duanqun9618 2019-04-23 06:29
浏览 130
已采纳

使用Gate之前未调用的策略()

I created a policy named ProjectPolicy with one function:

public function update(User $user, Project $project)
{
    return $project->owner_id == $user->id;
}

I registered my policy in my AuthServiceProvider as:

protected $policies = [
    'App\Project' => 'App\Policies\ProjectPolicy'
]

Also in the AuthServiceProvider, I have this:

public function boot(Gate $gate)
{
    $this->registerPolicies();

    $gate->before(function ($user) {
        return $user->isAdmin();
    });
}

This is supposed to not apply the policy if the user is admin. But when I do this, it completely takes away the access for non-admin users. Why?

  • 写回答

1条回答 默认 最新

  • dongzhihong3940 2019-04-23 06:29
    关注

    To fix it, the boot method should be updated as:

    public function boot(Gate $gate)
    {
        $this->registerPolicies();
    
        $gate->before(function ($user) {
            return $user->isAdmin() ? true : null;
        });
    }
    

    From the https://laravel.com/docs/5.8/authorization#intercepting-gate-checks:

    If the before callback returns a non-null result that result will be considered the result of the check.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥120 计算机网络的新校区组网设计
  • ¥20 完全没有学习过GAN,看了CSDN的一篇文章,里面有代码但是完全不知道如何操作
  • ¥15 使用ue5插件narrative时如何切换关卡也保存叙事任务记录
  • ¥20 海浪数据 南海地区海况数据,波浪数据
  • ¥20 软件测试决策法疑问求解答
  • ¥15 win11 23H2删除推荐的项目,支持注册表等
  • ¥15 matlab 用yalmip搭建模型,cplex求解,线性化处理的方法
  • ¥15 qt6.6.3 基于百度云的语音识别 不会改
  • ¥15 关于#目标检测#的问题:大概就是类似后台自动检测某下架商品的库存,在他监测到该商品上架并且可以购买的瞬间点击立即购买下单
  • ¥15 神经网络怎么把隐含层变量融合到损失函数中?