diff --git a/Authorization_with_Pundit/.gitignore b/Authorization_with_Pundit/.gitignore new file mode 100644 index 0000000..34c191b --- /dev/null +++ b/Authorization_with_Pundit/.gitignore @@ -0,0 +1,19 @@ +# See https://help.github.com/articles/ignoring-files for more about ignoring files. +# +# If you find yourself ignoring temporary files generated by your text editor +# or operating system, you probably want to add a global ignore instead: +# git config --global core.excludesfile '~/.gitignore_global' + +# Ignore bundler config. +/.bundle + +# Ignore the default SQLite database. +/db/*.sqlite3 +/db/*.sqlite3-journal + +# Ignore all logfiles and tempfiles. +/log/* +!/log/.keep +/tmp + +.idea/ \ No newline at end of file diff --git a/Authorization_with_Pundit/Gemfile b/Authorization_with_Pundit/Gemfile new file mode 100644 index 0000000..73fd10b --- /dev/null +++ b/Authorization_with_Pundit/Gemfile @@ -0,0 +1,39 @@ +source 'https://rubygems.org' +ruby '2.1.5' + +gem 'rails', '4.2.4' +gem 'thin' + +gem 'pundit' +gem 'clearance' + +gem 'bootstrap-sass' + +group :development do + gem 'sqlite3' + gem 'annotate' + gem 'better_errors' + gem 'binding_of_caller' +end + +group :production do + gem 'rails_12factor' + gem 'pg' +end + +# Use SCSS for stylesheets +gem 'sass-rails', '~> 5.0' +# Use Uglifier as compressor for JavaScript assets +gem 'uglifier', '>= 1.3.0' +# Use CoffeeScript for .coffee assets and views +gem 'coffee-rails', '~> 4.1.0' +# See https://github.com/rails/execjs#readme for more supported runtimes +# gem 'therubyracer', platforms: :ruby + +# Use jquery as the JavaScript library +gem 'jquery-rails' +# Turbolinks makes following links in your web application faster. Read more: https://github.com/rails/turbolinks +gem 'turbolinks' + +# Windows does not include zoneinfo files, so bundle the tzinfo-data gem +gem 'tzinfo-data', platforms: [:mingw, :mswin, :x64_mingw, :jruby] diff --git a/Authorization_with_Pundit/Gemfile.lock b/Authorization_with_Pundit/Gemfile.lock new file mode 100644 index 0000000..b5f88db --- /dev/null +++ b/Authorization_with_Pundit/Gemfile.lock @@ -0,0 +1,183 @@ +GEM + remote: https://rubygems.org/ + specs: + actionmailer (4.2.4) + actionpack (= 4.2.4) + actionview (= 4.2.4) + activejob (= 4.2.4) + mail (~> 2.5, >= 2.5.4) + rails-dom-testing (~> 1.0, >= 1.0.5) + actionpack (4.2.4) + actionview (= 4.2.4) + activesupport (= 4.2.4) + rack (~> 1.6) + rack-test (~> 0.6.2) + rails-dom-testing (~> 1.0, >= 1.0.5) + rails-html-sanitizer (~> 1.0, >= 1.0.2) + actionview (4.2.4) + activesupport (= 4.2.4) + builder (~> 3.1) + erubis (~> 2.7.0) + rails-dom-testing (~> 1.0, >= 1.0.5) + rails-html-sanitizer (~> 1.0, >= 1.0.2) + activejob (4.2.4) + activesupport (= 4.2.4) + globalid (>= 0.3.0) + activemodel (4.2.4) + activesupport (= 4.2.4) + builder (~> 3.1) + activerecord (4.2.4) + activemodel (= 4.2.4) + activesupport (= 4.2.4) + arel (~> 6.0) + activesupport (4.2.4) + i18n (~> 0.7) + json (~> 1.7, >= 1.7.7) + minitest (~> 5.1) + thread_safe (~> 0.3, >= 0.3.4) + tzinfo (~> 1.1) + annotate (2.6.10) + activerecord (>= 3.2, <= 4.3) + rake (~> 10.4) + arel (6.0.3) + autoprefixer-rails (6.0.3) + execjs + json + bcrypt (3.1.10-x86-mingw32) + better_errors (2.1.1) + coderay (>= 1.0.0) + erubis (>= 2.6.6) + rack (>= 0.9.0) + binding_of_caller (0.7.2) + debug_inspector (>= 0.0.1) + bootstrap-sass (3.3.5.1) + autoprefixer-rails (>= 5.0.0.1) + sass (>= 3.3.0) + builder (3.2.2) + clearance (1.11.0) + bcrypt + email_validator (~> 1.4) + rails (>= 3.1) + coderay (1.1.0) + coffee-rails (4.1.0) + coffee-script (>= 2.2.0) + railties (>= 4.0.0, < 5.0) + coffee-script (2.4.1) + coffee-script-source + execjs + coffee-script-source (1.9.1.1) + daemons (1.2.3) + debug_inspector (0.0.2) + email_validator (1.6.0) + activemodel + erubis (2.7.0) + eventmachine (1.0.8) + execjs (2.6.0) + globalid (0.3.6) + activesupport (>= 4.1.0) + i18n (0.7.0) + jquery-rails (4.0.5) + rails-dom-testing (~> 1.0) + railties (>= 4.2.0) + thor (>= 0.14, < 2.0) + json (1.8.3) + loofah (2.0.3) + nokogiri (>= 1.5.9) + mail (2.6.3) + mime-types (>= 1.16, < 3) + mime-types (2.6.2) + mini_portile (0.6.2) + minitest (5.8.1) + nokogiri (1.6.6.2-x86-mingw32) + mini_portile (~> 0.6.0) + pg (0.18.3-x86-mingw32) + pundit (1.0.1) + activesupport (>= 3.0.0) + rack (1.6.4) + rack-test (0.6.3) + rack (>= 1.0) + rails (4.2.4) + actionmailer (= 4.2.4) + actionpack (= 4.2.4) + actionview (= 4.2.4) + activejob (= 4.2.4) + activemodel (= 4.2.4) + activerecord (= 4.2.4) + activesupport (= 4.2.4) + bundler (>= 1.3.0, < 2.0) + railties (= 4.2.4) + sprockets-rails + rails-deprecated_sanitizer (1.0.3) + activesupport (>= 4.2.0.alpha) + rails-dom-testing (1.0.7) + activesupport (>= 4.2.0.beta, < 5.0) + nokogiri (~> 1.6.0) + rails-deprecated_sanitizer (>= 1.0.1) + rails-html-sanitizer (1.0.2) + loofah (~> 2.0) + rails_12factor (0.0.3) + rails_serve_static_assets + rails_stdout_logging + rails_serve_static_assets (0.0.4) + rails_stdout_logging (0.0.4) + railties (4.2.4) + actionpack (= 4.2.4) + activesupport (= 4.2.4) + rake (>= 0.8.7) + thor (>= 0.18.1, < 2.0) + rake (10.4.2) + sass (3.4.18) + sass-rails (5.0.4) + railties (>= 4.0.0, < 5.0) + sass (~> 3.1) + sprockets (>= 2.8, < 4.0) + sprockets-rails (>= 2.0, < 4.0) + tilt (>= 