infinito/application/src/Security/SourceVoter.php

63 lines
1.8 KiB
PHP
Raw Normal View History

2018-09-24 18:42:29 +02:00
<?php
namespace App\Security;
use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
use Symfony\Component\Security\Core\Authorization\Voter\Voter;
use App\DBAL\Types\RightType;
2018-10-03 16:14:15 +02:00
use App\Entity\Source\SourceInterface;
2018-09-24 18:42:29 +02:00
use App\DBAL\Types\LayerType;
2018-10-03 15:50:46 +02:00
use App\Entity\UserInterface;
2018-09-24 18:42:29 +02:00
/**
*
* @author kevinfrantz
* @see https://symfony.com/doc/current/security/voters.html
*/
class SourceVoter extends Voter
{
/**
*
* @var string[] $attribute
* @var SourceInterface $subject
* {@inheritdoc}
* @see \Symfony\Component\Security\Core\Authorization\Voter\Voter::supports()
*/
protected function supports($attribute, $subject)
{
return $this->checkInstance($subject) && $this->checkRight($attribute);
}
//private function checkLayer(string $layer):bool{
// return (in_array($right, array_keys(LayerType::getChoices())));
//}
private function checkRight(string $right):bool{
return (in_array($right, array_keys(RightType::getChoices())));
}
private function checkInstance($subject):bool{
return ($subject instanceof SourceInterface);
}
/**
* @todo add if father, that it should have all rights!
* @param string[] $attribute
* @param SourceInterface $subject
* @param TokenInterface $token
* {@inheritdoc}
* @see \Symfony\Component\Security\Core\Authorization\Voter\Voter::voteOnAttribute()
*/
protected function voteOnAttribute($attribute, $subject, TokenInterface $token)
{
/**
* @var UserInterface $user
*/
$user = $token->getUser();
return $subject->getNode()
->getLaw()
->isGranted($user->getSource()->getNode(), LayerType::SOURCE, $attribute);
}
}