. */ namespace SP\Modules\Web\Controllers; use SP\Core\Acl\Acl; use SP\Core\Acl\ActionsInterface; use SP\Core\Events\Event; use SP\Core\Events\EventMessage; use SP\Core\Exceptions\ValidationException; use SP\DataModel\AuthTokenData; use SP\Forms\AuthTokenForm; use SP\Http\JsonResponse; use SP\Http\Request; use SP\Mgmt\ApiTokens\ApiTokensUtil; use SP\Modules\Web\Controllers\Helpers\ItemsGridHelper; use SP\Modules\Web\Controllers\Traits\ItemTrait; use SP\Modules\Web\Controllers\Traits\JsonTrait; use SP\Mvc\Controller\CrudControllerInterface; use SP\Mvc\View\Components\SelectItemAdapter; use SP\Services\AuthToken\AuthTokenService; use SP\Services\User\UserService; /** * Class ApiTokenController * * @package SP\Modules\Web\Controllers */ class ApiTokenController extends ControllerBase implements CrudControllerInterface { use JsonTrait; use ItemTrait; /** * @var AuthTokenService */ protected $authTokenService; /** * Search action * * @throws \Psr\Container\ContainerExceptionInterface * @throws \Psr\Container\NotFoundExceptionInterface * @throws \SP\Core\Dic\ContainerException */ public function searchAction() { if (!$this->acl->checkUserAccess(ActionsInterface::APITOKEN_SEARCH)) { return; } $itemsGridHelper = $this->dic->get(ItemsGridHelper::class); $grid = $itemsGridHelper->getApiTokensGrid($this->authTokenService->search($this->getSearchData($this->configData)))->updatePager(); $this->view->addTemplate('datagrid-table', 'grid'); $this->view->assign('index', Request::analyze('activetab', 0)); $this->view->assign('data', $grid); $this->returnJsonResponseData(['html' => $this->render()]); } /** * Create action * * @throws \Psr\Container\ContainerExceptionInterface */ public function createAction() { if (!$this->acl->checkUserAccess(ActionsInterface::APITOKEN_CREATE)) { return; } $this->view->assign(__FUNCTION__, 1); $this->view->assign('header', __('Nueva Autorización')); $this->view->assign('isView', false); $this->view->assign('route', 'apiToken/saveCreate'); try { $this->setViewData(); $this->eventDispatcher->notifyEvent('show.authToken.create', new Event($this)); } catch (\Exception $e) { processException($e); $this->returnJsonResponseException($e); } $this->returnJsonResponseData(['html' => $this->render()]); } /** * Sets view data for displaying user's data * * @param $authTokenId * @throws \Psr\Container\ContainerExceptionInterface */ protected function setViewData($authTokenId = null) { $this->view->addTemplate('authtoken', 'itemshow'); $authToken = $authTokenId ? $this->authTokenService->getById($authTokenId) : new AuthTokenData(); $this->view->assign('authToken', $authToken); $this->view->assign('users', SelectItemAdapter::factory(UserService::getItemsBasic())->getItemsFromModelSelected([$authToken->getUserId()])); $this->view->assign('actions', SelectItemAdapter::factory(ApiTokensUtil::getTokenActions())->getItemsFromArraySelected([$authToken->getActionId()])); $this->view->assign('sk', $this->session->generateSecurityKey()); $this->view->assign('nextAction', Acl::getActionRoute(ActionsInterface::ACCESS_MANAGE)); if ($this->view->isView === true) { $this->view->assign('disabled', 'disabled'); $this->view->assign('readonly', 'readonly'); } else { $this->view->assign('disabled'); $this->view->assign('readonly'); } $this->view->assign('customFields', $this->getCustomFieldsForItem(ActionsInterface::APITOKEN, $authTokenId)); } /** * Edit action * * @param $id * @throws \Psr\Container\ContainerExceptionInterface */ public function editAction($id) { if (!$this->acl->checkUserAccess(ActionsInterface::APITOKEN_EDIT)) { return; } $this->view->assign('header', __('Editar Autorización')); $this->view->assign('isView', false); $this->view->assign('route', 'apiToken/saveEdit/' . $id); try { $this->setViewData($id); $this->eventDispatcher->notifyEvent('show.authToken.edit', new Event($this)); } catch (\Exception $e) { processException($e); $this->returnJsonResponseException($e); } $this->returnJsonResponseData(['html' => $this->render()]); } /** * Delete action * * @param $id */ public function deleteAction($id) { if (!