Laravel auth::sanctum 中间件不适用于 API 路由

问题描述 投票:0回答:1

我使用下面给出的代码收到错误

InvalidArgumentException: Auth guard [auth] is not defined. 
。我理解这个错误是因为我在
auth
guards
数组中添加了
config/sanctum.php
。但我不明白除了
auth
之外还能给出什么。

我的实际需求是通过使用

sanctum
中间件进行身份验证来获取登录用户的 id 在我的 API 中。目前,它针对控制器中的代码行返回
null

有谁知道我在这种情况下应该进行哪些修复?如有任何帮助,我们将不胜感激。

控制器

 dd(auth()->user());

routes/api.php

Route::post('login', [UserController::class, 'Login'])->name('login');

Route::group(['prefix' => 'user'],function () {
   Route::group(['middleware' => ['user','auth:sanctum']], function () {
     Route::post('send-msg', [ChatController::class, 'store'])->name('send-msg');
     });
   }
);

Kernal.php

protected $middlewareGroups = [
        'web' => [
            \App\Http\Middleware\EncryptCookies::class,
            \Illuminate\Cookie\Middleware\AddQueuedCookiesToResponse::class,
            \Illuminate\Session\Middleware\StartSession::class,
            \Illuminate\View\Middleware\ShareErrorsFromSession::class,
            \App\Http\Middleware\VerifyCsrfToken::class,
            \Illuminate\Routing\Middleware\SubstituteBindings::class,
        ],
        'api' => [
             \Laravel\Sanctum\Http\Middleware\EnsureFrontendRequestsAreStateful::class,
            'throttle:api',
            \Illuminate\Routing\Middleware\SubstituteBindings::class,
        ],
    ];

    protected $routeMiddleware = [
        'auth' => \App\Http\Middleware\Authenticate::class,
        'user' => \App\Http\Middleware\AuthUser::class,
        'auth.basic' => \Illuminate\Auth\Middleware\AuthenticateWithBasicAuth::class,
        'throttle' => \Illuminate\Routing\Middleware\ThrottleRequests::class,
        'verified' => \Illuminate\Auth\Middleware\EnsureEmailIsVerified::class,
    ];

config/sanctum.php

'guard' => ['web','auth'],

配置/auth.php

'defaults' => [
        'guard' => 'web',
        'passwords' => 'users',
    ],
'guards' => [
        'web' => [
            'driver' => 'session',
            'provider' => 'users',
        ],
        'api' => [
            'driver' => 'sanctum',
            'provider' => 'users',
        ],
    ],

'providers' => [
        'users' => [
            'driver' => 'eloquent',
            'model' => App\Models\User::class,
        ],
    ],

Http/中间件/Authenticate.php

namespace App\Http\Middleware;
use Illuminate\Auth\Middleware\Authenticate as Middleware;

class Authenticate extends Middleware
{
    protected function redirectTo($request)
    {
        if (! $request->expectsJson()) {
            return route('login');
        }
    }
}
laravel authentication middleware laravel-routing laravel-sanctum
1个回答
0
投票

auth() 属于 Laravel Web 身份验证,它使用会话存储和 Cookie 维护状态,而不是其本身。 您的应用程序使用什么身份验证方法?

如果你正在开发 laravel web,你应该只使用 laravel web 身份验证。

namespace App\Http\Controllers;
use Illuminate\Http\Request;
namespace App\Http\Controllers;
use Illuminate\Http\Request;
use Illuminate\Support\Facades\Auth;
use Carbon\Carbon;
use App\Models\User;
use Validator;
class AuthController extends Controller
{
public function register(Request $request)
  {
      $request->validate([
          'name' => 'required|string',
          'email' => 'required|string|email|unique:users',
          'password' => 'required|string|',
          'c_password'=>'required|same:password',
      ]);

      $user = new User([
          'name' => $request->name,
          'email' => $request->email,
          'password' => bcrypt($request->password)
      ]);

      if($user->save()){
          return response()->json([
              'message' => 'Successfully created user!'
          ], 201);
      }else{
          return response()->json(['error'=>'Provide proper details']);
      }
    }
  }
public function login(Request $request)
{
  $request->validate([
    'email' => 'required|string|email',
    'password' => 'required|string',
    'remember_me' => 'boolean'
  ]);

  $credentials = request(['email', 'password']);
  if(!Auth::attempt($credentials))
  {
    return response()->json([
    'message' => 'Unauthorized'
    ], 401);
  }

  $user = $request->user();
  $tokenResult = $user->createToken('Personal Access Token');
  $token = $tokenResult->plainTextToken;


  return response()->json([
    'access_token' => $token,
    'token_type' => 'Bearer',
  ]);
}

public function user(Request $request)
{
  $user = Auth::user();
  return response()->json($user);
}

}

您的用户模型应该具有 Api 特征

use Laravel\Sanctum\HasApiTokens;

class User extends Authenticatable
{
  use HasApiTokens;
}

然后守护你的路线

use App\Http\Controllers\AuthController;
Route::group([
  'prefix' => 'auth'
], function () {
  Route::post('login', [AuthController::class, 'login']);
  Route::post('register', [AuthController::class, 'register']);

  Route::group([
    'middleware' => 'auth:sanctum'
  ], function () {
    Route::get('logout', [AuthController::class, 'logout']);
    Route::get('user', [AuthController::class, 'user']);
  });
});
© www.soinside.com 2019 - 2024. All rights reserved.