[Security] Authenticator methods description #20090
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
At first i just wanted to reword this sentence i found missleading.. in the Custom Authenticator page.
I think it should be:
Because it can be the login route for some Authenticators, but it's not for stateless requests, Header tokens, remember me...
I then realize the "if / if" was the reason I found things a bit unclear at first sight.
I read this as some sort of "if / else" ... but the first "if" englobes the whole paragraph (it's true again in the second one).
So i tried to rewrite a bit (using the docblocks from the AuthenticatorInterface as inspiration)