th0masso/ssacc-bundle
Composer 安装命令:
composer require th0masso/ssacc-bundle
包简介
Symfony Security Access Control Checker
README 文档
README
SSACC is a Symfony bundle that list all your project's routes that do not have permission checks.
The bundle will check if certain functions are called on the first line of the controller's action.
You can learn more about how to ensure that all the routes on my Symfony app have access control with this article.
Table of contents
Installation
composer require --dev ssacc/ssacc-bundle
Configuration
You should create a config file like this one:
ssacc-config: project_path: "./" controllers_path: "src/" exclude_all_routes_that_start_with: - "web_profiler" - "twig" exclude_full_routes: - "error_controller::preview" security_requirement: - "$this->denyAccessUnlessGranted" - "!$this->isGranted"
Those are the default values, you can change them as you wish.
You can use ssacc-config.dist.yaml as a template.
The default config path is ./ssacc-config.yaml, but you can change it in the next step.
Description of the options
project_path: The path to the root of your project.controllers_path: The path to the controllers directory.exclude_all_routes_that_start_with: An array of strings. All routes that start with any of those strings will be excluded.exclude_full_routes: An array of strings. All routes that match any of those strings will be excluded.security_requirement: An array of strings. All routes functions that do not have any of those strings on the first line of the controller's action will be listed.
Usage
The only argument is the relative path to the config file you created in the previous step.
It is optional and the default value is ssacc-config.yaml (root of your project).
php bin/console security:check-access-control myConfigDir/my-config-file.yaml
Example
TODO: add the example code to this repo.
th0masso/ssacc-bundle 适用场景与选型建议
th0masso/ssacc-bundle 是一款 基于 PHP 开发的 Composer 扩展包,目前已累计 35 次下载、GitHub Stars 达 13, 最近一次更新时间为 2024 年 01 月 15 日, 在 PHP 生态内属于活跃度较高的组件。
它主要适用于以下技术方向: 「symfony」 「security」 「acl」 「api-platform」 「checks」 等业务场景。在实际项目中,围绕这些方向常见需要落地的问题包括:接口对接、性能调优、并发安全、与既有框架(Laravel / ThinkPHP / Yii / Webman 等)的兼容适配,以及生产环境的日志埋点与稳定性保障。
我们在过去多个企业项目中使用过 th0masso/ssacc-bundle 或与其功能相近的方案,如果你在选型或落地过程中遇到问题,例如 版本兼容、二次改造、私有化封装、与内部系统对接、生产 BUG 排查,欢迎联系我们协助评估。
基于 th0masso/ssacc-bundle 在你已有业务上做功能扩展、字段裁剪、UI 适配、与内部账号 / 权限 / 日志系统的深度对接。
线上偶发问题、内存泄漏、慢查询、并发异常等排查修复;针对高流量场景做缓存、队列、索引层面的调优。
承接完整的项目从需求 → 设计 → 开发 → 上线 → 长期运维;也可按月提供技术保姆服务。
与 th0masso/ssacc-bundle 相关的其它包
同方向 / 同关键字的高下载量 PHP Composer 包推荐,方便对比选型:
Laravel Multiauth package
The bundle for easy using json-rpc api on your project
Provide a way to secure accesses to all routes of an symfony application.
This package provides a flexible way to add Role-based Permissions to Laravel 6.x
It's a barebone security class written on PHP
This package provides a flexible way to add Role-based Permissions to Laravel
统计信息
- 总下载量: 35
- 月度下载量: 0
- 日度下载量: 0
- 收藏数: 13
- 点击次数: 11
- 依赖项目数: 0
- 推荐数: 0
其他信息
- 授权协议: MIT
- 更新时间: 2024-01-15
