重定向在Laravel 4

时间:2016-11-01 00:12:21

标签: php apache nginx laravel-4 mamp

描述

我只想登录我的应用程序。

路由

// Home Page
Route::get('/','HomeController@showHome');

// Authentication
Route::get('/login',array('as' => 'login', 'uses' =>'AuthController@showLogin'));
Route::post('/login','AuthController@postLogin');

AuthController> postLogin()

public function postLogin()
    {

        $input = array(
            'username' => Input::get('username'),
            'password' => Input::get('password')
        );
        $rules = array(
            'username'  => 'Required',
            'password'  => 'Required'
        );
        $validator = Validator::make($input, $rules);
        if ($validator->passes())
        {

            // Try to log the user in.
            if (Auth::attempt($input))
            {
                $input['status'] = 1;

                //if account is disabled
                if (!Auth::attempt($input))
                {
                    Auth::logout();
                    return Redirect::to('/')->withErrors(array('username' => 'Account disabled'))->withInput(Input::except('password'));
                }

                return Redirect::to('/')->with('success', 'You have logged in successfully');
            }
            else
            {
                return Redirect::to('/')->withErrors(array('password' => 'Password invalid'))->withInput(Input::except('password'));
            }
        }

        return Redirect::to('/')->withErrors($validator)->withInput(Input::except('password'));
    }

// dd(Auth::user());< ---我看到Auth :: user()对象打印出来

但由于某些原因,在重定向后,我的Auth user不再经过身份验证。我的Auth::check()开始返回false

HomeController> showHome()

public function showHome()
{

    if (Auth::check())
    {
        return View::make('dashboard');
    }
    else
    {

        // This block of code kept executing 
        return View::make('home');
    }
}

问题

我还应该检查或研究什么?

这是Laravel还是Apache的原因?

如何进行调试?

我现在正在接受任何建议。

任何提示/建议/帮助都将非常感谢!

更新1

应用/ session.php文件

<?php

return array(

    /*
    |--------------------------------------------------------------------------
    | Default Session Driver
    |--------------------------------------------------------------------------
    |
    | This option controls the default session "driver" that will be used on
    | requests. By default, we will use the lightweight native driver but
    | you may specify any of the other wonderful drivers provided here.
    |
    | Supported: "file", "cookie", "database", "apc",
    |            "memcached", "redis", "array"
    |
    */

    'driver' => 'file',

    /*
    |--------------------------------------------------------------------------
    | Session Lifetime
    |--------------------------------------------------------------------------
    |
    | Here you may specify the number of minutes that you wish the session
    | to be allowed to remain idle before it expires. If you want them
    | to immediately expire on the browser closing, set that option.
    |
    */

    'lifetime' => 10080,

    'expire_on_close' => false,

    /*
    |--------------------------------------------------------------------------
    | Session File Location
    |--------------------------------------------------------------------------
    |
    | When using the native session driver, we need a location where session
    | files may be stored. A default has been set for you but a different
    | location may be specified. This is only needed for file sessions.
    |
    */

    'files' => storage_path().'/sessions',

    /*
    |--------------------------------------------------------------------------
    | Session Database Connection
    |--------------------------------------------------------------------------
    |
    | When using the "database" or "redis" session drivers, you may specify a
    | connection that should be used to manage these sessions. This should
    | correspond to a connection in your database configuration options.
    |
    */

    'connection' => null,

    /*
    |--------------------------------------------------------------------------
    | Session Database Table
    |--------------------------------------------------------------------------
    |
    | When using the "database" session driver, you may specify the table we
    | should use to manage the sessions. Of course, a sensible default is
    | provided for you; however, you are free to change this as needed.
    |
    */

    'table' => 'sessions',

    /*
    |--------------------------------------------------------------------------
    | Session Sweeping Lottery
    |--------------------------------------------------------------------------
    |
    | Some session drivers must manually sweep their storage location to get
    | rid of old sessions from storage. Here are the chances that it will
    | happen on a given request. By default, the odds are 2 out of 100.
    |
    */

    'lottery' => array(2, 100),

    /*
    |--------------------------------------------------------------------------
    | Session Cookie Name
    |--------------------------------------------------------------------------
    |
    | Here you may change the name of the cookie used to identify a session
    | instance by ID. The name specified here will get used every time a
    | new session cookie is created by the framework for every driver.
    |
    */

    'cookie' => 'laravel_session',

    /*
    |--------------------------------------------------------------------------
    | Session Cookie Path
    |--------------------------------------------------------------------------
    |
    | The session cookie path determines the path for which the cookie will
    | be regarded as available. Typically, this will be the root path of
    | your application but you are free to change this when necessary.
    |
    */

    'path' => '/',

    /*
    |--------------------------------------------------------------------------
    | Session Cookie Domain
    |--------------------------------------------------------------------------
    |
    | Here you may change the domain of the cookie used to identify a session
    | in your application. This will determine which domains the cookie is
    | available to in your application. A sensible default has been set.
    |
    */

    'domain' => null,

    /*
    |--------------------------------------------------------------------------
    | HTTPS Only Cookies
    |--------------------------------------------------------------------------
    |
    | By setting this option to true, session cookies will only be sent back
    | to the server if the browser has a HTTPS connection. This will keep
    | the cookie from being sent to you if it can not be done securely.
    |
    */

    'secure' => false,

);

更新2

我将会话驱动程序更新为数据库

现在我的Session数据库有这个数据

enter image description here

然后,一旦我重定向 - 我得到了这个

enter image description here

1 个答案:

答案 0 :(得分:2)

所以你说你可以看到用户打印出来,因为用户登录了第一个if语句(if (Auth::attempt($input)))并打印用户。

然后它来到这个代码$input['status'] = 1;,它使$ input成为一个包含3个字段的数组。一个人有密码,一个用户名和状态。

Auth :: attempt()只需要2个参数用户名和密码,因此通过传递$ input作为参数,您将实际传递用户名,密码和状态,因此登录尝试不会发生,因此您将输入{{ 1}}并将被注销。 现在来修复此删除

if (!Auth::attempt($input))

并更改

$input['status'] = 1;
//if account is disabled

if (!Auth::attempt($input))

完整的postLogin功能:

if (Auth::user()->status == 1)

如果仍有问题发生变化

在session.php上

public function postLogin() { $input = array( 'username' => Input::get('username'), 'password' => Input::get('password') ); $rules = array( 'username' => 'Required', 'password' => 'Required' ); $validator = Validator::make($input, $rules); if ($validator->passes()) { // Try to log the user in. if (Auth::attempt($input)) { //if account is disabled if (Auth::user()->status!=1) { Auth::logout(); return Redirect::to('/')->withErrors(array('username' => 'Account disabled'))->withInput(Input::except('password')); } return Redirect::to('/')->with('success', 'You have logged in successfully'); } else { return Redirect::to('/')->withErrors(array('password' => 'Password invalid'))->withInput(Input::except('password')); } } return Redirect::to('/')->withErrors($validator)->withInput(Input::except('password')); } 'driver' => 'file' 并在.env文件更改 'driver' => 'database'SESSION_DRIVER=file