diff options
| author | Rafi Zadanly <zadanlyr@gmail.com> | 2023-02-14 13:55:14 +0700 |
|---|---|---|
| committer | Rafi Zadanly <zadanlyr@gmail.com> | 2023-02-14 13:55:14 +0700 |
| commit | ce3e018ad61808b7e581e416525e6696ed088916 (patch) | |
| tree | 6459ae3b356ccb6a9b75e7bb11b3c998aa9d0070 /indoteknik_api/controllers/api_v1 | |
| parent | 237b623f8c1ceda7a4b6ce5ef28f629c84425205 (diff) | |
| parent | c68437fc15bd25e00c81001a4d1324a29c50c6bd (diff) | |
Merge branch 'feature/rest-api' into staging
Diffstat (limited to 'indoteknik_api/controllers/api_v1')
| -rw-r--r-- | indoteknik_api/controllers/api_v1/sale_order.py | 30 |
1 files changed, 29 insertions, 1 deletions
diff --git a/indoteknik_api/controllers/api_v1/sale_order.py b/indoteknik_api/controllers/api_v1/sale_order.py index 1c67d6c5..8fe4b1d5 100644 --- a/indoteknik_api/controllers/api_v1/sale_order.py +++ b/indoteknik_api/controllers/api_v1/sale_order.py @@ -106,6 +106,34 @@ class SaleOrder(controller.Controller): return self.response(data) + @http.route(PREFIX_PARTNER + 'sale_order/<id>/checkout', auth='public', method=['POST', 'OPTIONS'], csrf=False) + def partner_checkout_sale_order_by_id(self, **kw): + user_token = self.authenticate() + if not user_token: + return self.unauthorized_response() + + params = self.get_request_params(kw, { + 'partner_id': ['number'], + 'id': ['number'] + }) + if not user_token['partner_id'] == params['value']['partner_id']: + return self.unauthorized_response() + if not params['valid']: + return self.response(code=400, description=params) + + partner_child_ids = self.get_partner_child_ids(params['value']['partner_id']) + domain = [ + ('id', '=', params['value']['id']), + ('partner_id', 'in', partner_child_ids) + ] + data = {} + sale_order = request.env['sale.order'].search(domain) + if sale_order: + sale_order.approval_status = 'pengajuan1' + data = request.env['sale.order'].api_v1_single_response(sale_order, context='with_detail') + + return self.response(data) + @http.route(PREFIX_PARTNER + 'sale_order/<id>/upload_po', auth='public', method=['POST', 'OPTIONS'], csrf=False) def partner_upload_po_sale_order(self, **kw): user_token = self.authenticate() @@ -187,7 +215,7 @@ class SaleOrder(controller.Controller): if not user_token['partner_id'] == params['value']['partner_id']: return self.unauthorized_response() if not params['valid']: - return self.response(code=400, description=params) + return self.response(code=400, description=params) partner_child_ids = self.get_partner_child_ids(params['value']['partner_id']) domain = [ |
