vendor/api-platform/core/src/Symfony/EventListener/RespondListener.php line 50

  1. <?php
  2. /*
  3.  * This file is part of the API Platform project.
  4.  *
  5.  * (c) Kévin Dunglas <dunglas@gmail.com>
  6.  *
  7.  * For the full copyright and license information, please view the LICENSE
  8.  * file that was distributed with this source code.
  9.  */
  10. declare(strict_types=1);
  11. namespace ApiPlatform\Symfony\EventListener;
  12. use ApiPlatform\Api\IriConverterInterface;
  13. use ApiPlatform\Api\UrlGeneratorInterface;
  14. use ApiPlatform\Metadata\HttpOperation;
  15. use ApiPlatform\Metadata\Put;
  16. use ApiPlatform\Metadata\Resource\Factory\ResourceMetadataCollectionFactoryInterface;
  17. use ApiPlatform\Util\OperationRequestInitiatorTrait;
  18. use ApiPlatform\Util\RequestAttributesExtractor;
  19. use Symfony\Component\HttpFoundation\Response;
  20. use Symfony\Component\HttpKernel\Event\ViewEvent;
  21. /**
  22.  * Builds the response object.
  23.  *
  24.  * @author Kévin Dunglas <dunglas@gmail.com>
  25.  */
  26. final class RespondListener
  27. {
  28.     use OperationRequestInitiatorTrait;
  29.     public const METHOD_TO_CODE = [
  30.         'POST' => Response::HTTP_CREATED,
  31.         'DELETE' => Response::HTTP_NO_CONTENT,
  32.     ];
  33.     public function __construct(
  34.         ResourceMetadataCollectionFactoryInterface $resourceMetadataFactory null,
  35.         private readonly ?IriConverterInterface $iriConverter null,
  36.     ) {
  37.         $this->resourceMetadataCollectionFactory $resourceMetadataFactory;
  38.     }
  39.     /**
  40.      * Creates a Response to send to the client according to the requested format.
  41.      */
  42.     public function onKernelView(ViewEvent $event): void
  43.     {
  44.         $controllerResult $event->getControllerResult();
  45.         $request $event->getRequest();
  46.         $operation $this->initializeOperation($request);
  47.         $attributes RequestAttributesExtractor::extractAttributes($request);
  48.         if ($controllerResult instanceof Response && ($attributes['respond'] ?? false)) {
  49.             $event->setResponse($controllerResult);
  50.             return;
  51.         }
  52.         if ($controllerResult instanceof Response || !($attributes['respond'] ?? $request->attributes->getBoolean('_api_respond'))) {
  53.             return;
  54.         }
  55.         $headers = [
  56.             'Content-Type' => sprintf('%s; charset=utf-8'$request->getMimeType($request->getRequestFormat())),
  57.             'Vary' => 'Accept',
  58.             'X-Content-Type-Options' => 'nosniff',
  59.             'X-Frame-Options' => 'deny',
  60.         ];
  61.         $status $operation?->getStatus();
  62.         if ($sunset $operation?->getSunset()) {
  63.             $headers['Sunset'] = (new \DateTimeImmutable($sunset))->format(\DateTime::RFC1123);
  64.         }
  65.         if ($acceptPatch $operation?->getAcceptPatch()) {
  66.             $headers['Accept-Patch'] = $acceptPatch;
  67.         }
  68.         $method $request->getMethod();
  69.         if (
  70.             $this->iriConverter &&
  71.             $operation &&
  72.             ($operation->getExtraProperties()['is_alternate_resource_metadata'] ?? false)
  73.             && 301 === $operation->getStatus()
  74.         ) {
  75.             $status 301;
  76.             $headers['Location'] = $this->iriConverter->getIriFromResource($request->attributes->get('data'), UrlGeneratorInterface::ABS_PATH$operation);
  77.         } elseif (HttpOperation::METHOD_PUT === $method && !($attributes['previous_data'] ?? null) && null === $status && ($operation instanceof Put && ($operation->getAllowCreate() ?? false))) {
  78.             $status Response::HTTP_CREATED;
  79.         }
  80.         $status ??= self::METHOD_TO_CODE[$request->getMethod()] ?? Response::HTTP_OK;
  81.         if ($request->attributes->has('_api_write_item_iri')) {
  82.             $headers['Content-Location'] = $request->attributes->get('_api_write_item_iri');
  83.             if ((Response::HTTP_CREATED === $status || (300 <= $status && $status 400)) && HttpOperation::METHOD_POST === $method) {
  84.                 $headers['Location'] = $request->attributes->get('_api_write_item_iri');
  85.             }
  86.         }
  87.         $event->setResponse(new Response(
  88.             $controllerResult,
  89.             $status,
  90.             $headers
  91.         ));
  92.     }
  93. }