1.1, < 3) + sprockets (3.3.4) + rack (~> 1.0) + sprockets-rails (2.3.3) + actionpack (>= 3.0) + activesupport (>= 3.0) + sprockets (>= 2.8, < 4.0) + sqlite3 (1.3.10-x86-mingw32) + thin (1.6.4) + daemons (~> 1.0, >= 1.0.9) + eventmachine (~> 1.0, >= 1.0.4) + rack (~> 1.0) + thor (0.19.1) + thread_safe (0.3.5) + tilt (2.0.1) + turbolinks (2.5.3) + coffee-rails + tzinfo (1.2.2) + thread_safe (~> 0.1) + tzinfo-data (1.2015.6) + tzinfo (>= 1.0.0) + uglifier (2.7.2) + execjs (>= 0.3.0) + json (>= 1.8.0) + +PLATFORMS + x86-mingw32 + +DEPENDENCIES + annotate + better_errors + binding_of_caller + bootstrap-sass + clearance + coffee-rails (~> 4.1.0) + jquery-rails + pg + pundit + rails (= 4.2.4) + rails_12factor + sass-rails (~> 5.0) + sqlite3 + thin + turbolinks + tzinfo-data + uglifier (>= 1.3.0) + +BUNDLED WITH + 1.10.6 diff --git a/Authorization_with_Pundit/Procfile b/Authorization_with_Pundit/Procfile new file mode 100644 index 0000000..feb3eaa --- /dev/null +++ b/Authorization_with_Pundit/Procfile @@ -0,0 +1 @@ +web: bundle exec rails server thin -p $PORT -e $RACK_ENV \ No newline at end of file diff --git a/Authorization_with_Pundit/Rakefile b/Authorization_with_Pundit/Rakefile new file mode 100644 index 0000000..ba6b733 --- /dev/null +++ b/Authorization_with_Pundit/Rakefile @@ -0,0 +1,6 @@ +# Add your own tasks in files placed in lib/tasks ending in .rake, +# for example lib/tasks/capistrano.rake, and they will automatically be available to Rake. + +require File.expand_path('../config/application', __FILE__) + +Rails.application.load_tasks diff --git a/Authorization_with_Pundit/app/assets/images/.keep b/Authorization_with_Pundit/app/assets/images/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/app/assets/javascripts/application.js b/Authorization_with_Pundit/app/assets/javascripts/application.js new file mode 100644 index 0000000..e6d683a --- /dev/null +++ b/Authorization_with_Pundit/app/assets/javascripts/application.js @@ -0,0 +1,15 @@ +// This is a manifest file that'll be compiled into application.js, which will include all the files +// listed below. +// +// Any JavaScript/Coffee file within this directory, lib/assets/javascripts, vendor/assets/javascripts, +// or any plugin's vendor/assets/javascripts directory can be referenced here using a relative path. +// +// It's not advisable to add code directly here, but if you do, it'll appear at the bottom of the +// compiled file. +// +// Read Sprockets README (https://github.com/rails/sprockets#sprockets-directives) for details +// about supported directives. +// +//= require jquery +//= require jquery_ujs +//= require turbolinks \ No newline at end of file diff --git a/Authorization_with_Pundit/app/assets/stylesheets/application.scss b/Authorization_with_Pundit/app/assets/stylesheets/application.scss new file mode 100644 index 0000000..7433156 --- /dev/null +++ b/Authorization_with_Pundit/app/assets/stylesheets/application.scss @@ -0,0 +1,10 @@ +@import 'bootstrap-sprockets'; +@import 'bootstrap'; + +#footer { + margin-top: 50px; +} + +.alert-notice { + @extend .alert-warning; +} \ No newline at end of file diff --git a/Authorization_with_Pundit/app/controllers/application_controller.rb b/Authorization_with_Pundit/app/controllers/application_controller.rb new file mode 100644 index 0000000..4bb7d9d --- /dev/null +++ b/Authorization_with_Pundit/app/controllers/application_controller.rb @@ -0,0 +1,22 @@ +class ApplicationController < ActionController::Base + include Clearance::Controller + include Pundit + # Prevent CSRF attacks by raising an exception. + # For APIs, you may want to use :null_session instead. + protect_from_forgery with: :exception + + before_action :require_login + + rescue_from Pundit::NotAuthorizedError, with: :user_not_authorized + + private + + def user_not_authorized(exception) + #flash[:warning] = "You are not authorized to perform this action." + + policy_name = exception.policy.class.to_s.underscore + + flash[:warning] = t "#{policy_name}.#{exception.query}", scope: "pundit", default: :default + redirect_to(request.referrer || root_path) + end +end diff --git a/Authorization_with_Pundit/app/controllers/concerns/.keep b/Authorization_with_Pundit/app/controllers/concerns/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/app/controllers/posts_controller.rb b/Authorization_with_Pundit/app/controllers/posts_controller.rb new file mode 100644 index 0000000..9864490 --- /dev/null +++ b/Authorization_with_Pundit/app/controllers/posts_controller.rb @@ -0,0 +1,71 @@ +class PostsController < ApplicationController + before_action :set_post, only: [:show, :edit, :update, :destroy] + after_action :verify_authorized, only: [:destroy] + after_action :verify_policy_scoped, only: [:user_posts] + + # GET /posts + def index + @posts = Post.all + end + + # GET /posts/1 + def show + end + + # GET /posts/new + def new + @post = Post.new + end + + # GET /posts/1/edit + def edit + end + + # POST /posts + def create + @post = Post.new + @post.update_attributes(permitted_attributes(@post)) + + if @post.save + redirect_to @post, notice: 'Post was successfully created.' + else + render :new + end + end + + # PATCH/PUT /posts/1 + def update + if @post.update(permitted_attributes(@post)) + redirect_to @post, notice: 'Post