invoiceninja/app/Http/Controllers/AccountApiController.php

212 lines
6.5 KiB
PHP
Raw Normal View History

2017-01-30 21:40:43 +02:00
<?php
2015-11-02 00:10:20 +02:00
2017-01-30 21:40:43 +02:00
namespace App\Http\Controllers;
use App\Events\UserSignedUp;
use App\Http\Requests\RegisterRequest;
use App\Http\Requests\UpdateAccountRequest;
2015-11-02 00:10:20 +02:00
use App\Models\Account;
use App\Ninja\Repositories\AccountRepository;
use App\Ninja\Transformers\AccountTransformer;
2015-11-03 21:03:24 +02:00
use App\Ninja\Transformers\UserAccountTransformer;
2017-01-30 21:40:43 +02:00
use App\Services\AuthService;
use Auth;
use Cache;
use Exception;
use Illuminate\Http\Request;
use Response;
use Socialite;
use Utils;
2016-02-03 14:41:40 +02:00
2015-11-03 21:03:24 +02:00
class AccountApiController extends BaseAPIController
2015-11-02 00:10:20 +02:00
{
protected $accountRepo;
public function __construct(AccountRepository $accountRepo)
{
2016-03-02 16:36:46 +02:00
parent::__construct();
2015-11-03 21:03:24 +02:00
2015-11-02 00:10:20 +02:00
$this->accountRepo = $accountRepo;
}
public function ping(Request $request)
2016-05-02 11:38:01 +03:00
{
$headers = Utils::getApiHeaders();
2017-02-15 22:09:46 +02:00
return Response::make(RESULT_SUCCESS, 200, $headers);
2016-05-02 11:38:01 +03:00
}
2016-03-13 21:54:31 +11:00
public function register(RegisterRequest $request)
2015-11-02 20:43:22 +02:00
{
2016-07-15 16:47:18 +03:00
$account = $this->accountRepo->create($request->first_name, $request->last_name, $request->email, $request->password);
2016-03-08 23:22:59 +02:00
$user = $account->users()->first();
2016-07-15 16:47:18 +03:00
2016-03-08 23:22:59 +02:00
Auth::login($user, true);
event(new UserSignedUp());
2016-07-15 16:47:18 +03:00
2016-03-08 23:22:59 +02:00
return $this->processLogin($request);
}
2015-11-02 20:43:22 +02:00
2016-03-08 23:22:59 +02:00
public function login(Request $request)
{
2015-11-02 20:43:22 +02:00
if (Auth::attempt(['email' => $request->email, 'password' => $request->password])) {
2015-11-03 10:55:31 +11:00
return $this->processLogin($request);
2015-11-02 20:43:22 +02:00
} else {
2015-11-03 21:03:24 +02:00
sleep(ERROR_DELAY);
2017-01-30 21:40:43 +02:00
return $this->errorResponse(['message' => 'Invalid credentials'], 401);
2015-11-02 20:43:22 +02:00
}
}
2015-11-03 21:03:24 +02:00
private function processLogin(Request $request)
2015-11-02 00:10:20 +02:00
{
2015-11-03 21:03:24 +02:00
// Create a new token only if one does not already exist
2015-11-09 04:10:01 +02:00
$user = Auth::user();
$this->accountRepo->createTokens($user, $request->token_name);
2016-03-02 15:36:42 +02:00
2015-11-09 04:10:01 +02:00
$users = $this->accountRepo->findUsers($user, 'account.account_tokens');
2015-11-27 14:55:28 +02:00
$transformer = new UserAccountTransformer($user->account, $request->serializer, $request->token_name);
$data = $this->createCollection($users, $transformer, 'user_account');
2015-11-03 13:02:15 +11:00
2015-11-27 14:55:28 +02:00
return $this->response($data);
2015-11-03 21:03:24 +02:00
}
2015-11-03 13:02:15 +11:00
2015-11-27 14:55:28 +02:00
public function show(Request $request)
2015-11-03 21:03:24 +02:00
{
2015-11-08 11:43:32 +02:00
$account = Auth::user()->account;
2015-12-27 13:08:58 +02:00
$updatedAt = $request->updated_at ? date('Y-m-d H:i:s', $request->updated_at) : false;
2015-11-27 14:55:28 +02:00
$transformer = new AccountTransformer(null, $request->serializer);
2016-11-29 19:47:26 +02:00
$account->load(array_merge($transformer->getDefaultIncludes(), ['projects.client']));
2015-11-27 14:55:28 +02:00
$account = $this->createItem($account, $transformer, 'account');
2015-11-03 13:02:15 +11:00
2015-11-27 14:55:28 +02:00
return $this->response($account);
2015-11-03 10:55:31 +11:00
}
2015-11-19 13:37:30 +02:00
public function getStaticData()
{
$data = [];
$cachedTables = unserialize(CACHED_TABLES);
foreach ($cachedTables as $name => $class) {
$data[$name] = Cache::get($name);
}
return $this->response($data);
}
2015-12-22 22:19:21 +11:00
public function getUserAccounts(Request $request)
{
return $this->processLogin($request);
}
2016-02-01 14:42:05 +11:00
2016-02-03 14:41:40 +02:00
public function update(UpdateAccountRequest $request)
2016-02-01 14:42:05 +11:00
