Permission.php 2.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108
  1. <?php
  2. namespace Dcat\Admin\Auth;
  3. use Dcat\Admin\Admin;
  4. use Dcat\Admin\Layout\Content;
  5. use Dcat\Admin\Middleware\Pjax;
  6. use Dcat\Admin\Models\Role;
  7. use Illuminate\Contracts\Support\Arrayable;
  8. class Permission
  9. {
  10. /**
  11. * Check permission.
  12. *
  13. * @param string|array|Arrayable $permission
  14. *
  15. * @return true|void
  16. */
  17. public static function check($permission)
  18. {
  19. if (static::isAdministrator()) {
  20. return true;
  21. }
  22. if (is_array($permission) || $permission instanceof Arrayable) {
  23. collect($permission)->each(function ($permission) {
  24. static::check($permission);
  25. });
  26. return true;
  27. }
  28. if (Admin::user()->cannot($permission)) {
  29. static::error();
  30. }
  31. }
  32. /**
  33. * Roles allowed to access.
  34. *
  35. * @param string|array|Arrayable $roles
  36. *
  37. * @return true|void
  38. */
  39. public static function allow($roles)
  40. {
  41. if (static::isAdministrator()) {
  42. return true;
  43. }
  44. if (! Admin::user()->inRoles($roles)) {
  45. static::error();
  46. }
  47. }
  48. /**
  49. * Don't check permission.
  50. *
  51. * @return bool
  52. */
  53. public static function free()
  54. {
  55. return true;
  56. }
  57. /**
  58. * Roles denied to access.
  59. *
  60. * @param string|array|Arrayable $roles
  61. *
  62. * @return true|void
  63. */
  64. public static function deny($roles)
  65. {
  66. if (static::isAdministrator()) {
  67. return true;
  68. }
  69. if (Admin::user()->inRoles($roles)) {
  70. static::error();
  71. }
  72. }
  73. /**
  74. * Send error response page.
  75. */
  76. public static function error()
  77. {
  78. if (! request()->pjax() && request()->ajax()) {
  79. abort(403, trans('admin.deny'));
  80. }
  81. Pjax::respond(
  82. response((new Content())->withError(trans('admin.deny')))
  83. );
  84. }
  85. /**
  86. * If current user is administrator.
  87. *
  88. * @return mixed
  89. */
  90. public static function isAdministrator()
  91. {
  92. return Admin::user()->isRole(Role::ADMINISTRATOR);
  93. }
  94. }