<?php
namespace App\Voter\__Accounting;
use App\Entity\__Accounting\PartnerTemplate\PartnerTemplate;
use App\Entity\Partner\Partner;
use App\Voter\VoterTrait;
use Symfony\Component\Security\Core\Authentication\Token\TokenInterface;
use Symfony\Component\Security\Core\Authorization\Voter\Voter;
use Symfony\Component\Security\Core\User\UserInterface;
class AccountingPartnerTemplateVoter extends Voter
{
use VoterTrait;
const LIST = "ACCOUNTING_PARTNER_TEMPLATE_LIST";
const CREATE = "ACCOUNTING_PARTNER_TEMPLATE_CREATE";
const UPDATE = "ACCOUNTING_PARTNER_TEMPLATE_UPDATE";
const DELETE = "ACCOUNTING_PARTNER_TEMPLATE_DELETE";
protected function supports($attribute, $subject): bool
{
return ($attribute == self::LIST && $subject === null) ||
($attribute == self::CREATE && $subject instanceof Partner) ||
(in_array($attribute, [self::UPDATE, self::DELETE]) && $subject instanceof PartnerTemplate);
}
protected function voteOnAttribute($attribute, $subject, TokenInterface $token): bool
{
$loggedUser = $token->getUser();
if (!$loggedUser instanceof UserInterface) {
return false;
}
switch ($attribute) {
case self::LIST:
return $this->voteOnList($loggedUser);
case self::CREATE:
return $this->voteOnCreate($subject, $loggedUser);
case self::UPDATE:
return $this->voteOnUpdate($subject, $loggedUser);
case self::DELETE:
return $this->voteOnDelete($subject, $loggedUser);
}
return false;
}
private function voteOnList(UserInterface $loggedUser): bool
{
return in_array(self::LIST, $loggedUser->getRoles());
}
private function voteOnCreate(?Partner $partner, UserInterface $loggedUser): bool
{
if (null === $partner) {
return false;
}
return in_array(self::CREATE, $loggedUser->getRoles());
}
private function voteOnUpdate(?PartnerTemplate $partnerTemplate, UserInterface $loggedUser): bool
{
if (null === $partnerTemplate) {
return false;
}
return in_array(self::UPDATE, $loggedUser->getRoles());
}
private function voteOnDelete(?PartnerTemplate $partnerTemplate, UserInterface $loggedUser): bool
{
if (null === $partnerTemplate) {
return false;
}
return in_array(self::DELETE, $loggedUser->getRoles());
}
}