was successfully updated.' + else + render :edit + end + end + + # DELETE /posts/1 + def destroy + if @post.present? + authorize @post + @post.destroy + else + skip_authorization + end + + redirect_to posts_url, notice: 'Post was successfully destroyed.' + end + + def user_posts + @posts = policy_scope(Post) + end + + private + # Use callbacks to share common setup or constraints between actions. + def set_post + @post = Post.find_by(id: params[:id]) + end + + # Only allow a trusted parameter "white list" through. + def post_params + params.require(:post).permit(policy(@post).permitted_attributes) + end +end diff --git a/Authorization_with_Pundit/app/controllers/users_controller.rb b/Authorization_with_Pundit/app/controllers/users_controller.rb new file mode 100644 index 0000000..568dc24 --- /dev/null +++ b/Authorization_with_Pundit/app/controllers/users_controller.rb @@ -0,0 +1,8 @@ +class UsersController < ApplicationController + def update + @user = User.find(params[:id]) + @user.toggle!(:admin) + flash[:success] = 'OK!' + redirect_to root_path + end +end \ No newline at end of file diff --git a/Authorization_with_Pundit/app/helpers/application_helper.rb b/Authorization_with_Pundit/app/helpers/application_helper.rb new file mode 100644 index 0000000..de6be79 --- /dev/null +++ b/Authorization_with_Pundit/app/helpers/application_helper.rb @@ -0,0 +1,2 @@ +module ApplicationHelper +end diff --git a/Authorization_with_Pundit/app/helpers/posts_helper.rb b/Authorization_with_Pundit/app/helpers/posts_helper.rb new file mode 100644 index 0000000..a7b8cec --- /dev/null +++ b/Authorization_with_Pundit/app/helpers/posts_helper.rb @@ -0,0 +1,2 @@ +module PostsHelper +end diff --git a/Authorization_with_Pundit/app/mailers/.keep b/Authorization_with_Pundit/app/mailers/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/app/models/.keep b/Authorization_with_Pundit/app/models/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/app/models/concerns/.keep b/Authorization_with_Pundit/app/models/concerns/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/app/models/post.rb b/Authorization_with_Pundit/app/models/post.rb new file mode 100644 index 0000000..542c073 --- /dev/null +++ b/Authorization_with_Pundit/app/models/post.rb @@ -0,0 +1,3 @@ +class Post < ActiveRecord::Base + belongs_to :user +end diff --git a/Authorization_with_Pundit/app/models/user.rb b/Authorization_with_Pundit/app/models/user.rb new file mode 100644 index 0000000..d92c62f --- /dev/null +++ b/Authorization_with_Pundit/app/models/user.rb @@ -0,0 +1,4 @@ +class User < ActiveRecord::Base + include Clearance::User + has_many :posts +end diff --git a/Authorization_with_Pundit/app/policies/application_policy.rb b/Authorization_with_Pundit/app/policies/application_policy.rb new file mode 100644 index 0000000..cf5d077 --- /dev/null +++ b/Authorization_with_Pundit/app/policies/application_policy.rb @@ -0,0 +1,54 @@ +class ApplicationPolicy + attr_reader :user, :record + + def initialize(user, record) + raise Pundit::NotAuthorizedError, "must be logged in" unless user + @user = user + @record = record + end + + def index? + false + end + + def show? + scope.where(:id => record.id).exists? + end + + def create? + false + end + + def new? + create? + end + + def update? + false + end + + def edit? + update? + end + + def destroy? + false + end + + def scope + Pundit.policy_scope!(user, record.class) + end + + class Scope + attr_reader :user, :scope + + def initialize(user, scope) + @user = user + @scope = scope + end + + def resolve + scope + end + end +end diff --git a/Authorization_with_Pundit/app/policies/post_policy.rb b/Authorization_with_Pundit/app/policies/post_policy.rb new file mode 100644 index 0000000..5ec2268 --- /dev/null +++ b/Authorization_with_Pundit/app/policies/post_policy.rb @@ -0,0 +1,19 @@ +class PostPolicy < ApplicationPolicy + class Scope < Scope + def resolve + scope.where(user: user) + end + end + + def permitted_attributes + if user.admin? + [:title, :body, :special] + else + [:title, :body] + end + end + + def destroy? + user.admin? || record.user == user + end +end \ No newline at end of file diff --git a/Authorization_with_Pundit/app/views/layouts/application.html.erb b/Authorization_with_Pundit/app/views/layouts/application.html.erb new file mode 100644 index 0000000..bf5d0a5 --- /dev/null +++ b/Authorization_with_Pundit/app/views/layouts/application.html.erb @@ -0,0 +1,50 @@ + + + + + PunditAuth + <%= stylesheet_link_tag 'application', media: 'all', 'data-turbolinks-track' => true %> + <%= javascript_include_tag 'application', 'data-turbolinks-track' => true %> + <%= csrf_meta_tags %> + + + + + +
+
+ <% flash.each do |key, value| %> +
<%= value %>
+ <% end %> +
+ + <% if current_user %> +
+ Admin: <%= current_user.admin? %>
+ <%= link_to 'Toggle admin rights', user_path(current_user), method: :patch, class: 'btn btn-info' %> +
+ <% end %> + + <%= yield %> +
+ + + + + diff --git a/Authorization_with_Pundit/app/views/posts/_form.html.erb b/Authorization_with_Pundit/app/views/posts/_form.html.erb new file mode 100644 index 0000000..1c936bb --- /dev/null +++ b/Authorization_with_Pundit/app/views/posts/_form.html.erb @@ -0,0 +1,31 @@ +<%= form_for(@post) do |f| %> + <% if @post.errors.any? %> +
+

