40 lines
996 B
PHP
40 lines
996 B
PHP
<?php
|
|
|
|
namespace App\Http\Middleware;
|
|
|
|
use Closure;
|
|
use Illuminate\Http\Request;
|
|
use Illuminate\Support\Facades\Auth;
|
|
|
|
class RoleMiddleware
|
|
{
|
|
/**
|
|
* Handle an incoming request.
|
|
*
|
|
* @param \Illuminate\Http\Request $request
|
|
* @param \Closure $next
|
|
* @param string $role
|
|
* @return mixed
|
|
*/
|
|
public function handle(Request $request, Closure $next, $role)
|
|
{
|
|
if (!Auth::check()) {
|
|
return redirect()->route('login');
|
|
}
|
|
|
|
$roles = is_array($role) ? $role : explode('|', $role);
|
|
|
|
if (!in_array(Auth::user()->role, $roles)) {
|
|
if (Auth::user()->role === 'admin') {
|
|
return redirect()->route('admin.dashboard')
|
|
->with('error', 'Anda tidak memiliki akses ke halaman ini.');
|
|
}
|
|
|
|
return redirect()->route('dashboard')
|
|
->with('error', 'Anda tidak memiliki akses ke halaman ini.');
|
|
}
|
|
|
|
return $next($request);
|
|
}
|
|
}
|