Skip to content

Commit

Permalink
deny access unverified clients
Browse files Browse the repository at this point in the history
  • Loading branch information
elyerr committed Dec 29, 2023
1 parent 312ec1d commit 00cc8da
Show file tree
Hide file tree
Showing 2 changed files with 32 additions and 1 deletion.
6 changes: 5 additions & 1 deletion app/Http/Kernel.php
Original file line number Diff line number Diff line change
Expand Up @@ -35,13 +35,15 @@ class Kernel extends HttpKernel
\Illuminate\Session\Middleware\StartSession::class,
\Illuminate\View\Middleware\ShareErrorsFromSession::class,
\App\Http\Middleware\VerifyCsrfToken::class,
\Illuminate\Routing\Middleware\SubstituteBindings::class,
\Illuminate\Routing\Middleware\SubstituteBindings::class,
\Laravel\Passport\Http\Middleware\CreateFreshApiToken::class,
\App\Http\Middleware\VerifyAccount::class,
],

'api' => [
'throttle:api',
\Illuminate\Routing\Middleware\SubstituteBindings::class,
\App\Http\Middleware\VerifyAccount::class,
],
];

Expand Down Expand Up @@ -69,5 +71,7 @@ class Kernel extends HttpKernel
'scope' => \App\Http\Middleware\CheckForAnyScope::class,
'wants.json' => \App\Http\Middleware\ResponseIsJson::class,
'authorize' => \App\Http\Middleware\DenyGrantType::class,
'verify.account' => \App\Http\Middleware\VerifyAccount::class,

];
}
27 changes: 27 additions & 0 deletions app/Http/Middleware/VerifyAccount.php
Original file line number Diff line number Diff line change
@@ -0,0 +1,27 @@
<?php

namespace App\Http\Middleware;

use Closure;
use Elyerr\ApiResponse\Exceptions\ReportError;
use Illuminate\Http\Request;

class VerifyAccount
{
/**
* Handle an incoming request.
*
* @param \Illuminate\Http\Request $request
* @param \Closure(\Illuminate\Http\Request): (\Illuminate\Http\Response|\Illuminate\Http\RedirectResponse) $next
* @return \Illuminate\Http\Response|\Illuminate\Http\RedirectResponse
*/
public function handle(Request $request, Closure $next)
{
if ($request->user() and $request->user()->isClient() and !$request->user()->verified_at ) {
throw new ReportError(__('please, check your email address to activate your account'), 403);
}

return $next($request);

}
}

0 comments on commit 00cc8da

Please sign in to comment.