<%= pluralize(@post.errors.count, "error") %> prohibited this post from being saved:

+ + +
+ <% end %> + +
+ <%= f.label :title %>
+ <%= f.text_field :title %> +
+
+ <%= f.label :body %>
+ <%= f.text_area :body %> +
+ +
+ <%= f.label :special %>
+ <%= f.check_box :special %> +
+ +
+ <%= f.submit %> +
+<% end %> diff --git a/Authorization_with_Pundit/app/views/posts/_list.html.erb b/Authorization_with_Pundit/app/views/posts/_list.html.erb new file mode 100644 index 0000000..890e3c9 --- /dev/null +++ b/Authorization_with_Pundit/app/views/posts/_list.html.erb @@ -0,0 +1,18 @@ + + + + + + + + + + + + <%= render @posts %> + +
TitleBodySpecial?
+ +
+ +<%= link_to 'New Post', new_post_path %> \ No newline at end of file diff --git a/Authorization_with_Pundit/app/views/posts/_post.html.erb b/Authorization_with_Pundit/app/views/posts/_post.html.erb new file mode 100644 index 0000000..290b1e7 --- /dev/null +++ b/Authorization_with_Pundit/app/views/posts/_post.html.erb @@ -0,0 +1,10 @@ + + <%= post.title %> + <%= post.body %> + <%= post.special? %> + <%= link_to 'Show', post %> + <%= link_to 'Edit', edit_post_path(post) %> + <% if true %> + <%= link_to 'Destroy', post, method: :delete, data: { confirm: 'Are you sure?' } %> + <% end %> + \ No newline at end of file diff --git a/Authorization_with_Pundit/app/views/posts/edit.html.erb b/Authorization_with_Pundit/app/views/posts/edit.html.erb new file mode 100644 index 0000000..f1e9acb --- /dev/null +++ b/Authorization_with_Pundit/app/views/posts/edit.html.erb @@ -0,0 +1,6 @@ +

