forked from CakeDC/users
-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathAuthorizationServiceLoader.php
More file actions
55 lines (48 loc) · 1.56 KB
/
Copy pathAuthorizationServiceLoader.php
File metadata and controls
55 lines (48 loc) · 1.56 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
<?php
declare(strict_types=1);
/**
* Copyright 2010 - 2019, Cake Development Corporation (https://www.cakedc.com)
*
* Licensed under The MIT License
* Redistributions of files must retain the above copyright notice.
*
* @copyright Copyright 2010 - 2018, Cake Development Corporation (https://www.cakedc.com)
* @license MIT License (http://www.opensource.org/licenses/mit-license.php)
*/
namespace CakeDC\Users\Loader;
use Authorization\AuthorizationService;
use Authorization\Policy\MapResolver;
use Authorization\Policy\OrmResolver;
use Authorization\Policy\ResolverCollection;
use Cake\Core\Configure;
use Cake\Http\ServerRequest;
use CakeDC\Auth\Policy\CollectionPolicy;
use CakeDC\Auth\Policy\RbacPolicy;
use CakeDC\Auth\Policy\SuperuserPolicy;
use Psr\Http\Message\ServerRequestInterface;
class AuthorizationServiceLoader
{
/**
* Load the authorization service with OrmResolver and Map Resolver for RbacPolicy
*
* @param \Psr\Http\Message\ServerRequestInterface $request The request.
* @return \Authorization\AuthorizationService
*/
public function __invoke(ServerRequestInterface $request)
{
$map = new MapResolver();
$map->map(
ServerRequest::class,
new CollectionPolicy([
SuperuserPolicy::class,
new RbacPolicy(Configure::read('Auth.RbacPolicy')),
])
);
$orm = new OrmResolver();
$resolver = new ResolverCollection([
$map,
$orm,
]);
return new AuthorizationService($resolver);
}
}