【发布时间】:2018-11-27 19:01:09
【问题描述】:
我在 Firestore 上有一个带有“级别”子集合的“游戏”集合。我正在尝试设置安全规则,以便您只能访问您创建的游戏或关卡。
所有文档(游戏或关卡)都有一个 authorId 字段,其中包含创建它们的用户的 uid。我尝试了这条规则,但仍然出现Missing or insufficient permissions 错误:
service cloud.firestore {
match /databases/{database}/documents {
match /games/{document=**} {
allow read, write: if document.data.authorId == request.auth.uid;
}
}
}
我错过了什么?
我也尝试了以下规则,但没有成功:
service cloud.firestore {
match /databases/{database}/documents {
match /games/{game}/levels/{level} {
allow read, write: if level.data.authorId == request.auth.uid;
}
}
}
service cloud.firestore {
match /games/{game} {
allow read, write: if game.data.authorId == request.auth.uid;
match /levels/{level} {
allow read, write: if level.data.authorId == request.auth.uid;
}
}
}
【问题讨论】:
标签: firebase google-cloud-firestore firebase-security