User.php 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590
  1. <?php
  2. namespace App\Http\Livewire;
  3. use Illuminate\Support\Facades\Log;
  4. use Illuminate\Support\Facades\DB;
  5. use Illuminate\Support\Facades\Mail;
  6. use Livewire\Component;
  7. use App\Http\Middleware\TenantMiddleware;
  8. use Illuminate\Support\Facades\Auth;
  9. class User extends Component
  10. {
  11. public function boot()
  12. {
  13. app(TenantMiddleware::class)->setupTenantConnection();
  14. $this->logCurrentDatabase('After tenant connection setup in boot()');
  15. }
  16. public $records, $name, $cognome, $email, $password, $oldPassword, $level, $enabled, $dataId, $update = false, $add = false, $oldEmail = null;
  17. public $userExists = false;
  18. public $password_confirmation;
  19. public $master_user_id = null;
  20. protected $rules = [
  21. 'name' => 'required',
  22. 'cognome' => 'required',
  23. 'email' => 'required',
  24. 'password' => 'required',
  25. 'password_confirmation' => 'required|same:password'
  26. ];
  27. protected $messages = [
  28. 'name.required' => 'Il nome è obbligatorio',
  29. 'cognome.required' => 'Il cognome è obbligatorio',
  30. 'email.required' => 'La mail è obbligatoria',
  31. 'password.required' => 'La password è obbligatoria',
  32. 'password_confirmation.required' => 'Ripeti la password inserita',
  33. 'password_confirmation.same' => 'Le password non coincidono',
  34. ];
  35. /**
  36. * Helper method to log current database information
  37. */
  38. private function logCurrentDatabase($context = '')
  39. {
  40. try {
  41. $currentConnection = DB::getDefaultConnection();
  42. $currentDatabase = DB::connection()->getDatabaseName();
  43. $user = Auth::user();
  44. Log::info('Database Connection Info', [
  45. 'context' => $context,
  46. 'current_connection' => $currentConnection,
  47. 'current_database' => $currentDatabase,
  48. 'user_id' => $user ? $user->id : null,
  49. 'user_tenant_database' => $user ? $user->tenant_database : null,
  50. 'user_tenant_username' => $user ? $user->tenant_username : null,
  51. ]);
  52. } catch (\Exception $e) {
  53. Log::error('Failed to get database info', [
  54. 'context' => $context,
  55. 'error' => $e->getMessage()
  56. ]);
  57. }
  58. }
  59. /**
  60. * Send welcome email to new user
  61. */
  62. private function sendWelcomeEmail($userData, $plainPassword)
  63. {
  64. try {
  65. $currentUser = Auth::user();
  66. $companyName = 'Leezard';
  67. Log::info('Preparing to send welcome email', [
  68. 'recipient' => $userData['email'],
  69. 'company' => $companyName,
  70. 'mail_from' => config('mail.from.address'),
  71. 'mail_host' => config('mail.mailers.smtp.host'),
  72. 'mail_port' => config('mail.mailers.smtp.port')
  73. ]);
  74. $emailData = [
  75. 'name' => $userData['name'],
  76. 'cognome' => $userData['cognome'],
  77. 'email' => $userData['email'],
  78. 'password' => $plainPassword,
  79. 'level' => $userData['level'],
  80. 'company' => $companyName,
  81. 'login_url' => url('/'),
  82. 'created_by' => $currentUser->name
  83. ];
  84. try {
  85. $viewContent = view('emails.welcome-user', $emailData)->render();
  86. Log::info('Email template rendered successfully', ['template_length' => strlen($viewContent)]);
  87. } catch (\Exception $viewException) {
  88. Log::error('Email template rendering failed', ['error' => $viewException->getMessage()]);
  89. throw new \Exception('Email template error: ' . $viewException->getMessage());
  90. }
  91. Mail::send('emails.welcome-user', $emailData, function ($message) use ($userData, $companyName) {
  92. $message->to($userData['email'], $userData['name'] . ' ' . $userData['cognome'])
