|
18 | 18 | use Symfony\Component\Security\Core\User\InMemoryUserProvider;
|
19 | 19 | use Symfony\Component\Security\Http\AccessToken\AccessTokenExtractorInterface;
|
20 | 20 | use Symfony\Component\Security\Http\AccessToken\AccessTokenHandlerInterface;
|
| 21 | +use Symfony\Component\Security\Http\AccessToken\HeaderAccessTokenExtractor; |
21 | 22 | use Symfony\Component\Security\Http\Authenticator\AccessTokenAuthenticator;
|
22 | 23 | use Symfony\Component\Security\Http\Authenticator\FallbackUserLoader;
|
23 | 24 | use Symfony\Component\Security\Http\Authenticator\Passport\Badge\UserBadge;
|
@@ -159,4 +160,31 @@ public function testAuthenticateWithFallbackUserLoader()
|
159 | 160 |
|
160 | 161 | $this->assertEquals('test', $passport->getUser()->getUserIdentifier());
|
161 | 162 | }
|
| 163 | + |
| 164 | + /** |
| 165 | + * @dataProvider provideAccessTokenHeaderRegex |
| 166 | + */ |
| 167 | + public function testAccessTokenHeaderRegex(string $input, ?string $expectedToken) |
| 168 | + { |
| 169 | + // Given |
| 170 | + $extractor = new HeaderAccessTokenExtractor(); |
| 171 | + $request = Request::create('/test', 'GET', [], [], [], ['HTTP_AUTHORIZATION' => $input]); |
| 172 | + |
| 173 | + // When |
| 174 | + $token = $extractor->extractAccessToken($request); |
| 175 | + |
| 176 | + // Then |
| 177 | + $this->assertEquals($expectedToken, $token); |
| 178 | + } |
| 179 | + |
| 180 | + public function provideAccessTokenHeaderRegex(): array |
| 181 | + { |
| 182 | + return [ |
| 183 | + ['Bearer token', 'token'], |
| 184 | + ['Bearer mF_9.B5f-4.1JqM', 'mF_9.B5f-4.1JqM'], |
| 185 | + ['Bearer d3JvbmdfcmVnZXhwX2V4bWFwbGU=', 'd3JvbmdfcmVnZXhwX2V4bWFwbGU='], |
| 186 | + ['Bearer Not Valid', null], |
| 187 | + ['Bearer (NotOK123)', null], |
| 188 | + ]; |
| 189 | + } |
162 | 190 | }
|
0 commit comments