我在 stackoverflow 上搜索了很多帖子来寻找答案,也许我只是忽略了一些东西,但我似乎无法让 $this->Auth->login() 工作。我尝试了其他帖子中的许多不同建议。在描述我尝试过的其他方法时,我会尽可能全面。
我确实已经添加了一个用户。 MD5 散列工作正常。我对密码进行了哈希处理,然后使用 Miracle Salad md5 检查了它http://www.miraclesalad.com/webtools/md5.php http://www.miraclesalad.com/webtools/md5.php
我不使用盐进行散列。我使用的是不加盐的 MD5。
我使用的数据库是Postgresql 9.0。我知道 CakePhp 的某些魔力并不适用于所有数据库(至少有人告诉我)。
应用程序/配置/core.php
Configure::write('Security.level', 'medium');
/**
* A random string used in security hashing methods.
*/
Configure::write('Security.salt', '');
我使用 Auth->fields 将密码映射到数据库中的 user_password 并将用户名映射到 user_name 。 user_password 和 user_name 是 core_users 表中的列。我也在 beforeFilter() 方法中使用了。
$this->Auth->fields = array('username' => 'user_name', 'password' => 'user_password');
应用程序/控制器/AppController.php
class AppController extends Controller {
public $components = array(
'Session',
'Auth' => array(
'loginRedirect' => array('controller' => 'pages', 'action' => 'index'),
'logoutRedirect' => array('controller' => 'pages', 'action' => 'display', 'home'),
'loginAction' => array('admin' => false, 'controller' => 'CoreUsers', 'action' => 'login'),
/*'fields' => array('password' => 'user_password', 'username' => 'user_name'),*/
'userModel' => 'CoreUser'
)
);
public function beforeFilter() {
Security::setHash('md5');
$this->Auth->allow('login');
//debug($this->Auth);
}
}
我留下了调试,以便您可以看到它们的处理顺序,并且我将向您展示它们是如何打印的。
应用程序/控制器/CoreUsersController.php
public function login() {
Security::setHash('md5');
//debug($this->Auth);
if ($this->request->is('post')) {
debug(Security::hash($this->Auth->request->data['CoreUser']['user_password']));
debug($this->Auth);
debug(Configure::version());
debug($this->Auth->request->data['CoreUser']['user_password']);
debug($this->Auth->request->data['CoreUser']['user_name']);
if ($this->Auth->login()) {
debug($this->Auth->request->data['CoreUser']['user_password']);
$this->redirect($this->Auth->redirect());
} else {
debug($this->Auth->request->data['CoreUser']['user_password']);
$this->Session->setFlash(__('Invalid username or password, try again'));
}
}
}
public function logout() {
$this->redirect($this->Auth->logout());
}
应用程序/模型/CoreUser.php
App::uses('AuthComponent', 'Controller/Component');
class CoreUser extends AppModel{
public $primaryKey = 'user_id';
public $sequence = 'core_user_id_seq';
public $name = 'CoreUser';
public $validate = array(
'user_name' => array(
'required' => array(
'rule' => array('notEmpty'),
'message' => 'User name is required'
)
),
'user_password' => array(
'required' => array(
'rule' => array('notEmpty'),
'message' => 'Password is required'
)
),
'privilege_id' => array(
'required' => array(
'rule' => array('notEmpty'),
'message' => 'Privilege ID is required'
),
'legalValues' => array(
'rule' => array('between',1,4),
'message' => 'Privilege must be between 1 and 4'
)
),
'user_initial' => array(
'required' => array(
'rule' => array('notEmpty'),
'message' => 'User initials is required'
)
),
'email' => array(
'rule' => array('email',true),
'message' => 'Email must have an \'@\' symbol and a domain e.g. .com'
)
);
public function beforeSave() {
Security::setHash('md5');
if (isset($this->data[$this->alias]['user_password'])) {
