- 在 SyncAdminAuthorizationCommand 中新增对代理线路和结算菜单操作的同步功能,确保缺失的菜单操作行能够被创建。 - 更新多个控制器中的权限检查逻辑,使用 hasPermissionCode 替代原有的权限验证方式,提升权限管理的灵活性。 - 在 AdminPlayerStoreController 中引入对玩家创建能力的验证,确保只有具备相应权限的管理员能够创建玩家。 - 更新请求验证逻辑,新增 credit_limit、rebate_rate 和 extra_rebate_rate 字段,以支持更细粒度的玩家管理。 - 在 AdminUser 和 AgentNode 模型中增强角色与用户的权限管理功能,支持更细粒度的权限控制。
138 lines
5.0 KiB
PHP
138 lines
5.0 KiB
PHP
<?php
|
|
|
|
namespace App\Http\Controllers\Api\V1\Admin\Player;
|
|
|
|
use App\Models\Player;
|
|
use App\Lottery\ErrorCode;
|
|
use App\Support\ApiMessage;
|
|
use App\Support\ApiResponse;
|
|
use Illuminate\Http\JsonResponse;
|
|
use App\Support\AdminAgentScope;
|
|
use App\Support\AdminSiteScope;
|
|
use App\Support\PlayerApiPresenter;
|
|
use App\Http\Controllers\Controller;
|
|
use App\Http\Requests\Admin\AdminPlayerStoreRequest;
|
|
use App\Models\AgentNode;
|
|
use App\Services\Agent\AgentProfileService;
|
|
use App\Services\Agent\RebateLimitValidator;
|
|
use App\Services\Player\PlayerCreditService;
|
|
|
|
/** POST /api/v1/admin/players */
|
|
final class AdminPlayerStoreController extends Controller
|
|
{
|
|
public function __invoke(
|
|
AdminPlayerStoreRequest $request,
|
|
PlayerCreditService $playerCreditService,
|
|
RebateLimitValidator $rebateLimitValidator,
|
|
AgentProfileService $agentProfileService,
|
|
): JsonResponse {
|
|
$admin = $request->lotteryAdmin();
|
|
abort_if($admin === null, 401);
|
|
|
|
try {
|
|
$agentProfileService->assertActorMayCreatePlayer($admin);
|
|
} catch (\Illuminate\Validation\ValidationException $e) {
|
|
return ApiMessage::errorResponse(
|
|
$request,
|
|
'admin.player_create_capability_forbidden',
|
|
ErrorCode::AdminForbidden->value,
|
|
$e->errors(),
|
|
403,
|
|
);
|
|
}
|
|
|
|
$siteCode = (string) $request->validated('site_code');
|
|
if (! AdminSiteScope::siteCodeAllowed($admin, $siteCode)) {
|
|
return ApiMessage::errorResponse($request, 'admin.player_create_site_forbidden', ErrorCode::AdminForbidden->value, null, 403);
|
|
}
|
|
|
|
$exists = Player::query()
|
|
->where('site_code', $request->validated('site_code'))
|
|
->where('site_player_id', $request->validated('site_player_id'))
|
|
->exists();
|
|
|
|
if ($exists) {
|
|
return ApiMessage::errorResponse($request, 'admin.player_already_registered', ErrorCode::ValidationFailed->value, null, 422);
|
|
}
|
|
|
|
$agentNodeId = $admin->isSuperAdmin()
|
|
? $this->resolveAgentNodeIdForSuperAdmin($request->validated('agent_node_id'), $siteCode)
|
|
: $admin->primaryAgentNodeId();
|
|
|
|
if ($agentNodeId === null) {
|
|
return ApiMessage::errorResponse(
|
|
$request,
|
|
'admin.player_create_agent_required',
|
|
ErrorCode::ValidationFailed->value,
|
|
null,
|
|
422,
|
|
);
|
|
}
|
|
|
|
if (! $admin->isSuperAdmin()) {
|
|
$agent = AdminAgentScope::primaryAgentNode($admin);
|
|
if ($agent === null || (int) $agentNodeId !== (int) $agent->id) {
|
|
return ApiMessage::errorResponse($request, 'admin.player_create_agent_forbidden', ErrorCode::AdminForbidden->value, null, 403);
|
|
}
|
|
}
|
|
|
|
$agent = AgentNode::query()->findOrFail($agentNodeId);
|
|
if ($request->has('rebate_rate')) {
|
|
$rebateLimitValidator->assertPlayerRebateWithinAgent(
|
|
$agent,
|
|
(float) $request->input('rebate_rate', 0),
|
|
(float) $request->input('extra_rebate_rate', 0),
|
|
);
|
|
}
|
|
|
|
$player = Player::query()->create([
|
|
'site_code' => $request->validated('site_code'),
|
|
'agent_node_id' => $agentNodeId,
|
|
'site_player_id' => $request->validated('site_player_id'),
|
|
'username' => $request->validated('username'),
|
|
'nickname' => $request->validated('nickname'),
|
|
'default_currency' => $request->validated('default_currency', 'NPR'),
|
|
'status' => $request->validated('status', 0),
|
|
]);
|
|
|
|
if ($request->has('credit_limit')) {
|
|
$playerCreditService->upsertAccount($player, [
|
|
'credit_limit' => (int) $request->input('credit_limit', 0),
|
|
]);
|
|
}
|
|
|
|
if ($request->has('rebate_rate')) {
|
|
\Illuminate\Support\Facades\DB::table('player_rebate_profiles')->insert([
|
|
'player_id' => $player->id,
|
|
'game_type' => '*',
|
|
'inherit_from_agent' => false,
|
|
'rebate_rate' => (float) $request->input('rebate_rate', 0),
|
|
'extra_rebate_rate' => (float) $request->input('extra_rebate_rate', 0),
|
|
'created_at' => now(),
|
|
'updated_at' => now(),
|
|
]);
|
|
}
|
|
|
|
return ApiResponse::success(PlayerApiPresenter::listItem($player))->setStatusCode(201);
|
|
}
|
|
|
|
private function resolveAgentNodeIdForSuperAdmin(mixed $requested, string $siteCode): ?int
|
|
{
|
|
if ($requested !== null && (int) $requested > 0) {
|
|
return (int) $requested;
|
|
}
|
|
|
|
$siteId = \App\Models\AdminSite::query()->where('code', $siteCode)->value('id');
|
|
if ($siteId === null) {
|
|
return null;
|
|
}
|
|
|
|
$rootId = \App\Models\AgentNode::query()
|
|
->where('admin_site_id', (int) $siteId)
|
|
->where('depth', 0)
|
|
->value('id');
|
|
|
|
return $rootId !== null ? (int) $rootId : null;
|
|
}
|
|
}
|