php - Laravel 策略(App\Policy 函数的参数太少)
问题描述
我正在尝试为用户设置我的策略。但是我不断收到以下错误:
函数 App\Policies\UserPolicy::update() 的参数太少,在第 481 行的 /vendor/laravel/framework/src/Illuminate/Auth/Access/Gate.php 中传递了 1 个,并且预期正好有 2 个(查看:/resources/意见/用户/index.blade.php)
错误异常 /app/Policies/UserPolicy.php 20
在 UserPolicy@update 函数上
当我以 super_admin 身份登录时,它工作正常,但每当我以不同角色的用户身份登录时,它都会引发此错误。
以下是我当前的实现:
用户策略
class UserPolicy
{
use HandlesAuthorization;
public function update(User $user, User $userEdit) {
if ($user->id == $userEdit->id) {
return true;
}
return $user->can('update_user');
}
public function before($user, $ability) {
if ($user->hasRole('super_admin')) {
return true;
}
}
}
用户控制器
class UsersController extends Controller {
public function __construct() {
$this->middleware('auth');
}
public function edit(User $user) {
$this->authorize('update', $user);
return view('users.edit', [
'user' => User::with('roles', 'level')->find($user->id),
'surveys' => \App\Survey::all(),
]);
}
public function update(UserRequest $request, User $user) {
$this->authorize('update', $user);
$request->save();
session()->flash('success', 'User successfully updated');
// means user is editing his own profile
if (auth()->id() == $user->id) {
return redirect('/dashboard');
} else {
return redirect('/users');
}
}
}
用户请求
class UserRequest extends FormRequest {
public function authorize() {
return true;
}
public function rules() {
switch ($this->method()) {
case 'POST':
return [
'name' => 'required|string',
'email' => 'required|string|email|max:255|unique:users',
'role' => 'required|exists:roles,id',
'level' => 'required|string',
];
break;
case 'PATCH':
return [
'name' => 'required|string|max:255',
'email' => 'required|string|email|max:255|unique:users,email,'.$this->user->id,
'role' => 'sometimes|exists:roles,id',
'level' => 'sometimes|string',
'password' => 'nullable|sometimes|string|min:6|confirmed'
];
break;
default:
break;
}
}
public function save() {
switch (request()->method()) {
case 'POST':
$this->createUser();
break;
case 'PATCH':
$this->updateUser();
break;
default:
break;
}
}
protected function createUser() {
// random generate password
$password = str_random(8);
$user = User::create([
'name' => request('name'),
'email' => request('email'),
'level_id' => request('level'),
'password' => Hash::make($password),
]);
$user->assignRoleById(request('role'));
Mail::to($user)->send(new WelcomeMail($user, $password));
}
protected function updateUser() {
$user = User::findOrFail($this->user->id);
$user->name = request('name');
$user->email = request('email');
if (request('password') != '') {
$user->password = Hash::make(request('password'));
}
if (request('level') != '') {
$user->level_id = request('level');
}
$user->update();
if (request('role') != '') {
$user->roles()->sync([request('role')]);
}
}
}
身份验证服务提供者
class AuthServiceProvider extends ServiceProvider
{
/**
* The policy mappings for the application.
*
* @var array
*/
protected $policies = [
\App\User::class => \App\Policies\UserPolicy::class,
];
/**
* Register any authentication / authorization services.
*
* @return void
*/
public function boot()
{
$this->registerPolicies();
foreach ($this->getPermissions() as $permission) {
Gate::define($permission->name, function($user) use ($permission) {
return $user->hasRole($permission->roles);
});
}
}
protected function getPermissions() {
return Permission::with('roles')->get();
}
}
解决方案
在我正在调用的视图文件中
@can('update', App\User::class)
<!-- html code --!>
@endcan
代替
@can('update', $user)
<!-- html code --!>
@endcan
我没有将用户实例传递给导致错误的函数。
推荐阅读
- .net - VS2019 Professional 的源代码管理设置中缺少签入策略选项卡
- c# - C# Asp net core MVC,从模型列表中提取数据“列表
"在一个视图中 - excel - 使 SheetSelectionChange 在不同的工作簿上运行
- javascript - 如何在javascript中用分号和双引号声明带有csv内容的变量
- firebase-test-lab - 录制的机器人测试无法执行任何操作
- reactjs - Redux 在递归 React.Component 中连接
- flutter - 从 Cloud FireStore 获取字符串类型的数据
- python-3.x - sqlite3.OperationalError:无法打开数据库文件 - 一段时间后发生错误
- sql-server - SQL Server 排序规则——最接近 utf-8?
- php - 我应该使用哪个 SQL 请求?