改进 测试环境不生效
This commit is contained in:
parent
03d4e7a6b8
commit
bda41c34e5
@ -15,14 +15,17 @@ class ValidateReferer
|
||||
*
|
||||
* @param Request $request
|
||||
* @param Closure(Request): (Response|RedirectResponse) $next
|
||||
*
|
||||
* @return mixed
|
||||
*/
|
||||
public function handle(Request $request, Closure $next): mixed
|
||||
{
|
||||
// return $next($request);
|
||||
if (app()->environment('local')) {
|
||||
return $next($request);
|
||||
}
|
||||
|
||||
// 如果 referer 不为空,且不是来自本站的请求,则返回 403
|
||||
if ($request->headers->get('referer') && ! Str::contains($request->headers->get('referer'), config('app.url'))) {
|
||||
if ($request->headers->get('referer') && !Str::contains($request->headers->get('referer'), config('app.url'))) {
|
||||
abort(403, '来源不属于后台。');
|
||||
} else {
|
||||
return $next($request);
|
||||
|
Loading…
Reference in New Issue
Block a user