mirror of
https://github.com/heartcombo/devise.git
synced 2026-04-06 03:01:21 -04:00
We need to be sure require_no_authentication runs before other user filters that may call some Devise helper (ie current_xxx).
54 lines
1.3 KiB
Ruby
54 lines
1.3 KiB
Ruby
class RegistrationsController < ApplicationController
|
|
prepend_before_filter :require_no_authentication, :only => [ :new, :create ]
|
|
prepend_before_filter :authenticate_scope!, :only => [:edit, :update, :destroy]
|
|
include Devise::Controllers::InternalHelpers
|
|
|
|
# GET /resource/sign_in
|
|
def new
|
|
build_resource
|
|
render_with_scope :new
|
|
end
|
|
|
|
# POST /resource/sign_up
|
|
def create
|
|
build_resource
|
|
|
|
if resource.save
|
|
flash[:"#{resource_name}_signed_up"] = true
|
|
set_flash_message :notice, :signed_up
|
|
sign_in_and_redirect(resource_name, resource)
|
|
else
|
|
render_with_scope :new
|
|
end
|
|
end
|
|
|
|
# GET /resource/edit
|
|
def edit
|
|
render_with_scope :edit
|
|
end
|
|
|
|
# PUT /resource
|
|
def update
|
|
if self.resource.update_with_password(params[resource_name])
|
|
set_flash_message :notice, :updated
|
|
redirect_to after_sign_in_path_for(self.resource)
|
|
else
|
|
render_with_scope :edit
|
|
end
|
|
end
|
|
|
|
# DELETE /resource
|
|
def destroy
|
|
self.resource.destroy
|
|
set_flash_message :notice, :destroyed
|
|
sign_out_and_redirect(self.resource)
|
|
end
|
|
|
|
protected
|
|
|
|
# Authenticates the current scope and dup the resource
|
|
def authenticate_scope!
|
|
send(:"authenticate_#{resource_name}!")
|
|
self.resource = send(:"current_#{resource_name}").dup
|
|
end
|
|
end |