@@ -126,14 +126,14 @@ |
||
| 126 | 126 | setcookie($this->sessionName, '', 0, ini_get('session.cookie_path'), ini_get('session.cookie_domain'), filter_var(ini_get('session.cookie_secure'), FILTER_VALIDATE_BOOLEAN), filter_var(ini_get('session.cookie_httponly'), FILTER_VALIDATE_BOOLEAN)); |
| 127 | 127 | } else { |
| 128 | 128 | setcookie($this->sessionName, '', |
| 129 | - [ |
|
| 130 | - 'expires' => 0, |
|
| 131 | - 'path' => $this->getCookiePath(), |
|
| 132 | - 'domain' => ini_get('session.cookie_domain'), |
|
| 133 | - 'secure' => filter_var(ini_get('session.cookie_secure'), FILTER_VALIDATE_BOOLEAN), |
|
| 134 | - 'httponly' => filter_var(ini_get('session.cookie_httponly'), FILTER_VALIDATE_BOOLEAN), |
|
| 135 | - 'samesite' => $this->getCookieSameSite(), |
|
| 136 | - ] |
|
| 129 | + [ |
|
| 130 | + 'expires' => 0, |
|
| 131 | + 'path' => $this->getCookiePath(), |
|
| 132 | + 'domain' => ini_get('session.cookie_domain'), |
|
| 133 | + 'secure' => filter_var(ini_get('session.cookie_secure'), FILTER_VALIDATE_BOOLEAN), |
|
| 134 | + 'httponly' => filter_var(ini_get('session.cookie_httponly'), FILTER_VALIDATE_BOOLEAN), |
|
| 135 | + 'samesite' => $this->getCookieSameSite(), |
|
| 136 | + ] |
|
| 137 | 137 | ); |
| 138 | 138 | } |
| 139 | 139 | } |
@@ -56,12 +56,12 @@ discard block |
||
| 56 | 56 | |
| 57 | 57 | // SSL強制時は, httpsのみにアクセス制限する |
| 58 | 58 | $accessControl = [ |
| 59 | - ['path' => '^/%eccube_admin_route%/login', 'roles' => 'IS_AUTHENTICATED_ANONYMOUSLY'], |
|
| 60 | - ['path' => '^/%eccube_admin_route%/', 'roles' => 'ROLE_ADMIN'], |
|
| 61 | - ['path' => '^/mypage/login', 'roles' => 'IS_AUTHENTICATED_ANONYMOUSLY'], |
|
| 62 | - ['path' => '^/mypage/withdraw_complete', 'roles' => 'IS_AUTHENTICATED_ANONYMOUSLY'], |
|
| 63 | - ['path' => '^/mypage/change', 'roles' => 'IS_AUTHENTICATED_FULLY'], |
|
| 64 | - ['path' => '^/mypage/', 'roles' => 'ROLE_USER'], |
|
| 59 | + ['path' => '^/%eccube_admin_route%/login', 'roles' => 'IS_AUTHENTICATED_ANONYMOUSLY'], |
|
| 60 | + ['path' => '^/%eccube_admin_route%/', 'roles' => 'ROLE_ADMIN'], |
|
| 61 | + ['path' => '^/mypage/login', 'roles' => 'IS_AUTHENTICATED_ANONYMOUSLY'], |
|
| 62 | + ['path' => '^/mypage/withdraw_complete', 'roles' => 'IS_AUTHENTICATED_ANONYMOUSLY'], |
|
| 63 | + ['path' => '^/mypage/change', 'roles' => 'IS_AUTHENTICATED_FULLY'], |
|
| 64 | + ['path' => '^/mypage/', 'roles' => 'ROLE_USER'], |
|
| 65 | 65 | ]; |
| 66 | 66 | if ($forceSSL) { |
| 67 | 67 | foreach ($accessControl as &$control) { |
@@ -71,7 +71,7 @@ discard block |
||
| 71 | 71 | |
| 72 | 72 | // security.ymlでは制御できないため, ここで定義する. |
| 73 | 73 | $container->prependExtensionConfig('security', [ |
| 74 | - 'access_control' => $accessControl, |
|
| 74 | + 'access_control' => $accessControl, |
|
| 75 | 75 | ]); |
| 76 | 76 | } |
| 77 | 77 | |