src/Module/Security/LoginFormAuthenticator.php line 24

  1. <?php
  2. namespace App\Module\Security;
  3. use App\Module\Security\Entity\User;
  4. use App\Module\Security\Model\PepperValidation;
  5. use Doctrine\ORM\EntityManagerInterface;
  6. use Symfony\Component\HttpFoundation\RedirectResponse;
  7. use Symfony\Component\HttpFoundation\Request;
  8. use Symfony\Component\HttpFoundation\RequestStack;
  9. use Symfony\Component\HttpFoundation\Response;
  10. use Symfony\Component\PasswordHasher\Hasher\UserPasswordHasherInterface;
  11. use Symfony\Component\Routing\Generator\UrlGeneratorInterface;
  12. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  13. use Symfony\Component\Security\Core\Exception\UserNotFoundException;
  14. use Symfony\Component\Security\Csrf\CsrfTokenManagerInterface;
  15. use Symfony\Component\Security\Http\Authenticator\AbstractLoginFormAuthenticator;
  16. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\CsrfTokenBadge;
  17. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\RememberMeBadge;
  18. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\UserBadge;
  19. use Symfony\Component\Security\Http\Authenticator\Passport\Credentials\PasswordCredentials;
  20. use Symfony\Component\Security\Http\Authenticator\Passport\Passport;
  21. use Symfony\Component\Security\Http\Util\TargetPathTrait;
  22. class LoginFormAuthenticator extends AbstractLoginFormAuthenticator
  23. {
  24.     use TargetPathTrait;
  25.     public const LOGIN_ROUTE 'app_login';
  26.     public function __construct(
  27.         private readonly RequestStack                $requestStack,
  28.         private readonly EntityManagerInterface      $entityManager,
  29.         private readonly UrlGeneratorInterface       $urlGenerator,
  30.         private readonly CsrfTokenManagerInterface   $csrfTokenManager,
  31.         private readonly UserPasswordHasherInterface $userPasswordHasher,
  32.         private readonly PepperValidation            $pepperStorage,
  33.     )
  34.     {
  35.     }
  36.     public function authenticate(Request $request): Passport
  37.     {
  38.         $email $request->request->get('email');
  39.         $password $request->request->get('password');
  40. //        Check for Valid Pepper
  41.         $paramBag $request->request->get('pepper');
  42.         $this->requestStack->getSession()->set('pepper'$paramBag);
  43.         $this->pepperStorage->setPepper($paramBag);
  44.         if(!$this->pepperStorage->validatePepper()){
  45.             throw new UserNotFoundException();
  46.         }
  47.         return new Passport(
  48.             new UserBadge($email, function($userIdentifier) {
  49.                 // optionally pass a callback to load the User manually
  50.                 $user $this->entityManager
  51.                     ->getRepository(User::class)
  52.                     ->findOneBy(['email' => $userIdentifier]);
  53.                 if (!$user) {
  54.                     throw new UserNotFoundException();
  55.                 }
  56.                 return $user;
  57.             }),
  58.             new PasswordCredentials($password),
  59.             [
  60.                 new CsrfTokenBadge(
  61.                     'authenticate',
  62.                     $request->request->get('_csrf_token')
  63.                 ),
  64.                 (new RememberMeBadge())->enable(),
  65.             ]
  66.         );
  67.     }
  68.     public function onAuthenticationSuccess(Request $requestTokenInterface $tokenstring $firewallName): Response
  69.     {
  70.         if ($targetPath $this->getTargetPath($this->requestStack->getSession(), $firewallName)) {
  71.             return new RedirectResponse($targetPath);
  72.         }
  73.         return new RedirectResponse($this->urlGenerator->generate('app_module_firewall_firewall_list__invoke'));
  74.     }
  75.     protected function getLoginUrl(Request $request): string
  76.     {
  77.         return $this->urlGenerator->generate(self::LOGIN_ROUTE);
  78.     }
  79. }