- 在多个控制器中引入 agent_node_id,以支持基于代理节点的权限和数据过滤。 - 更新 AdminRole 和 AdminUser 模型,新增角色范围和代理节点相关功能,提升角色管理的灵活性。 - 在请求验证中添加 agent_node_id 字段,确保 API 接口支持代理节点的相关操作。 - 优化 LotterySettings 服务,支持批量写入设置,提升配置管理的效率。 - 更新仪表板和报告服务,增强数据统计功能,确保管理员能够获取更全面的统计信息。
55 lines
1.5 KiB
PHP
55 lines
1.5 KiB
PHP
<?php
|
|
|
|
namespace App\Http\Controllers\Api\V1\Admin\Agent;
|
|
|
|
use App\Models\AdminRole;
|
|
use App\Support\ApiResponse;
|
|
use App\Services\AuditLogger;
|
|
use Illuminate\Http\JsonResponse;
|
|
use App\Http\Controllers\Controller;
|
|
use App\Services\Agent\AgentRoleService;
|
|
use App\Support\AgentRoleAuthorization;
|
|
use App\Support\AdminRoleApiPresenter;
|
|
use App\Http\Requests\Admin\AgentRoleUpdateRequest;
|
|
|
|
final class AgentRoleUpdateController extends Controller
|
|
{
|
|
public function __invoke(
|
|
AgentRoleUpdateRequest $request,
|
|
AdminRole $admin_role,
|
|
AgentRoleService $service,
|
|
): JsonResponse {
|
|
$admin = $request->lotteryAdmin();
|
|
abort_if($admin === null, 401);
|
|
|
|
if (! $admin_role->isAgentScoped()) {
|
|
abort(404);
|
|
}
|
|
|
|
$denied = AgentRoleAuthorization::denyUnlessRoleManageable($admin, $admin_role);
|
|
if ($denied !== null) {
|
|
return $denied;
|
|
}
|
|
|
|
if ($admin_role->isReadOnlyTemplate()) {
|
|
return AgentRoleAuthorization::denyUnlessRoleManageable($admin, $admin_role);
|
|
}
|
|
|
|
$before = AdminRoleApiPresenter::item($admin_role);
|
|
$role = $service->update($admin_role, $request->validated());
|
|
|
|
AuditLogger::recordForAdmin(
|
|
$admin,
|
|
$request,
|
|
'agent',
|
|
'agent_role.update',
|
|
'admin_role',
|
|
(string) $role->id,
|
|
$before,
|
|
AdminRoleApiPresenter::item($role),
|
|
);
|
|
|
|
return ApiResponse::success(AdminRoleApiPresenter::item($role));
|
|
}
|
|
}
|