]> git.immae.eu Git - github/wallabag/wallabag.git/blob - app/config/security.yml
576cfd25d7f7d41094f6c64004bd0c1ca93b143e
[github/wallabag/wallabag.git] / app / config / security.yml
1 security:
2 encoders:
3 FOS\UserBundle\Model\UserInterface: sha512
4
5 role_hierarchy:
6 ROLE_ADMIN: ROLE_USER
7 ROLE_SUPER_ADMIN: [ ROLE_USER, ROLE_ADMIN, ROLE_ALLOWED_TO_SWITCH ]
8
9 providers:
10 administrators:
11 entity: { class: WallabagUserBundle:User, property: username }
12 fos_userbundle:
13 id: fos_user.user_provider.username
14
15 # the main part of the security, where you can set up firewalls
16 # for specific sections of your app
17 firewalls:
18 oauth_token:
19 pattern: ^/oauth/v2/token
20 security: false
21
22 api:
23 pattern: /api/.*
24 fos_oauth: true
25 stateless: true
26 anonymous: true
27
28 login_firewall:
29 pattern: ^/login$
30 anonymous: ~
31
32 secured_area:
33 pattern: ^/
34 form_login:
35 provider: fos_userbundle
36 csrf_provider: security.csrf.token_manager
37
38 anonymous: true
39 remember_me:
40 key: "%secret%"
41 lifetime: 31536000
42 path: /
43 domain: ~
44
45 logout:
46 path: /logout
47 target: /
48
49 access_control:
50 - { path: ^/api/doc, roles: IS_AUTHENTICATED_ANONYMOUSLY }
51 - { path: ^/login, roles: IS_AUTHENTICATED_ANONYMOUSLY }
52 - { path: ^/register, role: IS_AUTHENTICATED_ANONYMOUSLY }
53 - { path: ^/resetting, role: IS_AUTHENTICATED_ANONYMOUSLY }
54 - { path: /(unread|starred|archive).xml$, roles: IS_AUTHENTICATED_ANONYMOUSLY }
55 - { path: ^/, roles: ROLE_USER }