src/Security/Voter/ReportPdfVoter.php line 13

Open in your IDE?
  1. <?php
  2. declare(strict_types=1);
  3. namespace App\Security\Voter;
  4. use App\Entity\Consultation\Report;
  5. use App\Entity\User;
  6. use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
  7. use Symfony\Component\Security\Core\Authorization\AuthorizationCheckerInterface;
  8. use Symfony\Component\Security\Core\Authorization\Voter\Voter;
  9. class ReportPdfVoter extends Voter
  10. {
  11.     public const SHOW_REPORT_PDF 'SHOW_REPORT_PDF';
  12.     public const SHOW_ANSWER_PDF 'SHOW_ANSWER_PDF';
  13.     public const SHOW_REPORT_OLD_PDF 'SHOW_REPORT_OLD_PDF';
  14.     public const SHOW_ANSWER_OLD1_PDF 'SHOW_ANSWER_OLD1_PDF';
  15.     public const SHOW_ANSWER_OLD2_PDF 'SHOW_ANSWER_OLD2_PDF';
  16.     private AuthorizationCheckerInterface $authorizationChecker;
  17.     /**
  18.      * ReportPdfVoter constructor.
  19.      */
  20.     public function __construct(AuthorizationCheckerInterface $authorizationChecker)
  21.     {
  22.         $this->authorizationChecker $authorizationChecker;
  23.     }
  24.     protected function supports(string $attribute$subject)
  25.     {
  26.         if (!$subject instanceof Report) {
  27.             return false;
  28.         }
  29.         return in_array($attribute, [
  30.             self::SHOW_REPORT_PDF,
  31.             self::SHOW_ANSWER_PDF,
  32.             self::SHOW_REPORT_OLD_PDF,
  33.             self::SHOW_ANSWER_OLD1_PDF,
  34.             self::SHOW_ANSWER_OLD2_PDF,
  35.         ]);
  36.     }
  37.     protected function voteOnAttribute(string $attribute$subjectTokenInterface $token)
  38.     {
  39.         assert($subject instanceof Report);
  40.         // NVCアカウントは閲覧可能
  41.         if ($this->authorizationChecker->isGranted('ROLE_NVC')) {
  42.             return true;
  43.         }
  44.         $user $token->getUser();
  45.         if (!$user instanceof User) {
  46.             return false;
  47.         }
  48.         return $user === $subject->getUser();
  49.     }
  50. }