src/Security/Voter/VideoVoter.php line 17

Open in your IDE?
  1. <?php
  2. namespace App\Security\Voter;
  3. use App\Entity\Client;
  4. use App\Entity\Company;
  5. use App\Entity\User;
  6. use App\Entity\Video;
  7. use App\Repository\ExclusionsVideoRepository;
  8. use App\Repository\UserRepository;
  9. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  10. use Symfony\Component\Security\Core\Authorization\Voter\Voter;
  11. use Symfony\Component\Security\Core\Security;
  12. class VideoVoter extends Voter
  13. {
  14.     /**
  15.      * @var Security
  16.      */
  17.     private $security null;
  18.     /**
  19.      * @var ExclusionsVideoRepository
  20.      */
  21.     private $exclusionsVideoRepository;
  22.     /**
  23.      * @var UserRepository
  24.      */
  25.     private $userRepository;
  26.     /**
  27.      * VideoVoter constructor.
  28.      * @param Security $security
  29.      * @param ExclusionsVideoRepository $exclusionsVideoRepository
  30.      */
  31.     public function __construct(Security $securityExclusionsVideoRepository $exclusionsVideoRepositoryUserRepository $userRepository)
  32.     {
  33.         $this->security $security;
  34.         $this->exclusionsVideoRepository $exclusionsVideoRepository;
  35.         $this->userRepository $userRepository;
  36.     }
  37.     protected function supports(string $attribute$subject): bool
  38.     {
  39.         $supportAttr in_array($attribute, ['VIDEO_GET']);
  40.         $supportObject = ($subject instanceof Video);
  41.         return $supportAttr && $supportObject;
  42.     }
  43.     protected function voteOnAttribute(string $attribute$subjectTokenInterface $token): bool
  44.     {
  45.         if ($attribute == 'VIDEO_GET') {
  46.             $user $this->security->getUser();
  47.             if ($this->security->isGranted(User::ROLE_CLIENT) && $user instanceof User) {
  48.                 $user $this->userRepository->find($user->getId());
  49.                 if($user instanceof User && $user->getClient() instanceof Client && $user->getClient()->getCompany() instanceof Company) {
  50.                     return !$this->exclusionsVideoRepository->isExclusion($user->getClient()->getCompany(), $subject);
  51.                 }
  52.             } 
  53.         }
  54.         return true;
  55.     }
  56. }