Laravel 5.2 - 使用Auth :: check()在MIddleware中不起作用

问题描述 投票:4回答:4

我正在尝试为我的Laravel 5.2应用程序中的不同类型的用户制作中间件。所以,我正在做的是为不同的用户制作不同的中间件。

据我所知,如果没有来自here的中间件网络,Auth :: check()将无法运行。

所以,我所做的是 -

routes.php文件

Route::group(['middleware' => ['web','admin']], function ()
{
    //suspend, activate, delete
    Route::get('users', [
        'uses'          => 'AdminController@users',
        'as'            => 'users'
    ]);

    //Edit,activate,suspend, delete
    Route::get('articles', [
        'uses'          => 'AdminController@articles',
        'as'            => 'articles'
    ]);
});

AdminMiddleware.php

<?php

namespace App\Http\Middleware;

use Closure;
use Auth;

class AdminMiddleware
{
    /**
     * Handle an incoming request.
     *
     * @param  \Illuminate\Http\Request  $request
     * @param  \Closure  $next
     * @return mixed
     */
    public function handle($request, Closure $next)
    {
        if (Auth::check())
        {
            return "asd";
            //return Auth::user();
            //return redirect('home');
        }
        else
        {
            return redirect('login');
        }

        //now return the valid request
        return $next($request);
    }
}

Kernel.php

protected $routeMiddleware = [
    'auth'          => \App\Http\Middleware\Authenticate::class,
    'admin'         => \App\Http\Middleware\AdminMiddleware::class,
    'user'          => \App\Http\Middleware\UserMiddleware::class,
    'auth.basic'    => \Illuminate\Auth\Middleware\AuthenticateWithBasicAuth::class,
    'guest'         => \App\Http\Middleware\RedirectIfAuthenticated::class,
    'throttle'      => \Illuminate\Routing\Middleware\ThrottleRequests::class,
];

AdminController.php

<?php

namespace App\Http\Controllers;

use Illuminate\Http\Request;

use App\Http\Requests;
use App\Http\Controllers\Controller;

class AdminController extends Controller
{
    public function users()
    {
        return view('admin.users');
    }

    public function articles()
    {
        return view('admin.articles');
    }
}

但我得到这个错误 -

enter image description here

当“返回Auth :: user();”时称为中间件,“返回Auth :: user();”正在其他地方工作(视图和控制器),但不像老版本的Laravel一样工作。

有人可以帮忙吗?

php laravel middleware laravel-5.2
4个回答
4
投票

您可以做这样的事情,根据需要进行调整

public function handle($request, Closure $next)
{
    $user = $request->user();

    if (! $user || $user->user_type != 'admin') {
        return redirect('login');
    }

    return $next($request);
}

您收到的错误来自于您没有从中间件返回Response对象这一事实。 VerifyCsrfToken中间件正在尝试将cookie添加到通过管道传递请求所获得的响应中。在这种情况下,它没有得到一个Response对象,而是一个字符串或User,因为在您的中间件中返回了一个字符串或User


0
投票

您还在Web组中添加了路由,因此请确保您的内核文件应具有以下中间件组。

/**
 * The application's route middleware groups.
 *
 * @var array
 */
protected $middlewareGroups = [
    'web' => [
        \App\Http\Middleware\EncryptCookies::class,
        \Illuminate\Cookie\Middleware\AddQueuedCookiesToResponse::class,
        \Illuminate\Session\Middleware\StartSession::class,
        \Illuminate\View\Middleware\ShareErrorsFromSession::class,
        \App\Http\Middleware\VerifyCsrfToken::class,
    ],

    'api' => [
        'throttle:60,1',
    ],
];

会话导致的错误。确保您的内核文件包含会话中间件。


0
投票

嗨@Cowboy和@lagbox,谢谢你试图帮助,不幸的是他们没有工作,但我已经解决了。

我通过运行解决了它 -

php artisan cache:清楚

composer dump-autoload

php artisan clear-compiled

php artisan优化

然后是中间件 -

<?php

namespace App\Http\Middleware;

use Closure;
use Auth;

class AdminMiddleware
{
    /**
     * Handle an incoming request.
     *
     * @param  \Illuminate\Http\Request  $request
     * @param  \Closure  $next
     * @return mixed
     */
    public function handle($request, Closure $next)
    {
        if (Auth::check())
        {
            if(strcmp( "admin" , Auth::user()->user_type ) != 0 )
                return redirect('home');
            else
                return $next($request);
        }
        else
        {
            return redirect('login');
        }

        //now return the valid request
        //return $next($request);
    }
}

和路线 -

Route::group(['middleware' => ['web','admin']], function ()
{
    //suspend, activate, delete
    Route::get('users', [
        'uses'          => 'AdminController@users',
        'as'            => 'users'
    ]);

    //Edit,activate,suspend, delete
    Route::get('articles', [
        'uses'          => 'AdminController@articles',
        'as'            => 'articles'
    ]);
});

0
投票

我也有同样的问题。就我而言,我在多重身份验证中面临这种情况。如果您使用多个身份验证甚至单个身份验证与表中的不同主键名称而不是id,这可能会导致。

在Laravel中,users表的默认主键是id。如果您已将其更改为user_id或其他内容,您必须在模型中提及。如果没有,Laravel无法为用户创建会话,Auth::attempt()将正常工作,但Auth::check()不会。所以,确保你已经在模型类中提到过。

class User extends Authenticatable {
   $primaryKey = 'user_id';
© www.soinside.com 2019 - 2024. All rights reserved.