permission สรรหา

This commit is contained in:
Bright 2024-08-20 11:04:07 +07:00
parent 0b753795b8
commit dd5466de21
6 changed files with 220 additions and 5 deletions

View file

@ -3,9 +3,12 @@ using BMA.EHR.Recurit.Exam.Service.Models;
using BMA.EHR.Recurit.Exam.Service.Request;
using BMA.EHR.Recurit.Exam.Service.Response;
using BMA.EHR.Recurit.Exam.Service.Services;
using BMA.EHR.Recurit.Exam.Service.Request;
using Microsoft.AspNetCore.Authorization;
using Microsoft.AspNetCore.Mvc;
using Swashbuckle.AspNetCore.Annotations;
using Newtonsoft.Json.Linq;
using Newtonsoft.Json;
namespace BMA.EHR.Recurit.Exam.Service.Controllers
{
@ -20,14 +23,16 @@ namespace BMA.EHR.Recurit.Exam.Service.Controllers
#region " Fields "
private readonly CMSCandidateService _cmsCandidateService;
private readonly PermissionRepository _permission;
#endregion
#region " Constructor and Destructor "
public CMSCandidateController(CMSCandidateService cmsCandidateService)
public CMSCandidateController(CMSCandidateService cmsCandidateService, PermissionRepository permission)
{
_cmsCandidateService = cmsCandidateService;
_permission = permission;
}
#endregion
@ -75,6 +80,15 @@ namespace BMA.EHR.Recurit.Exam.Service.Controllers
{
try
{
var action = "CREATE";
var system = "SYS_EXAM_WEBSITE";
var getPermission = await _permission.GetPermissionAPIAsync(action, system);
var jsonData = JsonConvert.DeserializeObject<JObject>(getPermission);
if (jsonData["status"]?.ToString() != "200")
{
return Error(jsonData["message"]?.ToString(), StatusCodes.Status403Forbidden);
}
var attrPrivilege = jsonData["result"]?.ToString();
await _cmsCandidateService.UpdateDetailAsync(detail);
return Success();
@ -101,6 +115,15 @@ namespace BMA.EHR.Recurit.Exam.Service.Controllers
{
try
{
var action = "CREATE";
var system = "SYS_EXAM_WEBSITE";
var getPermission = await _permission.GetPermissionAPIAsync(action, system);
var jsonData = JsonConvert.DeserializeObject<JObject>(getPermission);
if (jsonData["status"]?.ToString() != "200")
{
return Error(jsonData["message"]?.ToString(), StatusCodes.Status403Forbidden);
}
var attrPrivilege = jsonData["result"]?.ToString();
await _cmsCandidateService.UpdateAboutAsync(about);
return Success();
@ -127,6 +150,15 @@ namespace BMA.EHR.Recurit.Exam.Service.Controllers
{
try
{
var action = "CREATE";
var system = "SYS_EXAM_WEBSITE";
var getPermission = await _permission.GetPermissionAPIAsync(action, system);
var jsonData = JsonConvert.DeserializeObject<JObject>(getPermission);
if (jsonData["status"]?.ToString() != "200")
{
return Error(jsonData["message"]?.ToString(), StatusCodes.Status403Forbidden);
}
var attrPrivilege = jsonData["result"]?.ToString();
if (Request.Form.Files == null || Request.Form.Files.Count == 0)
{
return Error(GlobalMessages.NoFileToUpload);
@ -159,6 +191,15 @@ namespace BMA.EHR.Recurit.Exam.Service.Controllers
{
try
{
var action = "CREATE";
var system = "SYS_EXAM_WEBSITE";
var getPermission = await _permission.GetPermissionAPIAsync(action, system);
var jsonData = JsonConvert.DeserializeObject<JObject>(getPermission);
if (jsonData["status"]?.ToString() != "200")
{
return Error(jsonData["message"]?.ToString(), StatusCodes.Status403Forbidden);
}
var attrPrivilege = jsonData["result"]?.ToString();
if (Request.Form.Files == null || Request.Form.Files.Count == 0)
{
return Error(GlobalMessages.NoFileToUpload);
@ -191,6 +232,15 @@ namespace BMA.EHR.Recurit.Exam.Service.Controllers
{
try
{
var action = "CREATE";
var system = "SYS_EXAM_WEBSITE";
var getPermission = await _permission.GetPermissionAPIAsync(action, system);
var jsonData = JsonConvert.DeserializeObject<JObject>(getPermission);
if (jsonData["status"]?.ToString() != "200")
{
return Error(jsonData["message"]?.ToString(), StatusCodes.Status403Forbidden);
}
var attrPrivilege = jsonData["result"]?.ToString();
await _cmsCandidateService.UpdateAgencyAsync(agency);
return Success();
@ -217,6 +267,15 @@ namespace BMA.EHR.Recurit.Exam.Service.Controllers
{
try
{
var action = "CREATE";
var system = "SYS_EXAM_WEBSITE";
var getPermission = await _permission.GetPermissionAPIAsync(action, system);
var jsonData = JsonConvert.DeserializeObject<JObject>(getPermission);
if (jsonData["status"]?.ToString() != "200")
{
return Error(jsonData["message"]?.ToString(), StatusCodes.Status403Forbidden);
}
var attrPrivilege = jsonData["result"]?.ToString();
await _cmsCandidateService.UpdateGovernmentAsync(government);
return Success();