invoiceninja/app/Http/Controllers/AccountApiController.php

68 lines
1.9 KiB
PHP
Raw Normal View History

2015-11-02 00:10:20 +02:00
<?php namespace App\Http\Controllers;
use Auth;
use Utils;
use Response;
use Input;
use App\Models\Client;
use App\Models\Account;
2015-11-03 13:02:15 +11:00
use App\Models\AccountToken;
2015-11-02 00:10:20 +02:00
use App\Ninja\Repositories\AccountRepository;
2015-11-02 20:43:22 +02:00
use Illuminate\Http\Request;
2015-11-02 00:10:20 +02:00
use League\Fractal;
use League\Fractal\Resource\Item;
2015-11-03 21:03:24 +02:00
use League\Fractal\Resource\Collection;
2015-11-02 00:10:20 +02:00
use League\Fractal\Manager;
use App\Ninja\Serializers\ArraySerializer;
use App\Ninja\Transformers\AccountTransformer;
2015-11-03 21:03:24 +02:00
use App\Ninja\Transformers\UserAccountTransformer;
use App\Http\Controllers\BaseAPIController;
2015-11-02 00:10:20 +02:00
2015-11-03 21:03:24 +02:00
class AccountApiController extends BaseAPIController
2015-11-02 00:10:20 +02:00
{
protected $accountRepo;
public function __construct(AccountRepository $accountRepo)
{
2015-11-03 21:03:24 +02:00
parent::__construct();
2015-11-02 00:10:20 +02:00
$this->accountRepo = $accountRepo;
}
2015-11-02 20:43:22 +02:00
public function login(Request $request)
{
if ( ! env(API_SECRET) || $request->api_secret !== env(API_SECRET)) {
2015-11-03 21:03:24 +02:00
sleep(ERROR_DELAY);
2015-11-02 20:43:22 +02:00
return 'Invalid secret';
}
if (Auth::attempt(['email' => $request->email, 'password' => $request->password])) {
2015-11-03 10:55:31 +11:00
return $this->processLogin($request);
2015-11-02 20:43:22 +02:00
} else {
2015-11-03 21:03:24 +02:00
sleep(ERROR_DELAY);
2015-11-02 20:43:22 +02:00
return 'Invalid credentials';
}
}
2015-11-03 21:03:24 +02:00
private function processLogin(Request $request)
2015-11-02 00:10:20 +02:00
{
2015-11-03 21:03:24 +02:00
// Create a new token only if one does not already exist
$this->accountRepo->createTokens(Auth::user(), $request->token_name);
2015-11-04 17:23:22 +02:00
2015-11-03 21:03:24 +02:00
$users = $this->accountRepo->findUsers(Auth::user(), 'account.account_tokens');
2015-11-04 17:23:22 +02:00
$resource = new Collection($users, new UserAccountTransformer($request->token_name));
2015-11-03 13:02:15 +11:00
2015-11-05 10:44:48 +02:00
return $this->returnData($resource, 'user_accounts');
2015-11-03 21:03:24 +02:00
}
2015-11-03 13:02:15 +11:00
2015-11-03 21:03:24 +02:00
public function show($accountKey)
{
$account = $this->accountRepo->findByKey($accountKey);
2015-11-03 13:02:15 +11:00
2015-11-03 21:03:24 +02:00
$resource = new Item($account, new AccountTransformer);
2015-11-03 13:02:15 +11:00
2015-11-03 21:03:24 +02:00
return $this->returnData($resource);
2015-11-03 10:55:31 +11:00
}
2015-11-02 00:10:20 +02:00
}