2
我正在做我的第一个应用程序,其中包含多个用户的权限和角色。 我的理解是使用BitWise格式的最好方法。这是真的,还是有更好的选择?PHP BitWise权限和角色或替代
这是我目前的测试代码,我得到一个相当bizzare的效果。 如果有人可以说出为什么会发生这种情况,那将不胜感激。
例:
$user = array('permissions' => 1); // This *should* return ONLY READ, (except it shows all)
$user = array('permissions' => 8); // Shows correct, FULL resources.
你可以用这个来测试代码... http://writecodeonline.com/php/
define("PERM_R", 1); # Read
define("PERM_W", 2); # Write
define("PERM_E", 4); # Edit
define("PERM_D", 8); # Delete
define("ROLE_GUEST", PERM_R);
define("ROLE_EDITOR", ROLE_GUEST | PERM_W | PERM_E);
define("ROLE_FULL", ROLE_EDITOR | PERM_D);
function hasAccess($user, $action) {
if(is_array($user)) {
return $user['permissions'] & $action;
} else if (is_int($user)) {
return $user & $action;
}
}
$user = array('permissions' => 1);
echo "USER PERMISSIONS: ". $user['permissions'] ."<br /><br />";
# TEST PERMS
if(hasAccess($user, PERM_R)) {
echo PERM_R;
echo " - Yes you can see READ <br />";
}
if(hasAccess($user, PERM_R | PERM_W)) {
echo PERM_R | PERM_W;
echo " - Yes you can see READ & WRITE<br />";
}
if(hasAccess($user, PERM_R | PERM_W | PERM_E)) {
echo PERM_R | PERM_W | PERM_E;
echo " - Yes you can see READ & WRITE & EDIT<br />";
}
if(hasAccess($user, PERM_R | PERM_W | PERM_E | PERM_D)) {
echo PERM_R | PERM_W | PERM_E | PERM_D;
echo " - Yes you can see READ & WRITE & EDIT & DELETE<br />";
}
# TEST ROLES
if(hasAccess($user, ROLE_GUEST)) {
echo ROLE_GUEST;
echo " - Yes, You Are A GUEST <br />";
}
if(hasAccess($user, ROLE_EDITOR)) {
echo ROLE_EDITOR;
echo " - Yes, You Are A EDITOR <br />";
}
if(hasAccess($user, ROLE_FULL)) {
echo ROLE_FULL;
echo " - Yes, You Are A FULL <br />";
}
我发现蛋糕的ACL是管理权限的最简单方法。它在不牺牲简单性的情况下为您提供良好的粒度。它的要点:http://book.cakephp.org/2.0/en/core-libraries/components/access-control-lists.html。起初看起来很复杂,但一旦你了解它就会变得非常有意义。 – NullUserException
会评论'编辑'=读/写 和缺少'创建',但这是个人的注意事项。 –
一个详细的博客是在这里:http://goo.gl/ATnj6j –