). |
|
13 | - * @var string |
|
14 | - */ |
|
15 | - protected $model = 'users'; |
|
16 | - |
|
17 | - /** |
|
18 | - * List of all route actions that the base api controller |
|
19 | - * will skip permissions check for them. |
|
20 | - * @var array |
|
21 | - */ |
|
22 | - protected $skipPermissionCheck = ['account', 'logout', 'block', 'unblock', 'editprofile']; |
|
23 | - |
|
24 | - /** |
|
25 | - * List of all route actions that the base api controller |
|
26 | - * will skip login check for them. |
|
27 | - * @var array |
|
28 | - */ |
|
29 | - protected $skipLoginCheck = ['login', 'register']; |
|
30 | - |
|
31 | - /** |
|
32 | - * The validations rules used by the base api controller |
|
33 | - * to check before add. |
|
34 | - * @var array |
|
35 | - */ |
|
36 | - protected $validationRules = [ |
|
37 | - 'email' => 'required|email|unique:users,email,{id}', |
|
38 | - 'password' => 'min:6' |
|
39 | - ]; |
|
40 | - |
|
41 | - /** |
|
42 | - * Return the logged in user account. |
|
43 | - * |
|
44 | - * @return object |
|
45 | - */ |
|
46 | - public function getAccount() |
|
47 | - { |
|
48 | - $relations = $this->relations && $this->relations['find'] ? $this->relations['find'] : []; |
|
49 | - return \Response::json(call_user_func_array("\Core::{$this->model}", [])->find(\JWTAuth::parseToken()->authenticate()->id, $relations), 200); |
|
50 | - } |
|
51 | - |
|
52 | - /** |
|
53 | - * Block the user. |
|
54 | - * |
|
55 | - * @param integer $user_id |
|
56 | - * @return void |
|
57 | - */ |
|
58 | - public function getBlock($user_id) |
|
59 | - { |
|
60 | - return \Response::json(\Core::users()->block($user_id), 200); |
|
61 | - } |
|
62 | - |
|
63 | - /** |
|
64 | - * Unblock the user. |
|
65 | - * |
|
66 | - * @param integer $user_id |
|
67 | - * @return void |
|
68 | - */ |
|
69 | - public function getUnblock($user_id) |
|
70 | - { |
|
71 | - return \Response::json(\Core::users()->unblock($user_id), 200); |
|
72 | - } |
|
73 | - |
|
74 | - /** |
|
75 | - * Logout the user. |
|
76 | - * |
|
77 | - * @return void |
|
78 | - */ |
|
79 | - public function getLogout() |
|
80 | - { |
|
81 | - return \Response::json(\Core::users()->logout(), 200); |
|
82 | - } |
|
83 | - |
|
84 | - /** |
|
85 | - * Handle a registration request. |
|
86 | - * |
|
87 | - * @param \Illuminate\Http\Request $request |
|
88 | - * @return \Illuminate\Http\Response |
|
89 | - */ |
|
90 | - public function postRegister(Request $request) |
|
91 | - { |
|
92 | - $this->validate($request, [ |
|
93 | - 'email' => 'required|email|unique:users,email,{id}', |
|
94 | - 'password' => 'required|min:6' |
|
95 | - ]); |
|
96 | - |
|
97 | - return \Response::json(\Core::users()->login($request->only('email', 'password')), 200); |
|
98 | - } |
|
99 | - |
|
100 | - /** |
|
101 | - * Handle a login request to the application. |
|
102 | - * |
|
103 | - * @param \Illuminate\Http\Request $request |
|
104 | - * @return \Illuminate\Http\Response |
|
105 | - */ |
|
106 | - public function postLogin(Request $request) |
|
107 | - { |
|
108 | - $this->validate($request, [ |
|
109 | - 'email' => 'required|email', |
|
110 | - 'password' => 'required|min:6' |
|
111 | - ]); |
|
112 | - |
|
