validate([ 'username' => 'required', 'password' => 'required' ]); if (Auth::attempt($credentials)) { $request->session()->regenerate(); // pastikan admin if (Auth::user()->role !== 'admin') { Auth::logout(); return back()->with('error', 'Anda bukan admin'); } return redirect()->route('admin.dashboard'); } return back()->with('error', 'Username atau password salah'); } public function logout(Request $request) { Auth::logout(); $request->session()->invalidate(); $request->session()->regenerateToken(); return redirect()->route('user.index'); } }