在vue项目中,与后端的数据交互只能通过ajxa。在解决用户权限问题上,后台的拦截器可以拦截需要登陆的请求。在vue项目中,我们也可以vue-router的导航守卫功能实现
假设有一个场景,首页页面访问不需要校验用户权限,因为用户未登录无法判断其权限。访问管理后台页面时,如果用户没有登陆自动跳转到登陆页面,这种实现效果类似与后台的拦截器。
在vue项目中,我们如何实现这种效果呢。我们可以通过vue-router提供的导航守卫功能实现。
vue-router的导航守卫可以是全局的,也可以是某个路由级别的。下面讲讲全局的导航守卫怎么实现
// 登陆成功,返回用户信息
var userinfo = response.data.result;
userinfo.isSignin = true;// 用户是否是登陆状态
that.$store.dispatch("setUserInfo", userinfo);
export default new Router({
routes: [
// 首页模块
{
path: '/', component: resolve => {require(['../components/home/Home'], resolve)},
children: [
{path: '/', name: 'index', component: resolve => {require(['../components/home/Index'], resolve)},},
{path: 'product1', name: 'product1', component: resolve => {require(['../components/home/Product1'], resolve)},},
{path: 'product2', name: 'product2', component: resolve => {require(['../components/home/Product2'], resolve)},},
{path: 'contact', name: 'contact', component: resolve => {require(['../components/home/Contact'], resolve)},},
// 登录模块
{path: 'signin', name: 'signin', component: resolve => {require(['../components/sign/Signin'], resolve)},},
{path: 'signup', name: 'signup', component: resolve => {require(['../components/sign/Signup'], resolve)},},
{path: 'forgetpwd', name: 'forgetpwd', component: resolve => {require(['../components/sign/ForgetPwd'], resolve)},},
{path: 'resetpwd', name: 'resetpwd', component: resolve => {require(['../components/sign/ResetPwd'], resolve)},}
]
},
//后台管理模块
{
path: '/manage',meta: {login_required: true}, name: 'manage', component: resolve => {require(['../components/manage/Manage'], resolve)},
}
]
});
//权限验证
router.beforeEach((to, from, next) => {
//校验是否登陆了
let isSignin = localStorage.getItem("isSignin");
let matched = to.matched.some((item) => {
return item.meta.login_required;
});
if(isSignin == 'false' && matched){
next('/signin');
}else{
next();
}
});
比如我们需要在某个组件中,当前往其它页面时需要给出提示,提醒会丢失当前页面的内容。这种效果我们也可以通过vue-router实现
在某个组件中:
// 离开页面时
// 与methodes同一级别
beforeRouteLeave(to,from,next) {
var that = this;
let matched = to.matched.some((item) => {
return item.meta.case_not_need_confirm;
});
if(matched || that.notNeedConfirm){//当前页面或者有些页面不需要提醒
next();
}else{
that.$confirm(that.$t('promotInfo.closePromot'), that.$t('promotInfo.prompt'), {
confirmButtonText: that.$t('btnName.submitBtn'),
cancelButtonText: that.$t('btnName.cancelBtn'),
type: 'warning',
center: true
}).then(() => {
next();
});
}
}
在不需要提醒的路由上,我们可以添加以下元数据来表示访问此页面不需要提醒。
meta: {case_not_need_confirm: true}
通过以上两个例子笔者展示了在全局和组件级别实现导航守卫的功能,这种效果最终相当于后台的过滤器,这对系统的安全性和可用性有很大帮助。