src/Security/SecurityAuthenticator.php line 31

  1. <?php
  2. namespace App\Security;
  3. use App\Entity\User;
  4. use App\Services\LogService;
  5. use Doctrine\ORM\EntityManagerInterface;
  6. use Symfony\Component\HttpFoundation\RedirectResponse;
  7. use Symfony\Component\HttpFoundation\Request;
  8. use Symfony\Component\Routing\Generator\UrlGeneratorInterface;
  9. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  10. use Symfony\Component\Security\Core\Exception\CustomUserMessageAuthenticationException;
  11. use Symfony\Component\Security\Core\Exception\InvalidCsrfTokenException;
  12. use Symfony\Component\Security\Core\Security;
  13. use Symfony\Component\Security\Csrf\CsrfToken;
  14. use Symfony\Component\Security\Csrf\CsrfTokenManagerInterface;
  15. use Symfony\Component\Security\Http\Authenticator\AbstractAuthenticator;
  16. use Symfony\Component\Security\Http\Authenticator\Passport\SelfValidatingPassport;
  17. use Symfony\Component\Security\Http\Authenticator\Passport\Credentials\PasswordCredentials;
  18. use Symfony\Component\Security\Http\Authenticator\Passport\Badge\UserBadge;
  19. use Symfony\Component\Security\Http\Util\TargetPathTrait;
  20. class SecurityAuthenticator extends AbstractAuthenticator
  21. {
  22.     use TargetPathTrait;
  23.     public const LOGIN_ROUTE 'app_login';
  24.     private $entityManager;
  25.     private $urlGenerator;
  26.     private $csrfTokenManager;
  27.     private $logService;
  28.     public function __construct(
  29.         LogService $logService,
  30.         EntityManagerInterface $entityManager,
  31.         UrlGeneratorInterface $urlGenerator,
  32.         CsrfTokenManagerInterface $csrfTokenManager
  33.     ) {
  34.         $this->logService $logService;
  35.         $this->entityManager $entityManager;
  36.         $this->urlGenerator $urlGenerator;
  37.         $this->csrfTokenManager $csrfTokenManager;
  38.     }
  39.     public function supports(Request $request): bool
  40.     {
  41.         // Check if the request is a POST request to the login route
  42.         return $request->attributes->get('_route') === self::LOGIN_ROUTE
  43.             && $request->isMethod('POST');
  44.     }
  45.     public function authenticate(Request $request): \Symfony\Component\Security\Http\Authenticator\Passport\Passport
  46.     {
  47.         // Retrieve credentials from the request
  48.         $credentials = [
  49.             'email' => $request->request->get('email'),
  50.             'password' => $request->request->get('password'),
  51.             'csrf_token' => $request->request->get('_csrf_token'),
  52.         ];
  53.         // Store the last username in session for login page pre-fill
  54.         $request->getSession()->set(Security::LAST_USERNAME$credentials['email']);
  55.         // Validate CSRF token
  56.         $token = new CsrfToken('authenticate'$credentials['csrf_token']);
  57.         if (!$this->csrfTokenManager->isTokenValid($token)) {
  58.             throw new InvalidCsrfTokenException();
  59.         }
  60.         // Find user by email
  61.         $user $this->entityManager->getRepository(User::class)->findOneBy(['email' => $credentials['email']]);
  62.         if (!$user) {
  63.             throw new CustomUserMessageAuthenticationException('Email could not be found.');
  64.         }
  65.         // Return a Passport with user badge and password credentials
  66.         return new SelfValidatingPassport(
  67.             new UserBadge($credentials['email']),
  68.             [new PasswordCredentials($credentials['password'])]
  69.         );
  70.     }
  71.     public function onAuthenticationSuccess(Request $requestTokenInterface $tokenstring $providerKey): RedirectResponse
  72.     {
  73.         // Check for a target path after successful authentication
  74.         if ($targetPath $this->getTargetPath($request->getSession(), $providerKey)) {
  75.             return new RedirectResponse($targetPath);
  76.         }
  77.         /** @var User $user */
  78.         $user $token->getUser();
  79.         // Log the user login action
  80.         $this->logService->userLoggedIn($user);
  81.         // Redirect to the home page after successful login
  82.         return new RedirectResponse($this->urlGenerator->generate('app_home'));
  83.     }
  84.     public function onAuthenticationFailure(Request $requestAuthenticationException|\Symfony\Component\Security\Core\Exception\AuthenticationException $exception): RedirectResponse
  85.     {
  86.         // Redirect back to login page on authentication failure
  87.         return new RedirectResponse($this->urlGenerator->generate(self::LOGIN_ROUTE));
  88.     }
  89.     protected function getLoginUrl(): string
  90.     {
  91.         // Return the login page URL
  92.         return $this->urlGenerator->generate(self::LOGIN_ROUTE);
  93.     }
  94. }