Angular 5 role based routing
Tutorial Link in the @andrea06590 answer has very brief overview for Authentication and Authorization based routing.
In a short way , someone can use the following way:
- Use canActivate property and pass it a service class which implements CanActivate Interface.
- use data object property to pass the role to AuthGuard service.
app.routing.module.ts
import { NgModule } from '@angular/core';
import { Routes, RouterModule } from '@angular/router';
const routes: Routes = [
{ path : '' , redirectTo : '', pathMatch: 'full' , canActivate : [ RedirectGuardService ] },
{ path : 'admin' , component : AdminComponent , canActivate : [AuthGuardService] , data : { role : 'admin'}},
{ path : 'user' , component : UserComponent , canActivate : [AuthGuardService] , data : { role : 'user'}}
{ path : '**' , component : NotFoundComponent }
];
@NgModule({
imports: [RouterModule.forRoot(routes)],
exports: [RouterModule]
})
export class AppRoutingModule { }
auth-guard.service.ts
import { Injectable } from '@angular/core';
import { Router , CanActivate, ActivatedRouteSnapshot, RouterStateSnapshot } from '@angular/router';
import { Observable } from 'rxjs';
import { AuthService } from '../auth-service/auth-service.service';
@Injectable({
providedIn: 'root'
})
export class AuthGuardService implements CanActivate {
constructor(
private router: Router,
private authService: AuthService
) {}
canActivate(route: ActivatedRouteSnapshot, state: RouterStateSnapshot) : Observable<boolean> | Promise<boolean> | boolean {
const currentUser = this.authService.userVal; // Getting User Value by decoding JWT Token
const role = route.data.role; // Getting role value which we passed to data object in router configuration
if (currentUser) {
if(role && role.indexOf(currentUser.role) > -1)
return true;
else
return false;
}
return false;
}
}
redirect-guard.service.ts
import { Injectable } from '@angular/core';
import { CanActivate, Router, ActivatedRouteSnapshot, RouterStateSnapshot } from '@angular/router';
import { AuthService } from '../auth-service/auth-service.service';
import { Observable } from 'rxjs';
import { IUser } from 'client/app/interfaces';
@Injectable({
providedIn: 'root'
})
export class RedirectGuardService implements CanActivate {
constructor(
private router: Router,
private authService: AuthService
) {}
canActivate(route: ActivatedRouteSnapshot, state: RouterStateSnapshot) : Observable<boolean> | Promise<boolean> | boolean {
const user = <IUser>this.authService.userVal;
if (user && user['user']) {
this.router.navigate(['/'+ user['user'].role]);
return true;
}
this.router.navigate(['/login'], { queryParams: { returnUrl: state.url }});
return false;
}
}