113 | - return \Response::json(\Core::users()->login($request->only('email', 'password')), 200); |
|
114 | - } |
|
115 | - |
|
116 | - /** |
|
117 | - * Handle an assign groups to user request. |
|
118 | - * |
|
119 | - * @param \Illuminate\Http\Request $request |
|
120 | - * @return \Illuminate\Http\Response |
|
121 | - */ |
|
122 | - public function postAssigngroups(Request $request) |
|
123 | - { |
|
124 | - $this->validate($request, [ |
|
125 | - 'group_ids' => 'required|exists:groups,id', |
|
126 | - 'user_id' => 'required|exists:users,id' |
|
127 | - ]); |
|
128 | - |
|
129 | - return \Response::json(\Core::users()->assignGroups($request->get('user_id'), $request->get('group_ids')), 200); |
|
130 | - } |
|
131 | - |
|
132 | - /** |
|
133 | - * Handle the editing of the user profile. |
|
134 | - * |
|
135 | - * @param \Illuminate\Http\Request $request |
|
136 | - * @return \Illuminate\Http\Response |
|
137 | - */ |
|
138 | - public function postEditprofile(Request $request) |
|
139 | - { |
|
140 | - return \Response::json(\Core::users()->editProfile($request->all()), 200); |
|
141 | - } |
|
10 | + /** |
|
11 | + * The name of the model that is used by the base api controller |
|
12 | + * to preform actions like (add, edit ... etc). |
|
13 | + * @var string |
|
14 | + */ |
|
15 | + protected $model = 'users'; |
|
16 | + |
|
17 | + /** |
|
18 | + * List of all route actions that the base api controller |
|
19 | + * will skip permissions check for them. |
|
20 | + * @var array |
|
21 | + */ |
|
22 | + protected $skipPermissionCheck = ['account', 'logout', 'block', 'unblock', 'editprofile']; |
|
23 | + |
|
24 | + /** |
|
25 | + * List of all route actions that the base api controller |
|
26 | + * will skip login check for them. |
|
27 | + * @var array |
|
28 | + */ |
|
29 | + protected $skipLoginCheck = ['login', 'register']; |
|
30 | + |
|
31 | + /** |
|
32 | + * The validations rules used by the base api controller |
|
33 | + * to check before add. |
|
34 | + * @var array |
|
35 | + */ |
|
36 | + protected $validationRules = [ |
|
37 | + 'email' => 'required|email|unique:users,email,{id}', |
|
38 | + 'password' => 'min:6' |
|
39 | + ]; |
|
40 | + |
|
41 | + /** |
|
42 | + * Return the logged in user account. |
|
43 | + * |
|
44 | + * @return object |
|
45 | + */ |
|
46 | + public function getAccount() |
|
47 | + { |
|
48 | + $relations = $this->relations && $this->relations['find'] ? $this->relations['find'] : []; |
|
49 | + return \Response::json(call_user_func_array("\Core::{$this->model}", [])->find(\JWTAuth::parseToken()->authenticate()->id, $relations), 200); |
|
50 | + } |
|
51 | + |
|
52 | + /** |
|
53 | + * Block the user. |
|
54 | + * |
|
55 | + * @param integer $user_id |
|
56 | + * @return void |
|
57 | + */ |
|
58 | + public function getBlock($user_id) |
|
59 | + { |
|
60 | + return \Response::json(\Core::users()->block($user_id), 200); |
|
61 | + } |
|
62 | + |
|
63 | + /** |
|
64 | + * Unblock the user. |
|
65 | + * |
|
66 | + * @param integer $user_id |
|
67 | + * @return void |
|
68 | + */ |
|
69 | + public function getUnblock($user_id) |
|
70 | + { |
|
71 | + return \Response::json(\Core::users()->unblock($user_id), 200); |
|
72 | + } |
|
73 | + |
|
74 | + /** |
|
75 | + * Logout the user. |
|