{
2016-02-03 14:41:40 +02:00
$account = Auth::user()->account;
$this->accountRepo->save($request->input(), $account);
2016-02-01 14:42:05 +11:00
2016-02-03 14:41:40 +02:00
$transformer = new AccountTransformer(null, $request->serializer);
$account = $this->createItem($account, $transformer, 'account');
2016-02-01 14:42:05 +11:00
2016-02-03 14:41:40 +02:00
return $this->response($account);
2016-02-01 14:42:05 +11:00
}
2016-03-01 13:57:59 +11:00
public function addDeviceToken(Request $request)
{
$account = Auth::user()->account;
//scan if this user has a token already registered (tokens can change, so we need to use the users email as key)
2017-01-30 18:05:31 +02:00
$devices = json_decode($account->devices, true);
2016-03-01 13:57:59 +11:00
2017-01-30 21:40:43 +02:00
for ($x = 0; $x < count($devices); $x++) {
2017-01-30 18:05:31 +02:00
if ($devices[$x]['email'] == Auth::user()->username) {
$devices[$x]['token'] = $request->token; //update
2016-03-01 15:06:54 +11:00
$account->devices = json_encode($devices);
2017-01-30 18:05:31 +02:00
$account->save();
$devices[$x]['account_key'] = $account->account_key;
2016-03-03 20:52:47 +11:00
2017-01-30 18:05:31 +02:00
return $this->response($devices[$x]);
2016-03-01 13:57:59 +11:00
}
2017-01-30 18:05:31 +02:00
}
2016-03-01 15:06:54 +11:00
2016-03-01 13:57:59 +11:00
//User does not have a device, create new record
$newDevice = [
'token' => $request->token,
'email' => $request->email,
'device' => $request->device,
2016-03-03 19:48:33 +11:00
'account_key' => $account->account_key,
2017-01-30 18:05:31 +02:00
'notify_sent' => true,
'notify_viewed' => true,
'notify_approved' => true,
'notify_paid' => true,
2016-03-01 13:57:59 +11:00
];
$devices[] = $newDevice;
$account->devices = json_encode($devices);
$account->save();
2016-03-01 21:31:23 +11:00
return $this->response($newDevice);
2016-03-01 13:57:59 +11:00
}
2016-03-01 14:44:14 +11:00
public function updatePushNotifications(Request $request)
{
$account = Auth::user()->account;
2017-01-30 18:05:31 +02:00
$devices = json_decode($account->devices, true);
2016-03-01 14:44:14 +11:00
2017-01-30 18:05:31 +02:00
if (count($devices) < 1) {
2017-01-30 21:40:43 +02:00
return $this->errorResponse(['message' => 'No registered devices.'], 400);
2017-01-30 18:05:31 +02:00
}
2016-03-01 14:44:14 +11:00
2017-01-30 21:40:43 +02:00
for ($x = 0; $x < count($devices); $x++) {
2017-01-30 18:05:31 +02:00
if ($devices[$x]['email'] == Auth::user()->username) {
2016-03-01 14:44:14 +11:00
$newDevice = [
2016-03-03 11:24:13 +11:00
'token' => $devices[$x]['token'],
'email' => $devices[$x]['email'],
'device' => $devices[$x]['device'],
2016-03-03 19:48:33 +11:00
'account_key' => $account->account_key,
2016-03-01 14:44:14 +11:00
'notify_sent' => $request->notify_sent,
'notify_viewed' => $request->notify_viewed,
'notify_approved' => $request->notify_approved,
'notify_paid' => $request->notify_paid,
];
2016-03-03 20:52:47 +11:00
$devices[$x] = $newDevice;
2016-03-01 14:44:14 +11:00
$account->devices = json_encode($devices);
$account->save();
2016-03-01 21:31:23 +11:00
return $this->response($newDevice);
2016-03-01 14:44:14 +11:00
}
}
}
2016-10-05 21:51:08 +03:00
2016-10-06 15:46:27 +03:00
public function oauthLogin(Request $request)
2016-10-05 21:51:08 +03:00
{
2016-10-06 15:46:27 +03:00
$user = false;
2016-10-05 21:51:08 +03:00
$token = $request->input('token');
$provider = $request->input('provider');
try {
2016-11-25 20:56:48 +11:00
$user = Socialite::driver($provider)->stateless()->userFromToken($token);
2016-10-05 21:51:08 +03:00
} catch (Exception $exception) {
2016-10-06 15:46:27 +03:00
return $this->errorResponse(['message' => $exception->getMessage()], 401);
2016-10-05 21:51:08 +03:00
}
2016-10-06 15:46:27 +03:00
if ($user) {
$providerId = AuthService::getProviderId($provider);
$user = $this->accountRepo->findUserByOauth($providerId, $user->id);
}
if ($user) {
Auth::login($user);
2017-01-30 21:40:43 +02:00
2016-10-06 15:46:27 +03:00
return $this->processLogin($request);
} else {
sleep(ERROR_DELAY);
2017-01-30 21:40:43 +02:00
2016-10-06 15:46:27 +03:00
return $this->errorResponse(['message' => 'Invalid credentials'], 401);
}
2016-10-05 21:51:08 +03:00
}
2015-11-02 00:10:20 +02:00
}