diff --git a/app/Http/Controllers/Admin/GroupController.php b/app/Http/Controllers/Admin/GroupController.php old mode 100644 new mode 100755 diff --git a/app/Http/Controllers/Admin/UserController.php b/app/Http/Controllers/Admin/UserController.php new file mode 100755 index 0000000..fd376e5 --- /dev/null +++ b/app/Http/Controllers/Admin/UserController.php @@ -0,0 +1,166 @@ +middleware('auth'); + } + + public function index(Request $request) + { + Gate::authorize('viewAny', User::class); + + $query = User::with(['organization', 'roles']); + + // Фильтры + if ($request->filled('organization_id')) { + $query->where('organization_id', $request->organization_id); + } + + if ($request->filled('role')) { + $query->role($request->role); + } + + if ($request->filled('search')) { + $query->where(function($q) use ($request) { + $q->where('name', 'like', '%' . $request->search . '%') + ->orWhere('email', 'like', '%' . $request->search . '%'); + }); + } + + $users = $query->orderBy('created_at', 'desc')->paginate(20); + $organizations = Organization::pluck('name', 'id'); + $roles = Role::pluck('name', 'name'); + + return view('admin.users.index', compact('users', 'organizations', 'roles')); + } + + public function create() + { + Gate::authorize('create', User::class); + + $organizations = Organization::pluck('name', 'id'); + $roles = Role::pluck('name', 'name'); + + return view('admin.users.create', compact('organizations', 'roles')); + } + + public function store(Request $request) + { + Gate::authorize('create', User::class); + + $validated = $request->validate([ + 'name' => 'required|string|max:255', + 'email' => 'required|string|email|max:255|unique:users', + 'password' => 'required|string|min:8|confirmed', + 'phone' => 'nullable|string|max:20', + 'organization_id' => 'nullable|exists:organizations,id', + 'role' => 'required|exists:roles,name', + 'is_active' => 'boolean', + ]); + + $user = User::create([ + 'name' => $validated['name'], + 'email' => $validated['email'], + 'password' => Hash::make($validated['password']), + 'phone' => $validated['phone'] ?? null, + 'organization_id' => $validated['organization_id'] ?? null, + 'is_active' => $validated['is_active'] ?? true, + ]); + + $user->assignRole($validated['role']); + + return redirect()->route('admin.users.index') + ->with('success', 'Пользователь успешно создан.'); + } + + public function show(User $user) + { + Gate::authorize('view', $user); + + $user->load(['organization', 'roles', 'groups']); + + return view('admin.users.show', compact('user')); + } + + public function edit(User $user) + { + Gate::authorize('update', $user); + + $organizations = Organization::pluck('name', 'id'); + $roles = Role::pluck('name', 'name'); + $userGroups = $user->groups->pluck('id')->toArray(); + $allGroups = $user->organization ? $user->organization->groups : collect(); + + return view('admin.users.edit', compact('user', 'organizations', 'roles', 'userGroups', 'allGroups')); + } + + public function update(Request $request, User $user) + { + Gate::authorize('update', $user); + + $validated = $request->validate([ + 'name' => 'required|string|max:255', + 'email' => 'required|string|email|max:255|unique:users,email,' . $user->id, + 'password' => 'nullable|string|min:8|confirmed', + 'phone' => 'nullable|string|max:20', + 'organization_id' => 'nullable|exists:organizations,id', + 'role' => 'required|exists:roles,name', + 'groups' => 'array|exists:groups,id', + 'is_active' => 'boolean', + ]); + + $user->update([ + 'name' => $validated['name'], + 'email' => $validated['email'], + 'phone' => $validated['phone'] ?? null, + 'organization_id' => $validated['organization_id'] ?? null, + 'is_active' => $validated['is_active'] ?? true, + ]); + + // Обновление пароля + if (!empty($validated['password'])) { + $user->password = Hash::make($validated['password']); + $user->save(); + } + + // Обновление роли + $user->syncRoles([$validated['role']]); + + // Обновление групп + if (isset($validated['groups'])) { + $user->groups()->sync($validated['groups']); + } else { + $user->groups()->detach(); + } + + return redirect()->route('admin.users.show', $user) + ->with('success', 'Пользователь успешно обновлён.'); + } + + public function destroy(User $user) + { + Gate::authorize('delete', $user); + + if ($user->isAdministrator()) { + return back()->with('error', 'Невозможно удалить последнего администратора.'); + } + + $user->delete(); + + return redirect()->route('admin.users.index') + ->with('success', 'Пользователь успешно удалён.'); + } +} diff --git a/app/Policies/UserPolicy.php b/app/Policies/UserPolicy.php new file mode 100755 index 0000000..133b905 --- /dev/null +++ b/app/Policies/UserPolicy.php @@ -0,0 +1,64 @@ +hasRole(['Administrator', 'Manager']); + } + + /** + * Determine whether the user can view the model. + */ + public function view(User $user, User $model): bool + { + return $user->hasRole(['Administrator', 'Manager', 'Curator']); + } + + /** + * Determine whether the user can create models. + */ + public function create(User $user): bool + { + return $user->hasRole(['Administrator', 'Manager', 'Curator']); + } + + /** + * Determine whether the user can update the model. + */ + public function update(User $user, User $model): bool + { + return $user->hasRole(['Administrator', 'Manager', 'Curator']); + } + + /** + * Determine whether the user can delete the model. + */ + public function delete(User $user, User $model): bool + { + return $user->hasRole(['Administrator']); + } + + /** + * Determine whether the user can restore the model. + */ + public function restore(User $user, User $model): bool + { + return $user->hasRole(['Administrator']); + } + + /** + * Determine whether the user can permanently delete the model. + */ + public function forceDelete(User $user, User $model): bool + { + return $user->hasRole(['Administrator']); + } +} diff --git a/app/Providers/AuthServiceProvider.php b/app/Providers/AuthServiceProvider.php index ca04072..f9a79c5 100755 --- a/app/Providers/AuthServiceProvider.php +++ b/app/Providers/AuthServiceProvider.php @@ -4,8 +4,10 @@ namespace App\Providers; use App\Models\Group; use App\Models\Organization; +use App\Models\User; use App\Policies\GroupPolicy; use App\Policies\OrganizationPolicy; +use App\Policies\UserPolicy; use Illuminate\Foundation\Support\Providers\AuthServiceProvider as ServiceProvider; class AuthServiceProvider extends ServiceProvider @@ -18,6 +20,7 @@ class AuthServiceProvider extends ServiceProvider protected $policies = [ Organization::class => OrganizationPolicy::class, Group::class => GroupPolicy::class, + User::class => UserPolicy::class, ]; /** diff --git a/resources/views/admin/users/create.blade.php b/resources/views/admin/users/create.blade.php new file mode 100644 index 0000000..95337a9 --- /dev/null +++ b/resources/views/admin/users/create.blade.php @@ -0,0 +1,83 @@ +@extends('layouts.app') +@section('title', 'Добавить пользователя') +@section('content') +
| ID | +Имя | +Организация | +Роль | +Статус | +Действия | +|
|---|---|---|---|---|---|---|
| {{ $user->id }} | +{{ $user->name }} | +{{ $user->email }} | +{{ $user->organization?->name ?? '—' }} | +{{ $user->getRoleNames()->first() }} | ++ @if($user->is_active) + Активен + @else + Не активен + @endif + | ++ + | +
| Пользователей нет | ||||||
| Email: | {{ $user->email }} |
|---|---|
| Телефон: | {{ $user->phone ?? '—' }} |
| Организация: | {{ $user->organization?->name ?? '—' }} |
| Роль: | {{ $user->getRoleNames()->first() }} |
| Статус: | @if($user->is_active)Активен@elseНе активен@endif |
| Создан: | {{ $user->created_at->format('d.m.Y H:i') }} |
Не состоит в группах
+ @endif +