谁能解释“解放所有权”?
我正在通过Railscasts - 7 Security tips,并想知道“当期用户”的执行情况如何?
# projects_controller.rb
def show
@project = current_user.projects.find(params[:id])
end
谢谢!
谁能解释“解放所有权”?
我正在通过Railscasts - 7 Security tips,并想知道“当期用户”的执行情况如何?
# projects_controller.rb
def show
@project = current_user.projects.find(params[:id])
end
谢谢!
采用像“当前用户”这样的方法首先需要某种认证制度。 我建议你查看devise 或omniauth。 (Facebook、Twitter等节)。
关于目前的用户方法,正如我所说的那样,它需要一种更为复杂的认证系统和用户模式,才能使之具有意义。 但它被定义为应用主计长的助手方法。
class ApplicationController < ActionController::Base
protect_from_forgery
helper_method :current_user
private
def current_user
@current_user ||= User.find(session[:user_id]) if session[:user_id]
end
end
希望帮助!
定义用户。
class User
has_many :projects
end
如果你表示已执行,否则就会看看现成的源代码:
实际上,我认识到,答案非常简单,它处于附属于该员额的铁路。
初步检索@project
。
def show
@project = Project.find(params[:id])
end
所需要的是利用活跃的协会这样做。
@project = current_user.projects.find(params[:id])
collection_select and select Rails helpers: Which one should I use? I can t see a difference in both ways. Both helpers take a collection and generates options tags inside a select tag. Is there a ...
We ve deployed our rails app to EC2. In our setup, we have two proxies on small instances behind round-robin DNS. These run nginx load balancers for a dynamically growing and shrinking farm of web ...
As part of a web application I need an auth-code to pass as a URL parameter. I am currently using (in Rails) : Digest::SHA1.hexdigest((object_id + rand(255)).to_s) Which provides long strings like : ...
I ve installed RubyCAS-Client version 2.1.0 as a plugin within a rails app. It s working, but I d like to remove the ?ticket= in the url. Is this possible?
I have a these 3 models: class User < ActiveRecord::Base has_many :permissions, :dependent => :destroy has_many :roles, :through => :permissions end class Permission < ActiveRecord::...
I m building an xml document from a hash. The xml attributes need to be in order. How can this be accomplished? hash.to_xml
guys which text editor is good for Rubyonrails? i m using Windows and i was using E-Texteditor but its not free n its expired now can anyone plese tell me any free texteditor? n which one is best an ...
I’m developing an application dedicated to generate statistical reports, I would like that user after saving their stat report they save sql queries too. To do that I wrote the following module: ...