@@ -26,21 +26,21 @@ public class TicketController {
2626 private final UserRepository userRepository ;
2727
2828 @ GetMapping ("/tickets" )
29- @ PreAuthorize ("hasAnyRole ('ADMIN', ' MANAGER', ' CASHIER')" )
29+ @ PreAuthorize ("hasAnyAuthority ('ADMIN','ROLE_ADMIN',' MANAGER','ROLE_MANAGER',' CASHIER','ROLE_CASHIER','INVENTORY_STAFF','ROLE_INVENTORY_STAFF','SALES_STAFF','ROLE_SALES_STAFF ')" )
3030 public ResponseEntity <List <TicketResponse >> getAllTickets () {
3131 List <TicketResponse > tickets = ticketService .getAllTickets ();
3232 return ResponseEntity .ok (tickets );
3333 }
3434
3535 @ GetMapping ("/tickets/{id}" )
36- @ PreAuthorize ("hasAnyRole ('ADMIN', ' MANAGER', ' CASHIER')" )
36+ @ PreAuthorize ("hasAnyAuthority ('ADMIN','ROLE_ADMIN',' MANAGER','ROLE_MANAGER',' CASHIER','ROLE_CASHIER','INVENTORY_STAFF','ROLE_INVENTORY_STAFF','SALES_STAFF','ROLE_SALES_STAFF ')" )
3737 public ResponseEntity <TicketResponse > getTicketById (@ PathVariable ("id" ) Long id ) {
3838 TicketResponse ticket = ticketService .getTicketById (id );
3939 return ResponseEntity .ok (ticket );
4040 }
4141
4242 @ PostMapping ("/tickets" )
43- @ PreAuthorize ("hasAnyRole ('ADMIN', ' CASHIER')" )
43+ @ PreAuthorize ("hasAnyAuthority ('ADMIN','ROLE_ADMIN','MANAGER','ROLE_MANAGER',' CASHIER','ROLE_CASHIER','INVENTORY_STAFF','ROLE_INVENTORY_STAFF','SALES_STAFF','ROLE_SALES_STAFF ')" )
4444 public ResponseEntity <?> createTicket (@ RequestBody CreateTicketRequest request ) {
4545 try {
4646 TicketResponse ticket = ticketService .createTicket (request );
@@ -53,7 +53,7 @@ public ResponseEntity<?> createTicket(@RequestBody CreateTicketRequest request)
5353 }
5454
5555 @ PutMapping ("/tickets/{id}" )
56- @ PreAuthorize ("hasAnyRole ('ADMIN', ' CASHIER')" )
56+ @ PreAuthorize ("hasAnyAuthority ('ADMIN','ROLE_ADMIN','MANAGER','ROLE_MANAGER',' CASHIER','ROLE_CASHIER','INVENTORY_STAFF','ROLE_INVENTORY_STAFF','SALES_STAFF','ROLE_SALES_STAFF ')" )
5757 public ResponseEntity <TicketResponse > updateTicket (
5858 @ PathVariable ("id" ) Long id ,
5959 @ RequestBody UpdateTicketRequest request ) {
@@ -88,8 +88,8 @@ public ResponseEntity<List<Map<String, Object>>> getUsersByRole(@PathVariable("r
8888 }
8989
9090 /**
91- * Lookup product variant by SKU — for refund restock.
92- * Delegates to service to keep transaction open for lazy-loaded collections.
91+ * Lookup product variant by SKU — for refund restock. Delegates to service
92+ * to keep transaction open for lazy-loaded collections.
9393 */
9494 @ GetMapping ("/tickets/lookup/variant-by-sku" )
9595 @ PreAuthorize ("hasAnyRole('ADMIN', 'CASHIER', 'MANAGER', 'SALES_STAFF')" )
0 commit comments