Total Complexity | 8 |
Total Lines | 52 |
Duplicated Lines | 0 % |
Changes | 2 | ||
Bugs | 0 | Features | 0 |
1 | <?php |
||
11 | class AskForAccessCode |
||
12 | { |
||
13 | /** |
||
14 | * Handle an incoming request. |
||
15 | * |
||
16 | * @param \Illuminate\Http\Request $request |
||
17 | * @param \Closure $next |
||
18 | * @return mixed |
||
19 | */ |
||
20 | public function handle(Request $request, Closure $next) |
||
21 | { |
||
22 | $magicLink = MagicLink::getValidMagicLinkByToken($request->route('token')); |
||
|
|||
23 | |||
24 | if (!$magicLink || is_null($magicLink->access_code ?? null)) { |
||
25 | return $next($request); |
||
26 | } |
||
27 | |||
28 | if ($this->isAccessCodeValid($request->route('token'), $request->get('download-plan-access-code'))) { |
||
29 | // access code is valid |
||
30 | return redirect($request->url())->withCookie( |
||
31 | cookie( |
||
32 | 'magic-link-access-code', |
||
33 | encrypt($request->get('download-plan-access-code')), |
||
34 | 0, |
||
35 | '/' |
||
36 | ) |
||
37 | ); |
||
38 | } |
||
39 | |||
40 | try { |
||
41 | $accessCode = decrypt($request->cookie('magic-link-access-code')); |
||
42 | |||
43 | // Validate access_code |
||
44 | if ($this->isAccessCodeValid($request->route('token'), $accessCode)) { |
||
45 | return $next($request); |
||
46 | } |
||
47 | } catch (DecryptException $e) { |
||
48 | // empty value in cookie |
||
49 | } |
||
50 | |||
51 | return response(view('magiclink::ask-for-access-code-form'), 403); |
||
52 | } |
||
53 | |||
54 | private function isAccessCodeValid(string $token, ?string $accessCode): bool |
||
63 | } |
||
64 | } |
||
65 |