12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364 |
- <?php
- /*
- * This file is part of the Symfony package.
- *
- * (c) Fabien Potencier <fabien@symfony.com>
- *
- * For the full copyright and license information, please view the LICENSE
- * file that was distributed with this source code.
- */
- namespace Symfony\Component\Security\Core\Encoder;
- use Symfony\Component\Security\Core\Exception\BadCredentialsException;
- /**
- * PlaintextPasswordEncoder does not do any encoding but is useful in testing environments.
- *
- * As this encoder is not cryptographically secure, usage of it in production environments is discouraged.
- *
- * @author Fabien Potencier <fabien@symfony.com>
- */
- class PlaintextPasswordEncoder extends BasePasswordEncoder
- {
- private $ignorePasswordCase;
- /**
- * @param bool $ignorePasswordCase Compare password case-insensitive
- */
- public function __construct(bool $ignorePasswordCase = false)
- {
- $this->ignorePasswordCase = $ignorePasswordCase;
- }
- /**
- * {@inheritdoc}
- */
- public function encodePassword(string $raw, ?string $salt)
- {
- if ($this->isPasswordTooLong($raw)) {
- throw new BadCredentialsException('Invalid password.');
- }
- return $this->mergePasswordAndSalt($raw, $salt);
- }
- /**
- * {@inheritdoc}
- */
- public function isPasswordValid(string $encoded, string $raw, ?string $salt)
- {
- if ($this->isPasswordTooLong($raw)) {
- return false;
- }
- $pass2 = $this->mergePasswordAndSalt($raw, $salt);
- if (!$this->ignorePasswordCase) {
- return $this->comparePasswords($encoded, $pass2);
- }
- return $this->comparePasswords(strtolower($encoded), strtolower($pass2));
- }
- }
|