src/Security/AppCustomAuthenticator.php line 34

Open in your IDE?
  1. <?php
  2. namespace App\Security;
  3. use Symfony\Component\HttpFoundation\RedirectResponse;
  4. use Symfony\Component\HttpFoundation\Request;
  5. use Symfony\Component\HttpFoundation\Response;
  6. use Symfony\Component\Routing\Generator\UrlGeneratorInterface;
  7. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  8. use Symfony\Component\Security\Core\Security;
  9. use Symfony\Component\Security\Http\Authenticator\AbstractLoginFormAuthenticator;
  10. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\CsrfTokenBadge;
  11. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\UserBadge;
  12. use Symfony\Component\Security\Http\Authenticator\Passport\Credentials\PasswordCredentials;
  13. use Symfony\Component\Security\Http\Authenticator\Passport\Passport;
  14. use Symfony\Component\Security\Http\Util\TargetPathTrait;
  15. use App\Repository\UserRepository;
  16. use Symfony\Component\Security\Core\Exception\CustomUserMessageAuthenticationException;
  17. use Psr\Log\LoggerInterface;
  18. class AppCustomAuthenticator extends AbstractLoginFormAuthenticator
  19. {
  20.     use TargetPathTrait;
  21.     public const LOGIN_ROUTE 'app_login';
  22.     public function __construct(LoggerInterface $loggerUserRepository $userRepository, private UrlGeneratorInterface $urlGenerator)
  23.     {
  24.             $this->userRepository $userRepository;
  25.             $this->logger $logger;
  26.     }
  27.     public function authenticate(Request $request): Passport
  28.     {
  29.         $email $request->request->get('email''');
  30.         $request->getSession()->set(Security::LAST_USERNAME$email);
  31.                 
  32.                 $user $this->userRepository->findOneByEmail($email);
  33.                 if (!$user) {
  34.             throw new CustomUserMessageAuthenticationException('User does not exists.');
  35.         } elseif (!$user->isVerified()) {
  36.             throw new CustomUserMessageAuthenticationException('Your account is not verified.');
  37.                 }
  38.         return new Passport(
  39.             new UserBadge($email),
  40.             new PasswordCredentials($request->request->get('password''')),
  41.             [
  42.                 new CsrfTokenBadge('authenticate'$request->request->get('_csrf_token')),
  43.             ]
  44.         );
  45.     }
  46.     public function onAuthenticationSuccess(Request $requestTokenInterface $tokenstring $firewallName): ?Response
  47.     {
  48.         if ($targetPath $this->getTargetPath($request->getSession(), $firewallName)) {
  49.             return new RedirectResponse($targetPath);
  50.         }
  51.         // For example:
  52.         return new RedirectResponse($this->urlGenerator->generate('admin_dashboard'));
  53.         // throw new \Exception('TODO: provide a valid redirect inside '.__FILE__);
  54.     }
  55.     protected function getLoginUrl(Request $request): string
  56.     {
  57.         return $this->urlGenerator->generate(self::LOGIN_ROUTE);
  58.     }
  59. }