1

我正在寻找解决我的问题的方法。我正在尝试使用 CakePHP 2 创建一个网络服务。我创建了一个 CRUD 并使用 AuthComponent 进行配置以登录。AuthComponent 被配置为使用 Form。当我尝试执行控制器的某些功能以返回 JSON 不起作用并向我显示页面 index.php 的代码时,我想如果我确实配置了 Basic Auth 工作,但是当我尝试在$components其打开的访问中添加 Basic Auth 时,所有操作都可以可以在浏览器上访问。

我如何配置 AuthComponent 的 Basic 和 Form 以协同工作?

我正在尝试这个,但不起作用,因为所有操作都可以访问

class AppController extends Controller {    

public $components = array("RequestHandler", "Auth", "Session");


    public function beforeFilter(){       
        $this->Auth->authenticate = array(
            'Basic' => array('userModel' => 'User',
                                'fields'=> array(
                                    'username' => 'email',
                                    'password' => 'senha'
                                ),
                                'scope' => array(
                                    'User.status' => 1
                                )
                            ),            
            'Form' => array('userModel' => 'User',
                                'fields'=> array(
                                    'username' => 'email',
                                    'password' => 'senha'
                                ),
                                'scope' => array(
                                    'User.status' => 1
                                )
                            ),                 
        );

        $this->Auth->loginAction = array(
            'controller' => 'users', 
            'action' => 'login'            
        );

        $this->Auth->loginRedirect = array(
            'controller' => 'matriculas', 
            'action' => 'index'            
        );

        $this->Auth->logoutRedirect = array(
            'controller' => 'users', 
            'action' => 'login'            
        );

        $this->Auth->authorize = "Controller";
        $this->Auth->authError = "Efetue login de acesso";
        $this->Auth->allow("login");
    }

    public function isAuthorized($user) {
        if (isset($user['role']) && $user['role'] === 'admin') {
            return true; // Admin pode acessar todas actions
        }
        return false; // Os outros usuários não podem
    }


}

用户控制器

class UsersController extends AppController {

    public $components = array('Paginator');     


    public function index() {
        $this->User->recursive = 0;
        $this->set('users', $this->Paginator->paginate());
    }

    public function add() {
        if ($this->request->is('post')) {
            $this->User->create();
            if ($this->User->save($this->request->data)) {
                $this->Session->setFlash(__('The user has been saved.'));
                return $this->redirect(array('action' => 'index'));
            } else {
                $this->Session->setFlash(__('The user could not be saved. Please, try again.'));
            }
        }
    }

    public function edit($id = null) {
        if (!$this->User->exists($id)) {
            throw new NotFoundException(__('Invalid user'));
        }
        if ($this->request->is(array('post', 'put'))) {
            if ($this->User->save($this->request->data)) {
                $this->Session->setFlash(__('The user has been saved.'));
                return $this->redirect(array('action' => 'index'));
            } else {
                $this->Session->setFlash(__('The user could not be saved. Please, try again.'));
            }
        } else {
            $options = array('conditions' => array('User.' . $this->User->primaryKey => $id));
            $this->request->data = $this->User->find('first', $options);
        }
    }


        public function login(){
            $this->layout = "layout";            
            if($this->request->is("post")){                  
                if ($this->Auth->login()) {                       
                        $this->redirect($this->Auth->redirect());                                
                }else{
                    $this->Session->setFlash(__('Usuário ou senha inválido'));
                }                 
            }              
        }

        public function logout(){
            $this->redirect($this->Auth->logout());            
        }

        /********** WEB SERVICES FUNCTIONS *********/

        /** return all users **/
        public function findAll(){
            $this->set("users", $this->User->find('all'));
            $this->set(array(
               "_serialize" => 'users',
            ));          
        }

        /** add new user from app **/
        public function addUserFromApp(){
            $this->layout=null;
            $data = $this->request->input("json_decode", true);
            echo $data;
        }
}
4

0 回答 0