  93. ->subject('Benvenuto su Leezard - Account Creato')
  94. ->from(config('mail.from.address'), config('mail.from.name'));
  95. if (env('MAIL_CCN')) {
  96. $message->bcc(env('MAIL_CCN'));
  97. }
  98. });
  99. Log::info('Welcome email sent successfully', [
  100. 'recipient' => $userData['email'],
  101. 'company' => $companyName,
  102. 'subject' => 'Benvenuto in ' . $companyName . ' - Account Creato'
  103. ]);
  104. return true;
  105. } catch (\Exception $e) {
  106. Log::error('SMTP Transport error when sending welcome email', [
  107. 'recipient' => $userData['email'],
  108. 'error' => $e->getMessage(),
  109. 'mail_config' => [
  110. 'host' => config('mail.mailers.smtp.host'),
  111. 'port' => config('mail.mailers.smtp.port'),
  112. 'encryption' => config('mail.mailers.smtp.encryption'),
  113. 'username' => config('mail.mailers.smtp.username')
  114. ]
  115. ]);
  116. return false;
  117. } catch (\Exception $e) {
  118. Log::error('General error when sending welcome email', [
  119. 'recipient' => $userData['email'],
  120. 'error' => $e->getMessage(),
  121. 'trace' => $e->getTraceAsString()
  122. ]);
  123. return false;
  124. }
  125. }
  126. public function sendSimpleWelcomeEmail($email, $userData)
  127. {
  128. try {
  129. $subject = "Benvenuto su " . $userData['company'] . " – Account Creato";
  130. $message = "Ciao " . $userData['name'] . " " . $userData['cognome'] . ",\n\n";
  131. $message .= "Il tuo account è stato creato con successo su " . $userData['company'] . ".\n\n";
  132. $message .= "Le tue credenziali di accesso:\n";
  133. $message .= "Email: " . $userData['email'] . "\n";
  134. $message .= "Password: " . $userData['password'] . "\n\n";
  135. $message .= "Per motivi di sicurezza, dovrai cambiare la password al primo accesso.\n\n";
  136. $message .= "Accedi ora: " . $userData['login_url'] . "\n\n";
  137. $message .= "Grazie e benvenuto!\n";
  138. $message .= "Il team di " . $userData['company'];
  139. mail($email, $subject, $message, [
  140. 'From' => config('mail.from.address'),
  141. 'Reply-To' => config('mail.from.address'),
  142. 'Content-Type' => 'text/plain; charset=UTF-8'
  143. ]);
  144. return true;
  145. } catch (\Exception $e) {
  146. Log::error('Simple email sending failed', [
  147. 'email' => $email,
  148. 'error' => $e->getMessage()
  149. ]);
  150. return false;
  151. }
  152. }
  153. public function resetFields()
  154. {
  155. $this->name = '';
  156. $this->cognome = '';
  157. $this->email = '';
  158. $this->password = '';
  159. $this->password_confirmation = '';
  160. $this->oldPassword = '';
  161. $this->level = 0;
  162. $this->enabled = true;
  163. $this->master_user_id = null;
  164. $this->emit('load-data-table');
  165. }
  166. public function render()
  167. {
  168. $this->logCurrentDatabase('Before fetching users in render()');
  169. $this->records = \App\Models\User::select('id', 'name', 'cognome', 'email', 'password', 'level', 'enabled', 'master_user_id')->get();
  170. $this->logCurrentDatabase('After fetching users in render()');
  171. return view('livewire.user');
  172. }
  173. public function add()
  174. {
  175. if (!$this->canAddUser()) {
  176. session()->flash('error', 'Non hai i permessi per aggiungere utenti.');
  177. return;
  178. }
  179. $this->logCurrentDatabase('In add() method');
  180. $this->resetFields();
  181. $this->add = true;
  182. $this->update = false;
  183. $this->enabled = true;
  184. $this->userExists = false;
  185. }
  186. public function store()
  187. {
  188. if (!$this->canAddUser()) {
  189. session()->flash('error', 'Non hai i permessi per aggiungere utenti.');
