What Implements tenant-scoped backup scheduling end-to-end: schedules CRUD, minute-based dispatch, queued execution, run history, manual “Run now/Retry”, retention (keep last N), and auditability. Key changes Filament UI: Backup Schedules resource with tenant scoping + SEC-002 role gating. Scheduler + queue: tenantpilot:schedules:dispatch command wired in scheduler (runs every minute), creates idempotent BackupScheduleRun records and dispatches jobs. Execution: RunBackupScheduleJob syncs policies, creates immutable backup sets, updates run status, writes audit logs, applies retry/backoff mapping, and triggers retention. Run history: Relation manager + “View” modal rendering run details. UX polish: row actions grouped; bulk actions grouped (run now / retry / delete). Bulk dispatch writes DB notifications (shows in notifications panel). Validation: policy type hard-validation on save; unknown policy types handled safely at runtime (skipped/partial). Tests: comprehensive Pest coverage for CRUD/scoping/validation, idempotency, job outcomes, error mapping, retention, view modal, run-now/retry notifications, bulk delete (incl. operator forbidden). Files / Areas Filament: BackupScheduleResource.php and app/Filament/Resources/BackupScheduleResource/* Scheduling/Jobs: app/Console/Commands/TenantpilotDispatchBackupSchedules.php, app/Jobs/RunBackupScheduleJob.php, app/Jobs/ApplyBackupScheduleRetentionJob.php, console.php Models/Migrations: app/Models/BackupSchedule.php, app/Models/BackupScheduleRun.php, database/migrations/backup_schedules, backup_schedule_runs Notifications: BackupScheduleRunDispatchedNotification.php Specs: specs/032-backup-scheduling-mvp/* (tasks/checklist/quickstart updates) How to test (Sail) Run tests: ./vendor/bin/sail artisan test tests/Feature/BackupScheduling Run formatter: ./vendor/bin/sail php ./vendor/bin/pint --dirty Apply migrations: ./vendor/bin/sail artisan migrate Manual dispatch: ./vendor/bin/sail artisan tenantpilot:schedules:dispatch Notes Uses DB notifications for queued UI actions to ensure they appear in the notifications panel even under queue fakes in tests. Checklist gate for 032 is PASS; tasks updated accordingly. Co-authored-by: Ahmed Darrazi <ahmeddarrazi@adsmac.local> Reviewed-on: #34
47 lines
1.1 KiB
PHP
47 lines
1.1 KiB
PHP
<?php
|
|
|
|
namespace App\Policies;
|
|
|
|
use App\Models\BackupSchedule;
|
|
use App\Models\Tenant;
|
|
use App\Models\User;
|
|
use App\Support\TenantRole;
|
|
use Illuminate\Auth\Access\HandlesAuthorization;
|
|
|
|
class BackupSchedulePolicy
|
|
{
|
|
use HandlesAuthorization;
|
|
|
|
protected function resolveRole(User $user): ?TenantRole
|
|
{
|
|
$tenant = Tenant::current();
|
|
|
|
return $user->tenantRole($tenant);
|
|
}
|
|
|
|
public function viewAny(User $user): bool
|
|
{
|
|
return $this->resolveRole($user) !== null;
|
|
}
|
|
|
|
public function view(User $user, BackupSchedule $schedule): bool
|
|
{
|
|
return $this->resolveRole($user) !== null;
|
|
}
|
|
|
|
public function create(User $user): bool
|
|
{
|
|
return $this->resolveRole($user)?->canManageBackupSchedules() ?? false;
|
|
}
|
|
|
|
public function update(User $user, BackupSchedule $schedule): bool
|
|
{
|
|
return $this->resolveRole($user)?->canManageBackupSchedules() ?? false;
|
|
}
|
|
|
|
public function delete(User $user, BackupSchedule $schedule): bool
|
|
{
|
|
return $this->resolveRole($user)?->canManageBackupSchedules() ?? false;
|
|
}
|
|
}
|