|
6 | 6 |
|
7 | 7 | use PHPUnit\Framework\TestCase; |
8 | 8 | use Symfony\Component\BrowserKit\AbstractBrowser; |
| 9 | +use Symfony\Component\BrowserKit\Cookie; |
9 | 10 | use Symfony\Component\HttpFoundation\Response; |
| 11 | +use Symfony\Component\Security\Csrf\TokenStorage\SessionTokenStorage; |
10 | 12 |
|
11 | 13 | use function method_exists; |
12 | 14 | use function Safe\sprintf; |
@@ -50,6 +52,44 @@ protected static function getRequestClient(): AbstractBrowser |
50 | 52 | )); |
51 | 53 | } |
52 | 54 |
|
| 55 | + final public function generateCsrfToken(string $tokenId): string |
| 56 | + { |
| 57 | + $client = self::getRequestClient(); |
| 58 | + |
| 59 | + $cookie = $client->getCookieJar()->get('MOCKSESSID'); |
| 60 | + |
| 61 | + // create a new session object |
| 62 | + $container = $client->getContainer(); |
| 63 | + $session = $container->get('session.factory')->createSession(); |
| 64 | + |
| 65 | + if ($cookie) { |
| 66 | + // get the session id from the session cookie if it exists |
| 67 | + $session->setId($cookie->getValue()); |
| 68 | + $session->start(); |
| 69 | + } else { |
| 70 | + // or create a new session id and a session cookie |
| 71 | + $session->start(); |
| 72 | + $session->save(); |
| 73 | + |
| 74 | + $sessionCookie = new Cookie( |
| 75 | + $session->getName(), |
| 76 | + $session->getId(), |
| 77 | + null, |
| 78 | + null, |
| 79 | + 'localhost', |
| 80 | + ); |
| 81 | + $client->getCookieJar()->set($sessionCookie); |
| 82 | + } |
| 83 | + |
| 84 | + $container = $client->getContainer(); |
| 85 | + $tokenGenerator = $container->get('security.csrf.token_generator'); |
| 86 | + $csrfToken = $tokenGenerator->generateToken(); |
| 87 | + $session->set(SessionTokenStorage::SESSION_NAMESPACE . '/' . $tokenId, $csrfToken); |
| 88 | + $session->save(); |
| 89 | + |
| 90 | + return $csrfToken; |
| 91 | + } |
| 92 | + |
53 | 93 | final protected function build(string $method, string $uri): RequestBuilder |
54 | 94 | { |
55 | 95 | if (method_exists($this, 'findUser')) { |
|
0 commit comments