Role.php 2.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104
  1. <?php
  2. namespace App\Models;
  3. use Illuminate\Database\Eloquent\Model;
  4. use Illuminate\Database\Eloquent\Relations\BelongsToMany;
  5. use Illuminate\Database\Eloquent\Relations\HasMany;
  6. class Role extends Model
  7. {
  8. const ADMIN = 'admin';
  9. const MANAGER = 'manager';
  10. const BRIGADIER = 'brigadier';
  11. const WAREHOUSE_HEAD = 'warehouse_head';
  12. const ASSISTANT_HEAD = 'assistant_head';
  13. const VALID_ROLES = [
  14. self::ADMIN,
  15. self::MANAGER,
  16. self::BRIGADIER,
  17. self::WAREHOUSE_HEAD,
  18. self::ASSISTANT_HEAD,
  19. ];
  20. const NAMES = [
  21. self::ADMIN => 'Админ',
  22. self::MANAGER => 'Менеджер',
  23. self::BRIGADIER => 'Бригадир',
  24. self::WAREHOUSE_HEAD => 'Рук. Склада',
  25. self::ASSISTANT_HEAD => 'Помощник рук.',
  26. ];
  27. protected $fillable = [
  28. 'slug',
  29. 'name',
  30. 'description',
  31. 'is_system',
  32. 'is_active',
  33. 'sort',
  34. ];
  35. protected function casts(): array
  36. {
  37. return [
  38. 'is_system' => 'boolean',
  39. 'is_active' => 'boolean',
  40. ];
  41. }
  42. public function permissions(): BelongsToMany
  43. {
  44. return $this->belongsToMany(Permission::class, 'role_permissions')
  45. ->withPivot('effect')
  46. ->withTimestamps();
  47. }
  48. public function users(): HasMany
  49. {
  50. return $this->hasMany(User::class);
  51. }
  52. public function hasPermission(string $permission): bool
  53. {
  54. return app(\App\Services\Access\AccessService::class)->roleHasPermission($this, $permission);
  55. }
  56. public function givePermission(string $permission, string $effect = 'allow'): void
  57. {
  58. $permissionModel = Permission::query()->where('slug', $permission)->firstOrFail();
  59. $this->permissions()->syncWithoutDetaching([
  60. $permissionModel->id => ['effect' => $effect],
  61. ]);
  62. app(\App\Services\Access\AccessService::class)->bumpCacheVersion();
  63. }
  64. public function syncPermissions(array $permissions): void
  65. {
  66. $sync = [];
  67. foreach ($permissions as $permission => $effect) {
  68. if (is_int($permission)) {
  69. $permission = $effect;
  70. $effect = 'allow';
  71. }
  72. $permissionModel = Permission::query()->where('slug', $permission)->first();
  73. if ($permissionModel) {
  74. $sync[$permissionModel->id] = ['effect' => $effect];
  75. }
  76. }
  77. $this->permissions()->sync($sync);
  78. app(\App\Services\Access\AccessService::class)->bumpCacheVersion();
  79. }
  80. public static function effectiveRoles(string $role): array
  81. {
  82. return match ($role) {
  83. self::ASSISTANT_HEAD => [self::ASSISTANT_HEAD, self::ADMIN, self::MANAGER],
  84. default => [$role],
  85. };
  86. }
  87. }