User.php 1007 B

123456789101112131415161718192021222324252627282930313233
  1. <?php
  2. namespace App\Http\Middleware;
  3. use Closure;
  4. class User
  5. {
  6. /**
  7. * Handle an incoming request.
  8. *
  9. * @param \Illuminate\Http\Request $request
  10. * @param \Closure $next
  11. * @return mixed
  12. */
  13. public function handle($request, Closure $next)
  14. {
  15. if ($request->input('auth_data')) {
  16. $authData = explode(':', base64_decode($request->input('auth_data')));
  17. if (!isset($authData[1]) || !isset($authData[0])) abort(403, '鉴权失败,请重新登入');
  18. $user = \App\Models\User::where('password', $authData[1])
  19. ->where('email', $authData[0])
  20. ->first();
  21. if (!$user) abort(403, '鉴权失败,请重新登入');
  22. $request->session()->put('email', $user->email);
  23. $request->session()->put('id', $user->id);
  24. }
  25. if (!$request->session()->get('id')) {
  26. abort(403, '未登录或登陆已过期');
  27. }
  28. return $next($request);
  29. }
  30. }