invoiceninja/app/Http/Controllers/AccountApiController.php

74 lines
2 KiB
PHP
Raw Normal View History

2015-11-02 00:10:20 +02:00
<?php namespace App\Http\Controllers;
use Auth;
use Utils;
use Response;
use Input;
use App\Models\Client;
use App\Models\Account;
2015-11-03 13:02:15 +11:00
use App\Models\AccountToken;
2015-11-02 00:10:20 +02:00
use App\Ninja\Repositories\AccountRepository;
2015-11-02 20:43:22 +02:00
use Illuminate\Http\Request;
2015-11-02 00:10:20 +02:00
use League\Fractal;
use League\Fractal\Manager;
use App\Ninja\Serializers\ArraySerializer;
use App\Ninja\Transformers\AccountTransformer;
2015-11-03 21:03:24 +02:00
use App\Ninja\Transformers\UserAccountTransformer;
use App\Http\Controllers\BaseAPIController;
2015-11-08 22:34:26 +02:00
use Swagger\Annotations as SWG;
2015-11-02 00:10:20 +02:00
2015-11-03 21:03:24 +02:00
class AccountApiController extends BaseAPIController
2015-11-02 00:10:20 +02:00
{
protected $accountRepo;
public function __construct(AccountRepository $accountRepo)
{
2015-11-03 21:03:24 +02:00
parent::__construct();
2015-11-02 00:10:20 +02:00
$this->accountRepo = $accountRepo;
}
2015-11-02 20:43:22 +02:00
public function login(Request $request)
{
if ( ! env(API_SECRET) || $request->api_secret !== env(API_SECRET)) {
2015-11-03 21:03:24 +02:00
sleep(ERROR_DELAY);
2015-11-02 20:43:22 +02:00
return 'Invalid secret';
}
if (Auth::attempt(['email' => $request->email, 'password' => $request->password])) {
2015-11-03 10:55:31 +11:00
return $this->processLogin($request);
2015-11-02 20:43:22 +02:00
} else {
2015-11-03 21:03:24 +02:00
sleep(ERROR_DELAY);
2015-11-02 20:43:22 +02:00
return 'Invalid credentials';
}
}
2015-11-03 21:03:24 +02:00
private function processLogin(Request $request)
2015-11-02 00:10:20 +02:00
{
2015-11-03 21:03:24 +02:00
// Create a new token only if one does not already exist
2015-11-09 04:10:01 +02:00
$user = Auth::user();
$this->accountRepo->createTokens($user, $request->token_name);
2015-11-04 17:23:22 +02:00
2015-11-09 04:10:01 +02:00
$users = $this->accountRepo->findUsers($user, 'account.account_tokens');
$data = $this->createCollection($users, new UserAccountTransformer($user->account, $request->token_name));
2015-11-03 13:02:15 +11:00
2015-11-08 11:43:32 +02:00
$response = [
'user_accounts' => $data,
'default_url' => SITE_URL
];
return $this->response($response);
2015-11-03 21:03:24 +02:00
}
2015-11-03 13:02:15 +11:00
2015-11-08 11:43:32 +02:00
public function show()
2015-11-03 21:03:24 +02:00
{
2015-11-08 11:43:32 +02:00
$account = Auth::user()->account;
2015-11-08 23:12:50 +02:00
$account->load('clients.getInvoices.invoice_items', 'users');
2015-11-08 11:43:32 +02:00
$response = $this->createItem($account, new AccountTransformer);
2015-11-03 13:02:15 +11:00
2015-11-08 11:43:32 +02:00
return $this->response($response);
2015-11-03 10:55:31 +11:00
}
2015-11-02 00:10:20 +02:00
}