只有管​​理员角色才能访问/ admin。但是它不起作用

时间:2020-05-25 12:09:36

标签: laravel middleware laravel-6

User.php:

public function IsAdmin(){
    return $this->role=='admin';
}

Checkifadmin.php(中间件):

public function handle($request, Closure $next)
{
  if (auth()->user()->role=='admin') {
    return redirect(route('home'));
  }
  return $next($request);
}

Kernel.php:

在受保护的路线中

'checkifadmin' =>\App\Http\Middleware\Checkifadmin::class,

create_users_table.php

Schema::create('users', function (Blueprint $table) {
            $table->id();
            $table->string('name');
            $table->string('email')->unique();
            $table->timestamp('email_verified_at')->nullable();
            $table->string('password');
            $table->string('role')->default('customer');
            $table->rememberToken();
            $table->timestamps();
});

web.php:

Route::get('admin',function(){
return view('layouts.admin');
})->middleware(['checkifadmin']);
Route::get('/', function () {
    return view('index');
})->name('home');
Route::get('/shop/product', function () {
    return view('shop.product');
})->name('shop.product');
Route::get('/shop/shoppingcard', function () {
    return view('shop.shoppingcard');
})->name('shop.shoppingcard');
Route::get('/shop/checkout', function () {
    return view('shop.checkout');
})->name('shop.checkout');

Auth::routes();

我的用户有2个角色。客户和管理员,只有管理员应该有权访问/ admin,但是由于某些原因,它似乎不起作用。我已经复制并粘贴了有关此问题的所有可能代码,在此先感谢您

1 个答案:

答案 0 :(得分:1)

如果只允许使用admin

Checkifadmin.php(中间件):

public function handle($request, Closure $next)
{
    if (auth()->user()->role !='admin') {
        return redirect(route('home'));
    }

    return $next($request);

}

然后您可以保持原路

Route::get('admin',function() {
    return view('layouts.admin');
})->middleware(['checkifadmin']);