使用或不使用密码更新用户 - CakePHP

时间:2015-11-10 11:16:58

标签: php validation cakephp passwords cakephp-2.7

我试图在cakePHP v.2.7中找到一个好的,干净的方式来处理管理面板“编辑用户”。

要明确:我希望能够在覆盖或不覆盖密码的情况下编辑我的用户,但cakePHP验证工具不允许我按照自己的意愿行事......

我已经看过CakePHP: Edit Users without changing passwordUpdating user email and password with CakePHP,但它看起来很脏:

  • 第一个不适用于更新规则
  • 第二个显示哈希(只是没有... u_u“)

没有别的办法吗? (尽可能少的行)

1 个答案:

答案 0 :(得分:1)

TL; DR:

视图

// add in your view `app/View/Users/edit.ctp`
// a 'fake' field you'll only use on the controller
echo $this->Form->input('new_password');

控制器

// add in your controller `app/Model/User.php@edit()`
// if we have a new password, create key `password` in data
if(!empty($new_password = $this->request->data['User']['new_password']))
  $this->request->data['User']['password'] = $new_password;
else // else, we remove the rules on password
  $this->User->validator()->remove('password');

好的,我终于得到了我想要的东西,这是我的代码:

app/View/Users/edit.ctp上向表单添加字段(自定义字段,不要将其添加到您的数据库)

<?php
// app/View/Users/edit.ctp
echo $this->Form->create('User');
// your other fields
// a 'fake' field you'll only use on the controller
echo $this->Form->input('new_password');

不要改变你的app/Model/User.php;这是我的:

<?php
// app/Model/User.php
App::uses('AuthComponent', 'Controller/Component');

class User extends AppModel {
  public $validate = array(
    // [...] other rules
    'password' => array(
      'passwordLength'=>array(
        'rule' => array('minLength', 8),
        'message' => 'Too short...',
        ),
      'passwordNotBlank'=>array(
        'rule' => 'notBlank',
        'required' => true,
        'allowEmpty' => false,
        'message' => 'A password is required',
        ),
    ),
  );

  public function beforeSave($options = array()) {
    if (!empty($pwd = $this->data[$this->alias]['password']))
      $this->data[$this->alias]['password'] = AuthComponent::password($pwd);

    return true;
  }
}

在您的app/Controller/UsersController.php上使用此内容:

<?php
public function edit($id = null) {
  $this->User->id = $id;

  if (!$this->User->exists())
    throw new NotFoundException(__('Invalid user'));

  if ($this->request->is('post') || $this->request->is('put')) {
      // IMPORTANT >>>>>>>>>>>
      // if we have a new password, create key `password` in data
    if(!empty($new_password = $this->request->data['User']['new_password']))
      $this->request->data['User']['password'] = $new_password;
    else // else, we remove the rules on password
      $this->User->validator()->remove('password');
      // <<<<<<<<<<<<<<<<<<<<<

      // then we try to save
    if ($this->User->save($this->request->data)) {
      $this->Flash->success(__('The user has been updated'));
      $this->redirect(array('action' => 'index'));
    }
    else
      $this->Flash->warning(__('The user could not be updated.'));
  }
  else {
    $this->request->data = $this->User->read(null, $id);
    unset($this->request->data['User']['password']);
  }
}

通过4条重要的行,您现在可以根据需要设置新密码或禁用密码验证。

我用这个作为参考 http://book.cakephp.org/2.0/en/models/data-validation.html#removing-rules-from-the-set