2024-11-12 16:45:01 +07:00
|
|
|
<?php
|
|
|
|
|
namespace App\Controllers;
|
|
|
|
|
|
2024-11-20 16:55:21 +07:00
|
|
|
use CodeIgniter\RESTful\ResourceController;
|
|
|
|
|
|
|
|
|
|
class Users extends ResourceController {
|
|
|
|
|
protected $format = 'json';
|
2024-11-14 16:48:38 +07:00
|
|
|
|
2024-11-20 16:55:21 +07:00
|
|
|
public function index() {
|
2024-11-14 16:48:38 +07:00
|
|
|
$db = \Config\Database::connect();
|
2024-11-20 16:55:21 +07:00
|
|
|
$sql = "select u.USERID, u.USERNAME, u1.USERROLEID, ur.USERROLENAME from cmod.dbo.CM_USERS u1
|
2024-11-14 16:48:38 +07:00
|
|
|
full join USERS u on u.USERID=u1.USERID
|
2024-11-20 16:55:21 +07:00
|
|
|
left join cmod.dbo.CM_USERROLES ur on ur.USERROLEID=u1.USERROLEID
|
2024-11-14 16:48:38 +07:00
|
|
|
where ( u.LOCKEDACCOUNT is null or u.LOCKEDACCOUNT=0 )";
|
|
|
|
|
$query = $db->query($sql);
|
|
|
|
|
$results = $query->getResultArray();
|
2024-11-12 16:45:01 +07:00
|
|
|
|
2024-11-14 16:48:38 +07:00
|
|
|
$data['users'] = $results;
|
2024-11-20 16:55:21 +07:00
|
|
|
return $this->respond($data,200);
|
|
|
|
|
}
|
2024-11-12 16:45:01 +07:00
|
|
|
|
2024-11-20 16:55:21 +07:00
|
|
|
public function savePass() {
|
|
|
|
|
$db = \Config\Database::connect();
|
|
|
|
|
$userid = $this->request->getPost('userid');
|
|
|
|
|
$pass = $this->request->getPost('pass');
|
|
|
|
|
$password = password_hash($pass,PASSWORD_DEFAULT);
|
|
|
|
|
$sql = "update cmod.dbo.CM_USERS set PASSWORD='$password' where USERID='$userid'";
|
|
|
|
|
if( $db->query($sql) ) {
|
|
|
|
|
return $this->respond(['message' => 'Save Success'],201);
|
2024-11-14 16:48:38 +07:00
|
|
|
} else {
|
2024-11-20 16:55:21 +07:00
|
|
|
$response = [
|
|
|
|
|
'errors' => $db->errors(),
|
|
|
|
|
'message' => 'Invalids'
|
|
|
|
|
];
|
|
|
|
|
return $this->fail($response , 409);
|
|
|
|
|
}
|
2024-11-14 16:48:38 +07:00
|
|
|
}
|
|
|
|
|
|
2024-11-20 16:55:21 +07:00
|
|
|
public function saveRole() {
|
2024-11-14 16:48:38 +07:00
|
|
|
$db = \Config\Database::connect();
|
2024-11-20 16:55:21 +07:00
|
|
|
$userid = $this->request->getPost('userid');
|
|
|
|
|
$userroleid = $this->request->getPost('userroleid');
|
|
|
|
|
$sql = "if (not exists (select * from cmod.dbo.CM_USERS where USERID='$userid')) BEGIN
|
|
|
|
|
INSERT INTO cmod.dbo.CM_USERS(USERID, USERROLEID, CREATEDATE) VALUES
|
|
|
|
|
('$userid','$userroleid', GETDATE())
|
|
|
|
|
END ELSE BEGIN
|
|
|
|
|
UPDATE cmod.dbo.CM_USERS set USERROLEID='$userroleid' where USERID='$userid'
|
|
|
|
|
END";
|
|
|
|
|
if( $db->query($sql) ) {
|
|
|
|
|
return $this->respond(['message' => 'Save Success'],201);
|
|
|
|
|
} else {
|
|
|
|
|
$response = [
|
|
|
|
|
'errors' => $db->errors(),
|
|
|
|
|
'message' => 'Invalids'
|
|
|
|
|
];
|
|
|
|
|
return $this->fail($response , 409);
|
|
|
|
|
}
|
|
|
|
|
}
|
|
|
|
|
}
|