feat: add API cookie auth

This commit is contained in:
Maël Gangloff
2024-07-23 13:21:50 +02:00
parent 857a978402
commit 0e82229121
3 changed files with 14 additions and 8 deletions

View File

@@ -3,7 +3,15 @@ lexik_jwt_authentication:
public_key: '%env(resolve:JWT_PUBLIC_KEY)%'
pass_phrase: '%env(JWT_PASSPHRASE)%'
token_ttl: 3600 # in seconds, default is 3600
token_extractors:
authorization_header:
enabled: true
cookie:
enabled: true
name: BEARER
set_cookies:
BEARER: ~
remove_token_from_body_when_cookies_used: false
api_platform:
check_path: /api/login
username_path: email

View File

@@ -43,6 +43,7 @@ security:
stateless: true
json_login:
check_path: api_login
username_path: email
success_handler: lexik_jwt_authentication.handler.authentication_success
failure_handler: lexik_jwt_authentication.handler.authentication_failure
login_throttling:
@@ -59,7 +60,6 @@ security:
logout:
path: /logout
target: /
# activate different ways to authenticate
# https://symfony.com/doc/current/security.html#the-firewall
@@ -69,11 +69,9 @@ security:
# Easy way to control access for large sections of your site
# Note: Only the *first* access control that matches will be used
access_control:
- { path: ^/api/login$, roles: PUBLIC_ACCESS }
- { path: ^/api$, roles: PUBLIC_ACCESS }
- { path: ^/api, roles: IS_AUTHENTICATED_FULLY }
# - { path: ^/admin, roles: ROLE_ADMIN }
# - { path: ^/profile, roles: ROLE_USER }
- { path: ^/api, roles: PUBLIC_ACCESS }
- { path: ^/api/docs, roles: PUBLIC_ACCESS }
- { path: ^/api/, roles: IS_AUTHENTICATED_FULLY }
when@test:
security:

View File

@@ -6,7 +6,7 @@ controllers:
api_login:
path: /api/login
methods: [ 'POST' ]
# methods: [ 'POST' ]
oauth_connect_check:
path: /login/oauth/check