$this->acl->checkUserAccess(ActionsInterface::APITOKEN_DELETE)) { return; } try { $this->authTokenService->delete($id); $this->deleteCustomFieldsForItem(ActionsInterface::APITOKEN, $id); $this->eventDispatcher->notifyEvent('delete.authToken', new Event($this, EventMessage::factory() ->addDescription(__u('Autorización eliminada')) ->addDetail(__u('Autorización'), $id)) ); $this->returnJsonResponse(JsonResponse::JSON_SUCCESS, __u('Autorización eliminada')); } catch (\Exception $e) { processException($e); $this->returnJsonResponseException($e); } } /** * Saves create action * * @throws \SP\Core\Dic\ContainerException */ public function saveCreateAction() { if (!$this->acl->checkUserAccess(ActionsInterface::APITOKEN_CREATE)) { return; } try { $form = new AuthTokenForm(); $form->validate(ActionsInterface::APITOKEN_CREATE); $apiTokenData = $form->getItemData(); $id = $this->authTokenService->create($apiTokenData); $this->addCustomFieldsForItem(ActionsInterface::APITOKEN, $id); $this->eventDispatcher->notifyEvent('create.authToken', new Event($this)); $this->returnJsonResponse(JsonResponse::JSON_SUCCESS, __u('Autorización creada')); } catch (ValidationException $e) { $this->returnJsonResponse(JsonResponse::JSON_ERROR, $e->getMessage()); } catch (\Exception $e) { processException($e); $this->returnJsonResponseException($e); } } /** * Saves edit action * * @param $id * @throws \Psr\Container\ContainerExceptionInterface * @throws \Psr\Container\NotFoundExceptionInterface * @throws \SP\Core\Dic\ContainerException */ public function saveEditAction($id) { if (!$this->acl->checkUserAccess(ActionsInterface::APITOKEN_EDIT)) { return; } try { $form = new AuthTokenForm($id); $form->validate(ActionsInterface::APITOKEN_EDIT); if ($form->isRefresh()) { $this->authTokenService->refreshAndUpdate($form->getItemData()); $this->eventDispatcher->notifyEvent('refresh.authToken', new Event($this, EventMessage::factory() ->addDescription(__u('Autorización actualizada')) ->addDetail(__u('Autorización'), $id)) ); } else { $this->authTokenService->update($form->getItemData()); $this->eventDispatcher->notifyEvent('edit.authToken', new Event($this, EventMessage::factory() ->addDescription(__u('Autorización actualizada')) ->addDetail(__u('Autorización'), $id)) ); } $this->updateCustomFieldsForItem(ActionsInterface::APITOKEN, $id); $this->returnJsonResponse(JsonResponse::JSON_SUCCESS, __u('Autorización actualizada')); } catch (ValidationException $e) { $this->returnJsonResponse(JsonResponse::JSON_ERROR, $e->getMessage()); } catch (\Exception $e) { processException($e); $this->returnJsonResponseException($e); } } /** * View action * * @param $id * @throws \Psr\Container\ContainerExceptionInterface */ public function viewAction($id) { if (!$this->acl->checkUserAccess(ActionsInterface::APITOKEN_VIEW)) { return; } $this->view->assign('header', __('Ver Autorización')); $this->view->assign('isView', true); try { $this->setViewData($id); $this->eventDispatcher->notifyEvent('show.authToken', new Event($this, EventMessage::factory() ->addDescription(__u('Autorización visualizada')) ->addDetail(__u('Autorización'), $id)) ); } catch (\Exception $e) { processException($e); $this->returnJsonResponseException($e); } $this->returnJsonResponseData(['html' => $this->render()]); } /** * Initialize class * * @throws \Psr\Container\ContainerExceptionInterface * @throws \Psr\Container\NotFoundExceptionInterface * @throws \SP\Services\Auth\AuthException */ protected function initialize() { $this->checkLoggedIn(); $this->authTokenService = $this->dic->get(AuthTokenService::class); } }