Laravel 密码验证规则

问题描述 投票:0回答:7

如何在验证器中添加密码验证规则?

验证规则:

密码包含以下五类中至少三类的字符:

  • 英文大写字符 (A – Z)
  • 英文小写字符 (a – z)
  • 基本 10 位数字 (0 – 9)
  • 非字母数字(例如:!、$、# 或 %)
  • Unicode 字符

如何在验证器规则中添加上述规则?

我的代码在这里

// create the validation rules ------------------------
    $rules = array(
        'name'             => 'required',                        // just a normal required validation
        'email'            => 'required|email|unique:ducks',     // required and must be unique in the ducks table
        'password'         => 'required',
        'password_confirm' => 'required|same:password'           // required and has to match the password field
    );

    // do the validation ----------------------------------
    // validate against the inputs from our form
    $validator = Validator::make(Input::all(), $rules);

    // check if the validator failed -----------------------
    if ($validator->fails()) {

        // get the error messages from the validator
        $messages = $validator->messages();

        // redirect our user back to the form with the errors from the validator
        return Redirect::to('home')
            ->withErrors($validator);

    }
php laravel validation laravel-5
7个回答
152
投票

我在 Laravel 中也遇到过类似的情况,并通过以下方式解决了它。

密码包含以下五类中至少三类的字符:

  • 英文大写字符 (A – Z)
  • 英文小写字符 (a – z)
  • 基本 10 位数字 (0 – 9)
  • 非字母数字(例如:!、$、# 或 %)
  • Unicode 字符

首先,我们需要创建一个正则表达式并验证它。

您的正则表达式将如下所示:

^.*(?=.{3,})(?=.*[a-zA-Z])(?=.*[0-9])(?=.*[\d\x])(?=.*[!$#%]).*$

我已在 this 网站上对其进行了测试和验证。然而,以你自己的方式表现你自己,并相应地调整。这只是正则表达式的一个示例,您可以按照您想要的方式进行操作。

所以你最终的 Laravel 正则表达式规则 应该是这样的:

'password' => [
    'required',
    'min:6',
    'regex:/^.*(?=.{3,})(?=.*[a-zA-Z])(?=.*[0-9])(?=.*[\d\x])(?=.*[!$#%]).*$/',
    'confirmed'
]

注:

  1. 我已经在正则表达式站点和 Laravel 5 测试环境上对其进行了测试和验证,并且它有效。
  2. 我使用了 min:6,这是可选的,但拥有反映不同方面的安全策略始终是一个好习惯,其中之一是最小密码长度。
  3. 我建议您使用确认密码,以确保用户输入正确的密码。
  4. 在 6 个字符内,我们的正则表达式应至少包含 3 个 a-z 或 A-Z 以及一个数字和特殊字符。
  5. 在投入生产之前,始终在测试环境中测试您的代码。
  6. 我在这个答案中所做的只是正则表达式密码的一个示例

关于 Laravel 中正则表达式规则的自定义验证消息,可以查看以下几个链接:


94
投票

这与 OP 要求不太相符,但希望它有所帮助。使用 Laravel,您可以以易于维护的格式定义规则,如下所示:

    $inputs = [
        'email'    => 'foo',
        'password' => 'bar',
    ];

    $rules = [
        'email'    => 'required|email',
        'password' => [
            'required',
            'string',
            'min:10',             // must be at least 10 characters in length
            'regex:/[a-z]/',      // must contain at least one lowercase letter
            'regex:/[A-Z]/',      // must contain at least one uppercase letter
            'regex:/[0-9]/',      // must contain at least one digit
            'regex:/[@$!%*#?&]/', // must contain a special character
        ],
    ];

    $validation = \Validator::make( $inputs, $rules );

    if ( $validation->fails() ) {
        print_r( $validation->errors()->all() );
    }

会输出:

    [
        'The email must be a valid email address.',
        'The password must be at least 10 characters.',
        'The password format is invalid.',
    ]

(默认情况下,正则表达式规则共享一条错误消息,即四个失败的正则表达式规则会导致一条错误消息)


59
投票

Laravel 版本 8 起,您可以使用内置密码验证:

// Require at least 8 characters...
Password::min(8)

// Require at least one letter...
Password::min(8)->letters()

// Require at least one uppercase and one lowercase letter...
Password::min(8)->mixedCase()

// Require at least one number...
Password::min(8)->numbers()

// Require at least one symbol...
Password::min(8)->symbols()

