src/Security/AdminAuthenticator.php line 37

  1. <?php
  2. namespace App\Security;
  3. use Symfony\Component\HttpFoundation\RedirectResponse;
  4. use Symfony\Component\HttpFoundation\Request;
  5. use Symfony\Component\HttpFoundation\Response;
  6. use Symfony\Component\Routing\Generator\UrlGeneratorInterface;
  7. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  8. use Symfony\Component\Security\Core\Security;
  9. use Symfony\Component\Security\Http\Authenticator\AbstractLoginFormAuthenticator;
  10. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\CsrfTokenBadge;
  11. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\UserBadge;
  12. use Symfony\Component\Security\Http\Authenticator\Passport\Credentials\PasswordCredentials;
  13. use Symfony\Component\Security\Http\Authenticator\Passport\Passport;
  14. use Symfony\Component\Security\Http\Util\TargetPathTrait;
  15. use Twig\Environment;
  16. class AdminAuthenticator extends AbstractLoginFormAuthenticator
  17. {
  18.     use TargetPathTrait;
  19.     private $twig;
  20.     public const LOGIN_ROUTE 'app_login';
  21.     public function __construct(UrlGeneratorInterface $urlGeneratorEnvironment $twig)
  22.     {
  23.         $this->urlGenerator $urlGenerator;
  24.         $this->twig $twig;
  25.     }
  26.     public function authenticate(Request $request): Passport
  27.     {
  28.         $email $request->request->get('email''');
  29.         $request->getSession()->set(Security::LAST_USERNAME$email);
  30.         return new Passport(
  31.             new UserBadge($email),
  32.             new PasswordCredentials($request->request->get('password''')),
  33.             [
  34.                 new CsrfTokenBadge('authenticate'$request->request->get('_csrf_token')),
  35.             ]
  36.         );
  37.     }
  38.     public function onAuthenticationSuccess(Request $requestTokenInterface $tokenstring $firewallName): ?Response
  39.     {
  40.         $user $token->getUser();
  41.         /* Clients déconnectés instantanément de l'application */
  42.         if (in_array('ROLE_CLIENT'$user->getRoles())) {
  43.             return new RedirectResponse($this->urlGenerator->generate('app_logout'));
  44.         }
  45.         if ($targetPath $this->getTargetPath($request->getSession(), $firewallName)) {
  46.             return new RedirectResponse($targetPath);
  47.         }
  48.         // For example:
  49.         return new RedirectResponse($this->urlGenerator->generate('admin'));
  50.         // throw new \Exception('TODO: provide a valid redirect inside '.__FILE__);
  51.     }
  52.     protected function getLoginUrl(Request $request): string
  53.     {
  54.         return $this->urlGenerator->generate(self::LOGIN_ROUTE);
  55.     }
  56. }