xinix-technology/bono-auth
Composer 安装命令:
composer require xinix-technology/bono-auth
包简介
Bono Auth
README 文档
README
Your solution to use authorization and authentication with Bono Framework.
Setup
To use bono-auth you have to setup bono using bono-auth middleware in config.php.
'bono.middlewares' => array( '\\Xinix\\BonoAuth\\Middleware\\AuthMiddleware' => array( ... ), ),
bono-auth has two drivers to use, each will have distinct configuration:
Xinix\BonoAuth\Driver\NormAuth
'bono.middlewares' => array( '\\Xinix\\BonoAuth\\Middleware\\AuthMiddleware' => array( 'driver' => '\\Xinix\\BonoAuth\\Driver\\NormAuth' ), ),
Xinix\BonoAuth\Driver\OAuth
'bono.middlewares' => array( '\\Xinix\\BonoAuth\\Middleware\\AuthMiddleware' => array( 'driver' => '\\Xinix\\BonoAuth\\Driver\\OAuth', 'debug' => true, // enable or disable debug 'baseUrl' => 'http://to.your.oauth.provider', 'authUrl' => '/oauth/auth', // URI to access auth 'tokenUrl' => '/oauth/token', // URI to get token 'revokeUrl' => '/oauth/revoke', // URI to revoke auth 'clientId' => '*the client id*', 'clientSecret' => '*the client secret*', 'redirectUri' => \Bono\Helper\URL::site('/login'), // application redirect url 'scope' => 'user', ), ),
Above configuration will enable default bono-auth. The default value will prevent guest to access to every pages accessed. And after user get login, he will be able to access every pages available.
Authorization
To authorize/deauthorize specific pages, you have to write codes to register filter "auth.authorize" that run before the middleware invoked by system. Usually you can put this codes in provider file. The codes will be in this following form:
$app->filter('auth.authorize', function ($options) { // something to do return $allowed; });
Return value
If the return value will be the one of the following conditions:
- True (bool), url is authorized
- False (bool), url is not authorized
- (original argument), bono-auth will decide authorization for you, the default is logined user authorize to access and guest user is not authorized
Arguments
The filter will accept single argument $options. As the nature of Bono Filter, the $options will be return value of previous ran of the same context name function. The first time value of $options will be the URI string (or assoc array contains URI string).
If the $options is_bool, it means one of previous filter functions already handle the URI, you can skip the current filter function by adding if-statement.
$app->filter('auth.authorize', function ($options) { if (is_bool($options)) { return $options; } // something to do });
xinix-technology/bono-auth 适用场景与选型建议
xinix-technology/bono-auth 是一款 基于 PHP 开发的 Composer 扩展包,目前已累计 1.61k 次下载、GitHub Stars 达 1, 最近一次更新时间为 2015 年 09 月 09 日, 在 PHP 生态内属于活跃度较高的组件。
我们在过去多个企业项目中使用过 xinix-technology/bono-auth 或与其功能相近的方案,如果你在选型或落地过程中遇到问题,例如 版本兼容、二次改造、私有化封装、与内部系统对接、生产 BUG 排查,欢迎联系我们协助评估。
基于 xinix-technology/bono-auth 在你已有业务上做功能扩展、字段裁剪、UI 适配、与内部账号 / 权限 / 日志系统的深度对接。
线上偶发问题、内存泄漏、慢查询、并发异常等排查修复;针对高流量场景做缓存、队列、索引层面的调优。
承接完整的项目从需求 → 设计 → 开发 → 上线 → 长期运维;也可按月提供技术保姆服务。
统计信息
- 总下载量: 1.61k
- 月度下载量: 0
- 日度下载量: 0
- 收藏数: 1
- 点击次数: 15
- 依赖项目数: 1
- 推荐数: 0
其他信息
- 授权协议: MIT
- 更新时间: 2015-09-09