  190. return;
  191. }
  192. $this->logCurrentDatabase('Start of store() method');
  193. Log::info('User store', [
  194. 'name' => $this->name,
  195. 'cognome' => $this->cognome,
  196. 'email' => $this->email,
  197. 'level' => $this->level,
  198. 'enabled' => $this->enabled
  199. ]);
  200. $rules = [
  201. 'name' => 'required',
  202. 'cognome' => 'required',
  203. 'email' => 'required|email|unique:users,email',
  204. 'password' => 'required|min:6',
  205. 'password_confirmation' => 'required|same:password'
  206. ];
  207. $messages = [
  208. 'name.required' => 'Il nome è obbligatorio',
  209. 'cognome.required' => 'Il cognome è obbligatorio',
  210. 'email.required' => 'La mail è obbligatoria',
  211. 'email.email' => 'La mail deve essere un indirizzo valido',
  212. 'email.unique' => 'Questa mail è già stata utilizzata',
  213. 'password.required' => 'La password è obbligatoria',
  214. 'password.min' => 'La password deve essere di almeno 6 caratteri',
  215. 'password_confirmation.required' => 'Ripeti la password inserita',
  216. 'password_confirmation.same' => 'Le password non coincidono',
  217. ];
  218. $this->validate($rules, $messages);
  219. $this->logCurrentDatabase('Before creating user in store()');
  220. try {
  221. $plainPassword = $this->password;
  222. $hashedPassword = bcrypt($this->password);
  223. $user = \App\Models\User::create([
  224. 'name' => $this->name,
  225. 'cognome' => $this->cognome,
  226. 'email' => $this->email,
  227. 'password' => $hashedPassword,
  228. 'level' => $this->level,
  229. 'enabled' => $this->enabled,
  230. 'master_user_id' => null,
  231. ]);
  232. $this->logCurrentDatabase('After creating user in tenant database');
  233. $this->master_user_id = $user->fresh()->master_user_id;
  234. Log::info('User created successfully in tenant database', [
  235. 'user_id' => $user->id,
  236. 'master_user_id' => $this->master_user_id,
  237. 'name' => $this->name,
  238. 'cognome' => $this->cognome,
  239. 'email' => $this->email,
  240. 'level' => $this->level,
  241. 'enabled' => $this->enabled,
  242. 'database' => DB::connection()->getDatabaseName()
  243. ]);
  244. $emailSent = $this->sendWelcomeEmail([
  245. 'name' => $this->name,
  246. 'cognome' => $this->cognome,
  247. 'email' => $this->email,
  248. 'level' => $this->level
  249. ], $plainPassword);
  250. if (!$emailSent) {
  251. Log::info('HTML email failed, trying simple email', ['email' => $this->email]);
  252. $emailSent = $this->sendSimpleWelcomeEmail($this->email, [
  253. 'name' => $this->name,
  254. 'cognome' => $this->cognome,
  255. 'email' => $this->email,
  256. 'password' => $plainPassword,
  257. 'level' => $this->level,
  258. 'company' => 'Leezard',
  259. 'login_url' => url('/'),
  260. ]);
  261. }
  262. if ($emailSent) {
  263. session()->flash('success', 'Utente creato e email di benvenuto inviata con successo');
  264. } else {
  265. session()->flash('success', 'Utente creato ma errore nell\'invio dell\'email. Controlla i log per dettagli.');
  266. }
  267. $this->resetFields();
  268. $this->add = false;
  269. } catch (\Exception $ex) {
  270. $this->logCurrentDatabase('Error in store() method');
  271. Log::error('User creation failed', [
  272. 'error' => $ex->getMessage(),
  273. 'database' => DB::connection()->getDatabaseName(),
  274. 'user_data' => [
  275. 'name' => $this->name,
  276. 'cognome' => $this->cognome,
  277. 'email' => $this->email,
  278. 'level' => $this->level,
  279. 'enabled' => $this->enabled
  280. ]
  281. ]);
  282. session()->flash('error', 'Errore (' . $ex->getMessage() . ')');
  283. }
  284. }
  285. public function edit($id)
