src/Security/LoginFormAuthenticator.php line 64

Open in your IDE?
  1. <?php
  2. // src/Security/LoginFormAuthenticator.php
  3. namespace App\Security;
  4. use App\Entity\User;
  5. use App\Repository\UserRepository;
  6. use Doctrine\ORM\EntityManagerInterface;
  7. use Symfony\Component\HttpFoundation\RedirectResponse;
  8. use Symfony\Component\HttpFoundation\Request;
  9. use Symfony\Component\HttpFoundation\Response;
  10. use Symfony\Component\PasswordHasher\Hasher\UserPasswordHasherInterface;
  11. use Symfony\Component\Routing\Generator\UrlGeneratorInterface;
  12. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  13. use Symfony\Component\Security\Core\Encoder\UserPasswordEncoderInterface;
  14. use Symfony\Component\Security\Core\Exception\CustomUserMessageAuthenticationException;
  15. use Symfony\Component\Security\Core\Exception\InvalidCsrfTokenException;
  16. use Symfony\Component\Security\Core\Exception\UserNotFoundException;
  17. use Symfony\Component\Security\Core\Security;
  18. use Symfony\Component\Security\Core\User\UserInterface;
  19. use Symfony\Component\Security\Core\User\UserProviderInterface;
  20. use Symfony\Component\Security\Csrf\CsrfToken;
  21. use Symfony\Component\Security\Csrf\CsrfTokenManagerInterface;
  22. use Symfony\Component\Security\Guard\Authenticator\AbstractFormLoginAuthenticator;
  23. use Symfony\Component\Security\Guard\PasswordAuthenticatedInterface;
  24. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\CsrfTokenBadge;
  25. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\RememberMeBadge;
  26. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\UserBadge;
  27. use Symfony\Component\Security\Http\Authenticator\Passport\Credentials\PasswordCredentials;
  28. use Symfony\Component\Security\Http\Authenticator\Passport\Passport;
  29. use Symfony\Component\Security\Http\Authenticator\Passport\PassportInterface;
  30. use Symfony\Component\Security\Http\Util\TargetPathTrait;
  31. class LoginFormAuthenticator extends AbstractFormLoginAuthenticator implements PasswordAuthenticatedInterface
  32. {
  33.     use TargetPathTrait;
  34.     public const LOGIN_ROUTE 'app_login';
  35.     private $entityManager;
  36.     private $urlGenerator;
  37.     private $csrfTokenManager;
  38.     private $passwordEncoder;
  39.     private $security;
  40.     private UserRepository $userRepository;
  41.     public function __construct(EntityManagerInterface $entityManagerUrlGeneratorInterface $urlGenerator,
  42.                                 CsrfTokenManagerInterface $csrfTokenManager,
  43.                                 UserPasswordHasherInterface $passwordEncoder,
  44.                                 UserRepository $userRepository)
  45.     {
  46.         $this->entityManager $entityManager;
  47.         $this->urlGenerator $urlGenerator;
  48.         $this->csrfTokenManager $csrfTokenManager;
  49.         $this->passwordEncoder $passwordEncoder;
  50.         $this->userRepository $userRepository;
  51.     }
  52.     public function supports(Request $request): bool
  53.     {
  54.         return self::LOGIN_ROUTE === $request->attributes->get('_route')
  55.             && $request->isMethod('POST');
  56.     }
  57.     public function getCredentials(Request $request)
  58.     {
  59.         $credentials = [
  60.             'email' => $request->request->get('email'),
  61.             'password' => $request->request->get('password'),
  62.             'csrf_token' => $request->request->get('_csrf_token'),
  63.         ];
  64.         $request->getSession()->set(
  65.             Security::LAST_USERNAME,
  66.             $credentials['email']
  67.         );
  68.         return $credentials;
  69.     }
  70.     public function getUser($credentialsUserProviderInterface $userProvider): ?User
  71.     {
  72.         $token = new CsrfToken('authenticate'$credentials['csrf_token']);
  73.         if (!$this->csrfTokenManager->isTokenValid($token)) {
  74.             throw new InvalidCsrfTokenException();
  75.         }
  76.         $user $this->entityManager->getRepository(User::class)->findOneBy(['email' => $credentials['email']]);
  77.         if (!$user) {
  78.             // fail authentication with a custom error
  79.             throw new CustomUserMessageAuthenticationException('Email could not be found.');
  80.         }
  81.         return $user;
  82.     }
  83.     public function checkCredentials($credentialsUserInterface $user): bool
  84.     {
  85.         return $this->passwordEncoder->isPasswordValid($user$credentials['password']);
  86.     }
  87.     /**
  88.      * Used to upgrade (rehash) the user's password automatically over time.
  89.      */
  90.     public function getPassword($credentials): ?string
  91.     {
  92.         return $credentials['password'];
  93.     }
  94.     public function onAuthenticationSuccess(Request $requestTokenInterface $token$providerKey): ?Response
  95.     {
  96.         /*if ($this->security->isGranted('ROLE_ADMIN')){
  97.             return new RedirectResponse($this->router->generate('admin_index'), 307);
  98.         }*/
  99.         if ($targetPath $this->getTargetPath($request->getSession(), $providerKey)) {
  100.             return new RedirectResponse($targetPath);
  101.         }
  102.         // For example : return new RedirectResponse($this->urlGenerator->generate('some_route'));
  103.         //throw new \Exception('TODO: provide a valid redirect inside '.__FILE__);
  104.         return new RedirectResponse($this->urlGenerator->generate('admin_index'));
  105.     }
  106.     protected function getLoginUrl(): string
  107.     {
  108.         return $this->urlGenerator->generate(self::LOGIN_ROUTE);
  109.     }
  110. }