duandange7480 2014-09-15 15:01
浏览 70
已采纳

Yii accessRules问题 - 对我不起作用

I was create some methods for different users with different roles. I have 2 type users with roles: user and admin. And try to manage access to some methods which users should not have access. Manage its by accessRules YiiFramework method. Example:

public function accessRules()
{
    return array(
        array('allow',
            'roles'=>array('user'),
        ),
        array('allow',  //  allow authenticated users with role 'admin' to access listed actions
            'actions'=>array('chain', 'chainSettings'),
            'roles'=>array('admin'),
        ),
        array('deny',
            'users'=>array('*'),
        ),
    );
}

And any users with role "user" have access to actions 'chain' and 'chainSettings'. May be someone know what I'm doing wrong?

  • 写回答

1条回答 默认 最新

  • dousi1906 2014-09-15 15:19
    关注
    array('allow',
        'roles'=>array('user'),
    ),
    

    Here you need to define what actions are 'users' allowed to access. You didn't define so users can access all actions

    Just do similar like you did with 'admin' role, but with different actions, like this:

    array('allow',
        'actions'=>array('someActionIWantUserToAccess', 'someOtherActionAlso')
        'roles'=>array('user'),
    ),
    
    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 poi合并多个word成一个新word,原word中横版没了.
  • ¥15 【火车头采集器】搜狐娱乐这种列表页网址,怎么采集?
  • ¥15 求MCSCANX 帮助
  • ¥15 机器学习训练相关模型
  • ¥15 Todesk 远程写代码 anaconda jupyter python3
  • ¥15 我的R语言提示去除连锁不平衡时clump_data报错,图片以下所示,卡了好几天了,苦恼不知道如何解决,有人帮我看看怎么解决吗?
  • ¥15 在获取boss直聘的聊天的时候只能获取到前40条聊天数据
  • ¥20 关于URL获取的参数,无法执行二选一查询
  • ¥15 液位控制,当液位超过高限时常开触点59闭合,直到液位低于低限时,断开
  • ¥15 marlin编译错误,如何解决?