  286. {
  287. if (!$this->canEditUser($id)) {
  288. session()->flash('error', 'Non hai i permessi per modificare questo utente.');
  289. return;
  290. }
  291. $this->logCurrentDatabase('Start of edit() method');
  292. try {
  293. $user = \App\Models\User::findOrFail($id);
  294. $this->logCurrentDatabase('After finding user in edit()');
  295. if (!$user) {
  296. session()->flash('error', 'Utente non trovato');
  297. } else {
  298. $this->name = $user->name;
  299. $this->cognome = $user->cognome;
  300. $this->email = $user->email;
  301. $this->level = $user->level;
  302. $this->dataId = $user->id;
  303. $this->update = true;
  304. $this->add = false;
  305. $this->enabled = $user->enabled;
  306. $this->userExists = true;
  307. $this->oldEmail = $user->email;
  308. $this->master_user_id = $user->master_user_id;
  309. }
  310. Log::info('User edit loaded', [
  311. 'user_id' => $id,
  312. 'master_user_id' => $this->master_user_id,
  313. 'name' => $this->name,
  314. 'cognome' => $this->cognome,
  315. 'email' => $this->email,
  316. 'level' => $this->level,
  317. 'database' => DB::connection()->getDatabaseName()
  318. ]);
  319. } catch (\Exception $ex) {
  320. $this->logCurrentDatabase('Error in edit() method');
  321. Log::error('User edit failed', [
  322. 'user_id' => $id,
  323. 'error' => $ex->getMessage(),
  324. 'database' => DB::connection()->getDatabaseName()
  325. ]);
  326. session()->flash('error', 'Errore (' . $ex->getMessage() . ')');
  327. }
  328. }
  329. public function update()
  330. {
  331. $this->logCurrentDatabase('Start of update() method');
  332. $rules = [
  333. 'name' => 'required',
  334. 'cognome' => 'required',
  335. 'email' => 'required|email',
  336. 'password' => 'nullable|min:6',
  337. ];
  338. if ($this->master_user_id == Auth::user()->id) {
  339. $rules['password_confirmation'] = 'required_with:password|same:password';
  340. }
  341. $this->validate($rules, $this->messages);
  342. try {
  343. $currentUser = \App\Models\User::findOrFail($this->dataId);
  344. $passwordChanged = !empty($this->password);
  345. $currentUser->name = $this->name;
  346. $currentUser->cognome = $this->cognome;
  347. $currentUser->email = $this->email;
  348. $currentUser->level = $this->level;
  349. $currentUser->enabled = $this->enabled;
  350. if ($passwordChanged) {
  351. $currentUser->password = bcrypt($this->password);
  352. }
  353. $currentUser->save();
  354. $currentUser = $currentUser->fresh();
  355. $this->master_user_id = $currentUser->master_user_id;
  356. $this->logCurrentDatabase('After updating user');
  357. Log::info('User updated successfully in tenant database', [
  358. 'user_id' => $this->dataId,
  359. 'master_user_id' => $this->master_user_id,
  360. 'name' => $this->name,
  361. 'cognome' => $this->cognome,
  362. 'email' => $this->email,
  363. 'level' => $this->level,
  364. 'enabled' => $this->enabled,
  365. 'password_changed' => $passwordChanged,
  366. 'database' => DB::connection()->getDatabaseName()
  367. ]);
  368. session()->flash('success', 'Dato aggiornato');
  369. $this->resetFields();
  370. $this->update = false;
  371. } catch (\Exception $ex) {
  372. $this->logCurrentDatabase('Error in update() method');
  373. Log::error('User update failed', [
  374. 'user_id' => $this->dataId,
  375. 'error' => $ex->getMessage(),
  376. 'database' => DB::connection()->getDatabaseName()
  377. ]);
  378. session()->flash('error', 'Errore (' . $ex->getMessage() . ')');
  379. }
  380. }
  381. public function cancel()
  382. {
  383. $this->logCurrentDatabase('In cancel() method');
  384. $this->resetFields();
  385. $this->add = false;
