src/Security/SecurityAuthenticator.php line 20

Open in your IDE?
  1. <?php
  2. namespace App\Security;
  3. use Doctrine\ORM\EntityManagerInterface;
  4. use Symfony\Component\HttpFoundation\RedirectResponse;
  5. use Symfony\Component\HttpFoundation\Request;
  6. use Symfony\Component\HttpFoundation\Response;
  7. use Symfony\Component\Routing\Generator\UrlGeneratorInterface;
  8. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  9. use Symfony\Component\Security\Core\Exception\AuthenticationException;
  10. use Symfony\Component\Security\Core\Security;
  11. use Symfony\Component\Security\Http\Authenticator\AbstractLoginFormAuthenticator;
  12. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\CsrfTokenBadge;
  13. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\UserBadge;
  14. use Symfony\Component\Security\Http\Authenticator\Passport\Credentials\PasswordCredentials;
  15. use Symfony\Component\Security\Http\Authenticator\Passport\Passport;
  16. use Symfony\Component\Security\Http\Util\TargetPathTrait;
  17. class SecurityAuthenticator extends AbstractLoginFormAuthenticator
  18. {
  19.     use TargetPathTrait;
  20.     public const LOGIN_ROUTE 'app_login';
  21.     private $urlGenerator;
  22.     private $em;
  23.     public function __construct(UrlGeneratorInterface $urlGeneratorEntityManagerInterface $em)
  24.     {
  25.         $this->urlGenerator $urlGenerator;
  26.         $this->em $em;
  27.     }
  28.     public function authenticate(Request $request): Passport
  29.     {
  30.         $email $request->request->get('email''');
  31.         $request->getSession()->set(Security::LAST_USERNAME$email);
  32.         return new Passport(
  33.             new UserBadge($email),
  34.             new PasswordCredentials($request->request->get('password''')),
  35.             [
  36.                 new CsrfTokenBadge('authenticate'$request->request->get('_csrf_token')),
  37.             ]
  38.         );
  39.     }
  40.     public function onAuthenticationSuccess(Request $requestTokenInterface $tokenstring $firewallName): ?Response
  41.     {
  42.         if ($targetPath $this->getTargetPath($request->getSession(), $firewallName)) {
  43.             return new RedirectResponse($targetPath);
  44.         }
  45.         $user $token->getUser();
  46.         if(is_null($user->getCompany()) && !$user->isSuperAdmin()){
  47.             throw new AuthenticationException('Account disabled');
  48.         }
  49.         $user->setLastConnect();
  50.         $this->em->persist($user);
  51.         $this->em->flush();
  52.         if($user->isSuperAdmin()){
  53.             return new RedirectResponse($this->urlGenerator->generate('app_account_company'));
  54.         }
  55.         // For example:
  56.         return new RedirectResponse($this->urlGenerator->generate('app_account_client_list'));
  57. //        throw new \Exception('TODO: provide a valid redirect inside '.__FILE__);
  58.     }
  59.     protected function getLoginUrl(Request $request): string
  60.     {
  61.         return $this->urlGenerator->generate(self::LOGIN_ROUTE);
  62.     }
  63. }