<?php
namespace App\Controller;
use App\Email\EmailManager;
use App\Entity\Enum\RoleEnum;
use App\Entity\RoleManagement;
use App\Entity\User;
use App\Form\ChangePasswordFormType;
use App\Form\RegistrationFormType;
use App\Repository\UserRepository;
use App\Security\EmailVerifier;
use App\Service\Utility\HashService;
use App\SettingsProvider\GeneralSettingsList;
use Doctrine\Persistence\ManagerRegistry;
use Psr\Cache\InvalidArgumentException;
use Symfony\Bridge\Twig\Mime\TemplatedEmail;
use Symfony\Bundle\FrameworkBundle\Controller\AbstractController;
use Symfony\Component\HttpFoundation\Request;
use Symfony\Component\HttpFoundation\Response;
use Symfony\Component\Mime\Address;
use Symfony\Component\PasswordHasher\Hasher\UserPasswordHasherInterface;
use Symfony\Component\Routing\Annotation\Route;
use Symfony\Component\Security\Core\Security;
use Symfony\Contracts\Translation\TranslatorInterface;
use SymfonyCasts\Bundle\VerifyEmail\Exception\VerifyEmailExceptionInterface;
class RegistrationController extends AbstractController
{
public function __construct(
private EmailVerifier $emailVerifier,
private TranslatorInterface $translator,
private ManagerRegistry $managerRegistry,
private EmailManager $emailManager,
private Security $security,
private GeneralSettingsList $getGeneralSettings
) {}
#[Route('/register', name: 'app_register')]
public function register(Request $request, UserPasswordHasherInterface $userPasswordHasher): Response
{
try {
$isRegistration = $this->getGeneralSettings->getIsRegistration();
if ($isRegistration === false) throw $this->createNotFoundException('404');
} catch (InvalidArgumentException $exception) {
$this->addFlash('danger', $this->translator->trans('errorPage.errorOccurred', [], 'security'));
$this->redirectToRoute('app_login');
}
if ($this->security->getUser()) return $this->redirectToRoute('admin_dashboard');
$userRole = $this->managerRegistry->getRepository(RoleManagement::class)
->findOneBy(['roleName' => RoleEnum::STANDARD_USER->value]);
$user = new User();
$form = $this->createForm(RegistrationFormType::class, $user);
$form->handleRequest($request);
if ($form->isSubmitted() && $form->isValid()) {
// encode the plain password
$user->setPassword(
$userPasswordHasher->hashPassword(
$user,
$form->get('plainPassword')->getData()
)
);
$user->addUserRole($userRole);
$em = $this->managerRegistry->getManager();
$em->persist($user);
$em->flush();
// TODO email
$this->emailVerifier->sendEmailConfirmation('app_verify_email', $user,
(new TemplatedEmail())
->from(new Address($this->emailManager->getFromEmail(), 'Korys'))
->to($user->getEmail())
->subject('Please Confirm your Email')
->htmlTemplate('security/registration/confirmation_email.html.twig')
);
$this->addFlash('success', $this->translator->trans('register.successfulMsg', [], 'security'));
return $this->redirectToRoute('app_login');
}
return $this->render('security/registration/register.html.twig', [
'registrationForm' => $form->createView(),
]);
}
#[Route('/verify/email', name: 'app_verify_email')]
public function verifyUserEmail(Request $request, UserRepository $userRepository): Response
{
$id = $request->get('id');
if (null === $id) {
return $this->redirectToRoute('app_login');
}
$user = $userRepository->find($id);
if (null === $user) {
return $this->redirectToRoute('app_login');
}
// validate email confirmation link, sets User::isVerified=true and persists
try {
$this->emailVerifier->handleEmailConfirmation($request, $user);
} catch (VerifyEmailExceptionInterface $exception) {
$this->addFlash('verify_email_error', $this->translator->trans($exception->getReason(), [], 'VerifyEmailBundle'));
return $this->redirectToRoute('app_login');
}
$this->addFlash('success', $this->translator->trans('register.emailHasBeenVerified', [], 'security'));
return $this->redirectToRoute('app_login');
}
#[Route('/verify/user', name: 'app_verify_user')]
public function verifyAdminUser(Request $request, UserRepository $userRepository, UserPasswordHasherInterface $passwordHasher): Response
{
$id = $request->get('id');
if (null === $id) {
return $this->redirectToRoute('app_login');
}
$user = $userRepository->find($id);
if (null === $user) {
return $this->redirectToRoute('app_login');
}
$form = $this->createForm(ChangePasswordFormType::class, $user);
$form->handleRequest($request);
if ($form->isSubmitted() && $form->isValid()) {
$plainPassword = $form->get('plainPassword')->getData();
$encoded = $passwordHasher->hashPassword($user, $plainPassword);
$user->setIsVerified(true);
$user->setPassword($encoded);
$em = $this->managerRegistry->getManager();
$em->persist($user);
$em->flush();
return $this->redirectToRoute('app_login');
}
return $this->render('security/reset_password/reset.html.twig', [
'form' => $form->createView(),
]);
}
#[Route('/verify/new-email', name: 'app_verify_new_email')]
public function verifyNewUserEmail(Request $request, UserRepository $userRepository, HashService $hashService): Response
{
$id = $request->get('id');
if (!$id) return $this->redirectToRoute('app_login');
$decryptedId = $hashService->hashString($id, 'decrypt');
$user = $userRepository->find($decryptedId);
if (!$user) return $this->redirectToRoute('app_login');
try {
$user->setIsActive(true);
$em = $this->managerRegistry->getManager();
$em->flush();
} catch (VerifyEmailExceptionInterface $exception) {
$this->addFlash('verify_email_error', $this->translator->trans($exception->getReason(), [], 'VerifyEmailBundle'));
return $this->redirectToRoute('app_login');
}
$this->addFlash('success', $this->translator->trans('register.emailHasBeenVerified', [], 'security'));
return $this->redirectToRoute('app_login');
}
}