src/Security/LoginFormAuthenticator.php line 62

Open in your IDE?
  1. <?php
  2. namespace App\Security;
  3. use App\Repository\UserRepository;
  4. use Symfony\Component\HttpFoundation\RedirectResponse;
  5. use Symfony\Component\HttpFoundation\Request;
  6. use Symfony\Component\Routing\RouterInterface;
  7. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  8. use Symfony\Component\Security\Core\Encoder\UserPasswordEncoderInterface;
  9. use Symfony\Component\Security\Core\Exception\InvalidCsrfTokenException;
  10. use Symfony\Component\Security\Core\Security;
  11. use Symfony\Component\Security\Core\User\UserInterface;
  12. use Symfony\Component\Security\Core\User\UserProviderInterface;
  13. use Symfony\Component\Security\Csrf\CsrfToken;
  14. use Symfony\Component\Security\Csrf\CsrfTokenManagerInterface;
  15. use Symfony\Component\Security\Guard\Authenticator\AbstractFormLoginAuthenticator;
  16. use Symfony\Component\Security\Http\Util\TargetPathTrait;
  17. class LoginFormAuthenticator extends AbstractFormLoginAuthenticator
  18. {
  19.     use TargetPathTrait;
  20.     private $userRepository;
  21.     private $router;
  22.     private $csrfTokenManager;
  23.     private $passwordEncoder;
  24.     private $login_route;
  25.     public function __construct(UserRepository $userRepository,RouterInterface $router,UserPasswordEncoderInterface $passwordEncoder,CsrfTokenManagerInterface $csrfTokenManager)
  26.     {
  27.         $this->userRepository $userRepository;
  28.         $this->router $router;
  29.         $this->csrfTokenManager $csrfTokenManager;
  30.         $this->passwordEncoder $passwordEncoder;
  31.     }
  32.     public function supports(Request $request)
  33.     {
  34.         $this->login_route $request->attributes->get('_route');
  35.         return  ($request->attributes->get('_route')==='app_login')
  36.             && $request->isMethod('POST');
  37.     }
  38.     public function getCredentials(Request $request)
  39.     {
  40.         $credentials = [
  41.             'username'=>$request->request->get('username'),
  42.             'password'=>$request->request->get('password'),
  43.             'csrf_token'=>$request->request->get('_csrf_token'),
  44.         ];
  45.         $request->getSession()->set(
  46.             Security::LAST_USERNAME,
  47.             $credentials["username"]
  48.         );
  49.         return $credentials;
  50.     }
  51.     public function getUser($credentialsUserProviderInterface $userProvider)
  52.     {
  53.         $token = new CsrfToken('authenticate',$credentials["csrf_token"]);
  54.         if (!$this->csrfTokenManager->isTokenValid($token)){
  55.             throw new InvalidCsrfTokenException();
  56.         }
  57.         return $this->userRepository->findOneByUsernameOrEmail($credentials["username"]);
  58.     }
  59.     public function checkCredentials($credentialsUserInterface $user)
  60.     {
  61.         $resultado $this->passwordEncoder->isPasswordValid($user,$credentials["password"]);
  62.         if(!$resultado)
  63.         {
  64.             $contador $user->getContadorLoginFallido() ?? 0;
  65.             $contador $contador 1;
  66.             $user->setContadorLoginFallido($contador);
  67.             $user->setFechaLoginFallido(new \DateTime('now'));
  68.             if($contador >= 3)
  69.             {
  70.                 $user->setValid(FALSE);
  71.                 $user->setFechaBloqueoClave(new \DateTime('now'));
  72.             }
  73.             $this->userRepository->saveUser($user);
  74.         }
  75.         return $resultado;
  76.     }
  77.     public function onAuthenticationSuccess(Request $requestTokenInterface $token$providerKey)
  78.     {
  79.         $user $token->getUser();
  80.         $user->setFechaUltimoLogin(new \DateTime('now'));
  81.         $user->setContadorLoginFallido(0);
  82.         $user->setFechaLoginFallido(NULL);
  83.         $this->userRepository->saveUser($user);
  84.         
  85.         /*if ($targetPath = $this->getTargetPath($request->getSession(),$providerKey)){
  86.             return new RedirectResponse($targetPath);
  87.         }*/
  88.         return new RedirectResponse($this->router->generate("app_admin_index"));
  89.     }
  90.     
  91.     protected function getLoginUrl()
  92.     {
  93.         return $this->router->generate("app_login");
  94.     }
  95. }