Move permission match code from class `User` to `Role`
This commit is contained in:
parent
57b4a31bc3
commit
c0541d70e9
|
@ -106,4 +106,41 @@ class Role
|
||||||
$this->restrictions = $restrictions;
|
$this->restrictions = $restrictions;
|
||||||
return $this;
|
return $this;
|
||||||
}
|
}
|
||||||
|
|
||||||
|
/**
|
||||||
|
* Whether this role grants the given permission
|
||||||
|
*
|
||||||
|
* @param string $permission
|
||||||
|
*
|
||||||
|
* @return bool
|
||||||
|
*/
|
||||||
|
public function grants($permission)
|
||||||
|
{
|
||||||
|
$requiredWildcard = strpos($permission, '*');
|
||||||
|
foreach ($this->permissions as $grantedPermission) {
|
||||||
|
if ($grantedPermission === '*' || $grantedPermission === $permission) {
|
||||||
|
return true;
|
||||||
|
}
|
||||||
|
|
||||||
|
if ($requiredWildcard !== false) {
|
||||||
|
if (($grantedWildcard = strpos($grantedPermission, '*')) !== false) {
|
||||||
|
$wildcard = min($requiredWildcard, $grantedWildcard);
|
||||||
|
} else {
|
||||||
|
$wildcard = $requiredWildcard;
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
$wildcard = strpos($grantedPermission, '*');
|
||||||
|
}
|
||||||
|
|
||||||
|
if ($wildcard !== false && $wildcard > 0) {
|
||||||
|
if (substr($permission, 0, $wildcard) === substr($grantedPermission, 0, $wildcard)) {
|
||||||
|
return true;
|
||||||
|
}
|
||||||
|
} elseif ($permission === $grantedPermission) {
|
||||||
|
return true;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
return false;
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
|
@ -563,27 +563,8 @@ class User
|
||||||
*/
|
*/
|
||||||
public function can($requiredPermission)
|
public function can($requiredPermission)
|
||||||
{
|
{
|
||||||
if (isset($this->permissions['*']) || isset($this->permissions[$requiredPermission])) {
|
foreach ($this->getRoles() as $role) {
|
||||||
return true;
|
if ($role->grants($requiredPermission)) {
|
||||||
}
|
|
||||||
|
|
||||||
$requiredWildcard = strpos($requiredPermission, '*');
|
|
||||||
foreach ($this->permissions as $grantedPermission) {
|
|
||||||
if ($requiredWildcard !== false) {
|
|
||||||
if (($grantedWildcard = strpos($grantedPermission, '*')) !== false) {
|
|
||||||
$wildcard = min($requiredWildcard, $grantedWildcard);
|
|
||||||
} else {
|
|
||||||
$wildcard = $requiredWildcard;
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
$wildcard = strpos($grantedPermission, '*');
|
|
||||||
}
|
|
||||||
|
|
||||||
if ($wildcard !== false && $wildcard > 0) {
|
|
||||||
if (substr($requiredPermission, 0, $wildcard) === substr($grantedPermission, 0, $wildcard)) {
|
|
||||||
return true;
|
|
||||||
}
|
|
||||||
} elseif ($requiredPermission === $grantedPermission) {
|
|
||||||
return true;
|
return true;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in New Issue