或者你可以把它们全部链接起来


use Illuminate\Validation\Rules\Password;

$rules = [
    'password' => [
        'required',
        'string',
        Password::min(8)
            ->mixedCase()
            ->numbers()
            ->symbols()
            ->uncompromised(),
        'confirmed'
    ],
]

25
投票

自定义 Laravel 验证规则将允许开发人员为每个用例提供自定义消息,以获得更好的用户体验体验。

php artisan make:rule IsValidPassword

namespace App\Rules;

use Illuminate\Support\Str;
use Illuminate\Contracts\Validation\Rule;

class isValidPassword implements Rule
{
    /**
     * Determine if the Length Validation Rule passes.
     *
     * @var boolean
     */
    public $lengthPasses = true;

    /**
     * Determine if the Uppercase Validation Rule passes.
     *
     * @var boolean
     */
    public $uppercasePasses = true;

    /**
     * Determine if the Numeric Validation Rule passes.
     *
     * @var boolean
     */
    public $numericPasses = true;

    /**
     * Determine if the Special Character Validation Rule passes.
     *
     * @var boolean
     */
    public $specialCharacterPasses = true;

    /**
     * Determine if the validation rule passes.
     *
     * @param  string  $attribute
     * @param  mixed  $value
     * @return bool
     */
    public function passes($attribute, $value)
    {
        $this->lengthPasses = (Str::length($value) >= 10);
        $this->uppercasePasses = (Str::lower($value) !== $value);
        $this->numericPasses = ((bool) preg_match('/[0-9]/', $value));
        $this->specialCharacterPasses = ((bool) preg_match('/[^A-Za-z0-9]/', $value));

        return ($this->lengthPasses && $this->uppercasePasses && $this->numericPasses && $this->specialCharacterPasses);
    }

    /**
     * Get the validation error message.
     *
     * @return string
     */
    public function message()
    {
        switch (true) {
            case ! $this->uppercasePasses
                && $this->numericPasses
                && $this->specialCharacterPasses:
                return 'The :attribute must be at least 10 characters and contain at least one uppercase character.';

            case ! $this->numericPasses
                && $this->uppercasePasses
                && $this->specialCharacterPasses:
                return 'The :attribute must be at least 10 characters and contain at least one number.';

            case ! $this->specialCharacterPasses
                && $this->uppercasePasses
                && $this->numericPasses:
                return 'The :attribute must be at least 10 characters and contain at least one special character.';

            case ! $this->uppercasePasses
                && ! $this->numericPasses
                && $this->specialCharacterPasses:
                return 'The :attribute must be at least 10 characters and contain at least one uppercase character and one number.';

            case ! $this->uppercasePasses
                && ! $this->specialCharacterPasses
                && $this->numericPasses:
                return 'The :attribute must be at least 10 characters and contain at least one uppercase character and one special character.';

            case ! $this->uppercasePasses
                && ! $this->numericPasses
                && ! $this->specialCharacterPasses:
                return 'The :attribute must be at least 10 characters and contain at least one uppercase character, one number, and one special character.';

            default:
                return 'The :attribute must be at least 10 characters.';
        }
    }
}

然后根据您的请求验证:

$request->validate([
    'email'    => 'required|string|email:filter',
    'password' => [
        'required',
        'confirmed',
        'string',
        new isValidPassword(),
    ],
]);

5
投票

对于正则表达式来说听起来不错。

Laravel 验证规则支持正则表达式。 4.X 和 5.X 版本都支持它:

这也可能有帮助:

http://www.regular-expressions.info/unicode.html


4
投票

使用 laravel 8 很容易做到这一点:

 $rules = array(
    'name'             => ['required'],                        
    'email'            => ['required','email','unique:ducks'],     
    'password'         => ['required', 'confirmed',Password::min(8)
                                                   ->letters()
                                                   ->mixedCase()
                                                   ->numbers()
                                                   ->symbols()
                                                   ->uncompromised()
                           ],
);

请参阅doc,(在您的情况下,您可以忽略不妥协的规则)。


2
投票
laravel 9 password validation




 $request->validate([
    'name' => 'required', 'string', 'max:255',
    'email' => 'required', 'string', 'email', 'max:255', 'unique:users',
    'password' => 'required|string|min:6|confirmed|regex:/^(?=.*?[A-Z])(?=.*?[a-z])(?=.*?[0-9])(?=.*?[#?!@$%^&*-]).{6,}$/',
 ]);
最新问题
© www.soinside.com 2019 - 2024. All rights reserved.