tab/app/controllers/application_controller.rb

21 lines
494 B
Ruby
Raw Normal View History

2015-09-07 09:44:48 +00:00
class ApplicationController < ActionController::Base
# Prevent CSRF attacks by raising an exception.
# For APIs, you may want to use :null_session instead.
protect_from_forgery with: :exception
2015-09-08 15:18:38 +00:00
rescue_from CanCan::AccessDenied do |exception|
redirect_to root_url, alert: exception.message
end
2015-09-09 09:31:34 +00:00
def current_client
@current_client ||= identify_client
end
private
def identify_client
key = request.headers["X-API-KEY"]
Client.find_by key: key if key
end
2015-09-07 09:44:48 +00:00
end