session = $session; $this->jsonFactory = $jsonFactory; $this->tfa = $tfa; $this->token = $token; } /** * Get current user * @return \Magento\User\Model\User|null */ private function getUser() { return $this->session->getUser(); } /** * @inheritdoc */ public function execute() { $via = $this->getRequest()->getParam('via'); $result = $this->jsonFactory->create(); try { $this->token->request($this->getUser(), $via); $res = ['success' => true]; } catch (\Exception $e) { $result->setHttpResponseCode(500); $res = ['success' => false, 'message' => $e->getMessage()]; } $result->setData($res); return $result; } /** * @inheritdoc */ protected function _isAllowed() { $user = $this->getUser(); return $user && $this->tfa->getProviderIsAllowed($user->getId(), Authy::CODE) && $this->tfa->getProvider(Authy::CODE)->isActive($user->getId()); } }