在Angular中,您可以使用路由守卫来限制已登录用户只能查看与其用户ID相关的数据。以下是一个示例解决方案:
AuthGuard的路由守卫。import { Injectable } from '@angular/core';
import { CanActivate, ActivatedRouteSnapshot, RouterStateSnapshot, UrlTree, Router } from '@angular/router';
import { Observable } from 'rxjs';
import { AuthService } from './auth.service';
@Injectable({
providedIn: 'root'
})
export class AuthGuard implements CanActivate {
constructor(
private authService: AuthService,
private router: Router
) { }
canActivate(
next: ActivatedRouteSnapshot,
state: RouterStateSnapshot): Observable | Promise | boolean | UrlTree {
// 检查用户是否已登录
if (this.authService.isLoggedIn()) {
// 获取当前用户ID
const userId = this.authService.getUserId();
// 检查所需的用户ID是否与当前用户ID匹配
if (next.params.userId === userId) {
return true;
} else {
// 如果用户ID不匹配,重定向到其他页面(或显示错误消息)
this.router.navigate(['/error']);
return false;
}
} else {
// 如果用户未登录,重定向到登录页面
this.router.navigate(['/login']);
return false;
}
}
}
AuthService的服务来处理用户认证。import { Injectable } from '@angular/core';
@Injectable({
providedIn: 'root'
})
export class AuthService {
private loggedIn = false;
private userId = '';
constructor() { }
login(userId: string) {
// 模拟登录过程
this.loggedIn = true;
this.userId = userId;
}
logout() {
// 模拟退出登录过程
this.loggedIn = false;
this.userId = '';
}
isLoggedIn(): boolean {
return this.loggedIn;
}
getUserId(): string {
return this.userId;
}
}
AuthGuard来保护需要进行权限验证的路由。import { NgModule } from '@angular/core';
import { Routes, RouterModule } from '@angular/router';
import { HomeComponent } from './home/home.component';
import { ProfileComponent } from './profile/profile.component';
import { ErrorComponent } from './error/error.component';
import { LoginComponent } from './login/login.component';
import { AuthGuard } from './auth.guard';
const routes: Routes = [
{ path: '', component: HomeComponent },
{ path: 'profile/:userId', component: ProfileComponent, canActivate: [AuthGuard] },
{ path: 'error', component: ErrorComponent },
{ path: 'login', component: LoginComponent }
];
@NgModule({
imports: [RouterModule.forRoot(routes)],
exports: [RouterModule]
})
export class AppRoutingModule { }
ProfileComponent组件中,您可以使用ActivatedRoute来获取路由参数,并根据用户ID显示相关数据。import { Component, OnInit } from '@angular/core';
import { ActivatedRoute } from '@angular/router';
import { DataService } from './data.service';
@Component({
selector: 'app-profile',
templateUrl: './profile.component.html',
styleUrls: ['./profile.component.css']
})
export class ProfileComponent implements OnInit {
userId: string;
userData: any;
constructor(
private route: ActivatedRoute,
private dataService: DataService
) { }
ngOnInit() {
// 获取路由参数中的用户ID
this.userId = this.route.snapshot.params.userId;
// 根据用户ID获取数据
this.userData = this.dataService.getUserData(this.userId);
}
}
DataService服务中,您可以使用HTTP模块来从Laravel后端获取用户数据。import { Injectable } from '@angular/core';
import { HttpClient } from '@angular/common/http';
@Injectable({
providedIn: 'root'
})
export class DataService {
private apiUrl = 'http://your-laravel-api-url';
constructor(private http: HttpClient) { }
getUserData(userId: string): any {
return this.http.get(`${this.apiUrl}/users/${userId}`);
}
}
请确保您的Laravel后端具有与上述代码相对应的路由和控制器,以便从数据库中获取相关用户数据并进行验证。