在 CASL 中更新用户

Fra*_*ank 4 javascript vue.js casl

我正在使用一个非常基本的CASL实现。不幸的是,文档并没有那么详细。我有以下代码(基本上是从文档中复制粘贴的)。

import { abilitiesPlugin } from '@casl/vue'
import defineAbilitiesFor  from './ability'

const ability = defineAbilitiesFor({name: 'guest'})
Vue.use(abilitiesPlugin, ability )
Run Code Online (Sandbox Code Playgroud)

其中defineAbilitiesFor定义为(在 ./ability.js 中)

import { AbilityBuilder } from '@casl/ability'

function defineAbilitiesFor(user) {
  return AbilityBuilder.define((can, cannot) => {
     can(['read'], 'foo', { username: user.name})
  })
}
Run Code Online (Sandbox Code Playgroud)

我知道可以更新规则/条件(即ability.update([]))。但是初始化CASL后如何更新用户信息呢?(例如在用户登录后

Ser*_*kyi 8

CASL 与用户无关。最终它关心的只是用户的权限。所以,登录后需要更新规则,基本使用ability.update(myRules)

在您的 Login 组件中,在向 API 请求登录后(或在您收到当前登录用户的信息后),您需要调用ability.update(defineRulesFor(user)).

ability可以只是一个空Ability实例。例如:

const ability = new Ability([])

function defineRulesFor(user) {
  const { can, rules } = AbilityBuilder.extract()

  can(['read'], 'foo', { username: user.name })

  return rules
}

// Later after login request to API (or after you receive information about currently logged in user)

login() {
  return http.post('/login')
    .then((response) => {
       ability.update(defineRulesFor(response.user))
       // after that Ability instance contains rules for returned user
    }) 
}
Run Code Online (Sandbox Code Playgroud)