using API.Authentication.GrantNames; using API.Authentication.Interfaces; using API.DTO.Base; using API.Services; using API.Services.Interfaces; using DAL.Models; namespace API.Authentication { public class SavedEventAuthentication : ISavedEventAuthentication { private readonly IGrantManager _grantManager; private readonly ILogger _logger; public SavedEventAuthentication(ILogger logger, IGrantManager grantManager) { _logger = logger; _grantManager = grantManager; } public bool canGetAll(User user) { return _grantManager.hasGrant(user.permissionId, SavedEventGrantNames.CanGetAll); } public bool canGet(SavedEvent model, User user) { return _grantManager.hasGrant(user.permissionId, SavedEventGrantNames.CanGetAny) || _grantManager.getULongValues(user.permissionId, SavedEventGrantNames.CanGet).Exists(x => x == model.id); } public bool canAdd(SavedEventDTO item, User user) { return _grantManager.hasGrant(user.permissionId, SavedEventGrantNames.CanAdd); } public bool canUpdate(SavedEvent model, User user) { return _grantManager.hasGrant(user.permissionId, SavedEventGrantNames.CanUpdateAny) || _grantManager.getULongValues(user.permissionId, SavedEventGrantNames.CanUpdate).Exists(x => x == model.id); } public bool canDelete(SavedEvent model, User user) { return _grantManager.hasGrant(user.permissionId, SavedEventGrantNames.CanDeleteAny) || _grantManager.getULongValues(user.permissionId, SavedEventGrantNames.CanDelete).Exists(x => x == model.id); } } }