| Total Complexity | 8 |
| Total Lines | 52 |
| Duplicated Lines | 0 % |
| Changes | 2 | ||
| Bugs | 0 | Features | 0 |
| 1 | <?php |
||
| 11 | class AskForAccessCode |
||
| 12 | { |
||
| 13 | /** |
||
| 14 | * Handle an incoming request. |
||
| 15 | * |
||
| 16 | * @param \Illuminate\Http\Request $request |
||
| 17 | * @param \Closure $next |
||
| 18 | * @return mixed |
||
| 19 | */ |
||
| 20 | public function handle(Request $request, Closure $next) |
||
| 21 | { |
||
| 22 | $magicLink = MagicLink::getValidMagicLinkByToken($request->route('token')); |
||
|
|
|||
| 23 | |||
| 24 | if (! $magicLink || is_null($magicLink->access_code ?? null)) { |
||
| 25 | return $next($request); |
||
| 26 | } |
||
| 27 | |||
| 28 | if ($this->isAccessCodeValid($request->route('token'), $request->get('download-plan-access-code'))) { |
||
| 29 | // access code is valid |
||
| 30 | return redirect($request->url())->withCookie( |
||
| 31 | cookie( |
||
| 32 | 'magic-link-access-code', |
||
| 33 | encrypt($request->get('download-plan-access-code')), |
||
| 34 | 0, |
||
| 35 | '/' |
||
| 36 | ) |
||
| 37 | ); |
||
| 38 | } |
||
| 39 | |||
| 40 | try { |
||
| 41 | $accessCode = decrypt($request->cookie('magic-link-access-code')); |
||
| 42 | |||
| 43 | // Validate access_code |
||
| 44 | if ($this->isAccessCodeValid($request->route('token'), $accessCode)) { |
||
| 45 | return $next($request); |
||
| 46 | } |
||
| 47 | } catch (DecryptException $e) { |
||
| 48 | // empty value in cookie |
||
| 49 | } |
||
| 50 | |||
| 51 | return response(view('magiclink::ask-for-access-code-form'), 403); |
||
| 52 | } |
||
| 53 | |||
| 54 | private function isAccessCodeValid(string $token, ?string $accessCode): bool |
||
| 63 | } |
||
| 64 | } |
||
| 65 |