AuthMiddleware
in package
Per-request authentication validation.
Replicates myUser::initialize() behavior:
- Check session timeout (30 min default)
- Validate authenticated user still exists and is active
- Cache user object on SfUserAdapter
- Set atom_authenticated cookie for reverse proxy cache bypass
- Set user on AclService for permission checks
- Prevent session fixation (regenerate session ID on login/logout transitions)
Table of Contents
Methods
- handle() : mixed
Methods
handle()
public
handle(Request $request, Closure $next) : mixed
Parameters
- $request : Request
- $next : Closure