$this->data[$this->alias]['user_password'] = AuthComponent::password($this->data[$this->alias]['user_password']);
}
return true;
}
}
应用程序/视图/CoreUsers/login.ctp
<h3>Login</h3>
<div class="users form">
<?php echo $this->Session->flash('auth'); ?>
<?php echo $this->Form->create('CoreUser');?>
<fieldset>
<legend><?php echo __('Please enter your username and password'); ?></legend>
<?php
echo $this->Form->input('user_name');
echo $this->Form->input('user_password');
?>
</fieldset>
<?php echo $this->Form->end(__('Login'));?>
</div>
调试输出
所有这些都来自 CoreUsersController,并按处理顺序进行。
哈希密码。这与我添加用户时数据库中的内容相同。
'098f6bcd4621d373cade4e832627b4f6'
验证对象
object(AuthComponent) {
components => array(
(int) 0 => 'Session',
(int) 1 => 'RequestHandler'
)
authenticate => array(
(int) 0 => 'Form'
)
authorize => false
ajaxLogin => null
flash => array(
'element' => 'default',
'key' => 'auth',
'params' => array()
)
loginAction => array(
'admin' => false,
'controller' => 'CoreUsers',
'action' => 'login'
)
loginRedirect => array(
'controller' => 'pages',
'action' => 'index'
)
logoutRedirect => array(
'controller' => 'pages',
'action' => 'display',
(int) 0 => 'home'
)
authError => 'You are not authorized to access that location.'
allowedActions => array(
(int) 0 => 'login'
)
request => object(CakeRequest) {
params => array(
'plugin' => null,
'controller' => 'CoreUsers',
'action' => 'login',
'named' => array(),
'pass' => array()
)
data => array(
'CoreUser' => array(
'user_name' => 'testy5',
'user_password' => 'test'
)
)
query => array()
url => 'CoreUsers/login'
base => '/cpm_v2_dev'
webroot => '/cpm_v2_dev/'
here => '/cpm_v2_dev/CoreUsers/login'
}
response => object(CakeResponse) {
}
settings => array(
'loginRedirect' => array(
'controller' => 'pages',
'action' => 'index'
),
'logoutRedirect' => array(
'controller' => 'pages',
'action' => 'display',
(int) 0 => 'home'
),
'loginAction' => array(
'admin' => false,
'controller' => 'CoreUsers',
'action' => 'login'
),
'userModel' => 'CoreUser'
)
userModel => 'CoreUser'
}
CakePHP 版本
'2.1.0'
调用login()之前的密码
'test'
调用login()之前的用户名
'testy5'
调用login()后的密码
'test'
以下是我在其他 stackoverflow 帖子中读到过的、我尝试过的内容的快速列表。如果您需要我详细说明,请告诉我。
1)我将用户名和密码映射到数据库中的字段。这是字段注释的地方。我也尝试在 beforeFilter() 方法中执行此操作。使用:
$this->Auth->fields = array('username' => 'user_name', 'password' => 'user_password');
在登录视图中,表单是这样创建的:
$this->Form->input('username');
$this->Form->input('password');
2)我尝试在登录之前手动散列密码,如下所示:
$this->Auth->request->data['CoreUser']['password'] = Security::hash($this->Auth->request->data['CoreUser']['password'])
if ($this->Auth->login()) {
$this->redirect($this->Auth->redirect());
}
EDIT0
3)我只是尝试按照建议这样做CakePHP 2.0 身份验证登录不起作用 https://stackoverflow.com/questions/10014928/cakephp-2-0-auth-login-not-working
我的 AuthComponent 现在看起来像这样:
public $components = array(
'Session',
'Auth' => array(
'authenticate' => array(
'Form' => array(
'userModel' => 'CoreUser',
'fields' => array(
'username' => 'user_name',
'password' => 'user_password'
)
)
),
'loginRedirect' => array('controller' => 'pages', 'action' => 'index'),
'logoutRedirect' => array('controller' => 'pages', 'action' => 'display', 'home'),
'loginAction' => array('admin' => false, 'controller' => 'CoreUsers', 'action' => 'login')
)
);
如果我不够详细,或者我犯了一个错误,我深表歉意。我已经为此工作了几天,这真的让我筋疲力尽。我很感激我可能收到的任何帮助。谢谢!