  386. $this->update = false;
  387. $this->userExists = false;
  388. $this->enabled = false;
  389. }
  390. public function delete($id)
  391. {
  392. Log::info('Delete method called', [
  393. 'user_id_to_delete' => $id,
  394. 'current_user_id' => Auth::id(),
  395. 'current_user_level' => Auth::user()->level
  396. ]);
  397. if (!$this->canDeleteUser($id)) {
  398. Log::warning('Delete permission denied', [
  399. 'user_id_to_delete' => $id,
  400. 'current_user_id' => Auth::id(),
  401. 'current_user_level' => Auth::user()->level
  402. ]);
  403. session()->flash('error', 'Non hai i permessi per eliminare questo utente.');
  404. return;
  405. }
  406. $this->logCurrentDatabase('Start of delete() method');
  407. try {
  408. $user = \App\Models\User::find($id);
  409. if (!$user) {
  410. Log::error('User not found for deletion', ['user_id' => $id]);
  411. session()->flash('error', 'Utente non trovato.');
  412. return;
  413. }
  414. $userEmail = $user->email;
  415. $userName = $user->name;
  416. $userCognome = $user->cognome;
  417. $masterUserId = $user->master_user_id;
  418. Log::info('Found user for deletion', [
  419. 'user_id' => $id,
  420. 'master_user_id' => $masterUserId,
  421. 'user_email' => $userEmail,
  422. 'user_name' => $userName . ' ' . $userCognome
  423. ]);
  424. $deleted = $user->delete();
  425. if (!$deleted) {
  426. throw new \Exception('Failed to delete user from tenant database');
  427. }
  428. $this->logCurrentDatabase('After deleting user from tenant');
  429. Log::info('User deleted successfully from tenant database; master sync delegated to observer', [
  430. 'user_id' => $id,
  431. 'master_user_id' => $masterUserId,
  432. 'user_email' => $userEmail,
  433. 'database' => DB::connection()->getDatabaseName()
  434. ]);
  435. session()->flash('success', "Utente {$userName} {$userCognome} eliminato con successo");
  436. $this->emit('userDeleted');
  437. $this->emit('load-data-table');
  438. } catch (\Exception $e) {
  439. $this->logCurrentDatabase('Error in delete() method');
  440. Log::error('User deletion failed', [
  441. 'user_id' => $id,
  442. 'error' => $e->getMessage(),
  443. 'trace' => $e->getTraceAsString(),
  444. 'database' => DB::connection()->getDatabaseName()
  445. ]);
  446. session()->flash('error', 'Errore durante l\'eliminazione: ' . $e->getMessage());
  447. }
  448. }
  449. private function canEditUser($userId)
  450. {
  451. $currentUser = Auth::user();
  452. if ($currentUser->level == 0) {
  453. $targetUser = \App\Models\User::find($userId);
  454. // return $targetUser && $targetUser->email != 'admin@admin.com';
  455. return $targetUser;
  456. }
  457. return $userId == $currentUser->id;
  458. }
  459. /**
  460. * Check if current user can edit email and password of a specific user
  461. */
  462. private function canEditEmailAndPassword($userId)
  463. {
  464. $currentUser = Auth::user();
  465. return $userId == $currentUser->id;
  466. }
  467. /**
  468. * Check if current user can delete a specific user
  469. */
  470. private function canDeleteUser($userId)
  471. {
  472. $currentUser = Auth::user();
  473. if ($currentUser->level != 0) {
  474. return false;
  475. }
  476. if ($userId == $currentUser->id) {
  477. return false;
  478. }
  479. $targetUser = \App\Models\User::find($userId);
  480. if ($targetUser && $targetUser->email == 'admin@admin.com') {
  481. return false;
  482. }
  483. return true;
  484. }
  485. /**
  486. * Check if current user can add users
  487. */
  488. private function canAddUser()
  489. {
  490. $currentUser = Auth::user();
  491. return $currentUser->level == 0;
  492. }
  493. }