Files
MLeveque c139d6bb1c feat: initialisation du projet
- Ajout des dépendances dans `composer.json` (Doctrine, Twig, Security, etc.).
- Configuration de l’environnement de développement via `.env`.
- Mise en place d’un modèle de base pour les assets avec `app.js` et `app.css`.
- Création du fichier de configuration `asset_mapper.yaml`.
- Ajout de la configuration Docker via `compose.yaml` (PostgreSQL, Mailer).
- Ajout des fichiers de base pour les templates Twig (`base.html.twig`).
- Mise à jour des ignores dans le fichier `.gitignore`.
- Fichiers supplémentaires pour le cache, les tests et les bootstrap Symfony.
2026-02-22 19:23:55 +01:00

40 lines
1.5 KiB
YAML

security:
# https://symfony.com/doc/current/security.html#registering-the-user-hashing-passwords
password_hashers:
Symfony\Component\Security\Core\User\PasswordAuthenticatedUserInterface: 'auto'
# https://symfony.com/doc/current/security.html#loading-the-user-the-user-provider
providers:
users_in_memory: { memory: null }
firewalls:
dev:
# Ensure dev tools and static assets are always allowed
pattern: ^/(_profiler|_wdt|assets|build)/
security: false
main:
lazy: true
provider: users_in_memory
# Activate different ways to authenticate:
# https://symfony.com/doc/current/security.html#the-firewall
# https://symfony.com/doc/current/security/impersonating_user.html
# switch_user: true
# Note: Only the *first* matching rule is applied
access_control:
# - { path: ^/admin, roles: ROLE_ADMIN }
# - { path: ^/profile, roles: ROLE_USER }
when@test:
security:
password_hashers:
# Password hashers are resource-intensive by design to ensure security.
# In tests, it's safe to reduce their cost to improve performance.
Symfony\Component\Security\Core\User\PasswordAuthenticatedUserInterface:
algorithm: auto
cost: 4 # Lowest possible value for bcrypt
time_cost: 3 # Lowest possible value for argon
memory_cost: 10 # Lowest possible value for argon