76 | + * |
|
77 | + * @return void |
|
78 | + */ |
|
79 | + public function getLogout() |
|
80 | + { |
|
81 | + return \Response::json(\Core::users()->logout(), 200); |
|
82 | + } |
|
83 | + |
|
84 | + /** |
|
85 | + * Handle a registration request. |
|
86 | + * |
|
87 | + * @param \Illuminate\Http\Request $request |
|
88 | + * @return \Illuminate\Http\Response |
|
89 | + */ |
|
90 | + public function postRegister(Request $request) |
|
91 | + { |
|
92 | + $this->validate($request, [ |
|
93 | + 'email' => 'required|email|unique:users,email,{id}', |
|
94 | + 'password' => 'required|min:6' |
|
95 | + ]); |
|
96 | + |
|
97 | + return \Response::json(\Core::users()->login($request->only('email', 'password')), 200); |
|
98 | + } |
|
99 | + |
|
100 | + /** |
|
101 | + * Handle a login request to the application. |
|
102 | + * |
|
103 | + * @param \Illuminate\Http\Request $request |
|
104 | + * @return \Illuminate\Http\Response |
|
105 | + */ |
|
106 | + public function postLogin(Request $request) |
|
107 | + { |
|
108 | + $this->validate($request, [ |
|
109 | + 'email' => 'required|email', |
|
110 | + 'password' => 'required|min:6' |
|
111 | + ]); |
|
112 | + |
|
113 | + return \Response::json(\Core::users()->login($request->only('email', 'password')), 200); |
|
114 | + } |
|
115 | + |
|
116 | + /** |
|
117 | + * Handle an assign groups to user request. |
|
118 | + * |
|
119 | + * @param \Illuminate\Http\Request $request |
|
120 | + * @return \Illuminate\Http\Response |
|
121 | + */ |
|
122 | + public function postAssigngroups(Request $request) |
|
123 | + { |
|
124 | + $this->validate($request, [ |
|
125 | + 'group_ids' => 'required|exists:groups,id', |
|
126 | + 'user_id' => 'required|exists:users,id' |
|
127 | + ]); |
|
128 | + |
|
129 | + return \Response::json(\Core::users()->assignGroups($request->get('user_id'), $request->get('group_ids')), 200); |
|
130 | + } |
|
131 | + |
|
132 | + /** |
|
133 | + * Handle the editing of the user profile. |
|
134 | + * |
|
135 | + * @param \Illuminate\Http\Request $request |
|
136 | + * @return \Illuminate\Http\Response |
|
137 | + */ |
|
138 | + public function postEditprofile(Request $request) |
|
139 | + { |
|
140 | + return \Response::json(\Core::users()->editProfile($request->all()), 200); |
|
141 | + } |
|
142 | 142 | } |
@@ -12,7 +12,7 @@ discard block |
||
12 | 12 | * to preform actions like (add, edit ... etc). |
13 | 13 | * @var string |
14 | 14 | */ |
15 | - protected $model = 'users'; |
|
15 | + protected $model = 'users'; |
|
16 | 16 | |
17 | 17 | /** |
18 | 18 | * List of all route actions that the base api controller |
@@ -26,14 +26,14 @@ discard block |
||
26 | 26 | * will skip login check for them. |
27 | 27 | * @var array |
28 | 28 | */ |
29 | - protected $skipLoginCheck = ['login', 'register']; |
|
29 | + protected $skipLoginCheck = ['login', 'register']; |
|
30 | 30 | |
31 | 31 | /** |
32 | 32 | * The validations rules used by the base api controller |
33 | 33 | * to check before add. |
34 | 34 | * @var array |
35 | 35 | */ |
36 | - protected $validationRules = [ |
|
36 | + protected $validationRules = [ |
|
37 | 37 | 'email' => 'required|email|unique:users,email,{id}', |
38 | 38 | 'password' => 'min:6' |
39 | 39 | ]; |