Editing Post

+ +<%= render 'form' %> + +<%= link_to 'Show', @post %> | +<%= link_to 'Back', posts_path %> diff --git a/Authorization_with_Pundit/app/views/posts/index.html.erb b/Authorization_with_Pundit/app/views/posts/index.html.erb new file mode 100644 index 0000000..9d56f38 --- /dev/null +++ b/Authorization_with_Pundit/app/views/posts/index.html.erb @@ -0,0 +1,3 @@ +

Listing Posts

+ +<%= render 'list' %> diff --git a/Authorization_with_Pundit/app/views/posts/new.html.erb b/Authorization_with_Pundit/app/views/posts/new.html.erb new file mode 100644 index 0000000..3e5f187 --- /dev/null +++ b/Authorization_with_Pundit/app/views/posts/new.html.erb @@ -0,0 +1,5 @@ +

New Post

+ +<%= render 'form' %> + +<%= link_to 'Back', posts_path %> diff --git a/Authorization_with_Pundit/app/views/posts/show.html.erb b/Authorization_with_Pundit/app/views/posts/show.html.erb new file mode 100644 index 0000000..9587d84 --- /dev/null +++ b/Authorization_with_Pundit/app/views/posts/show.html.erb @@ -0,0 +1,12 @@ +

+ Title: + <%= @post.title %> +

+ +

+ Body: + <%= @post.body %> +

+ +<%= link_to 'Edit', edit_post_path(@post) %> | +<%= link_to 'Back', posts_path %> diff --git a/Authorization_with_Pundit/app/views/posts/user_posts.html.erb b/Authorization_with_Pundit/app/views/posts/user_posts.html.erb new file mode 100644 index 0000000..746ccbb --- /dev/null +++ b/Authorization_with_Pundit/app/views/posts/user_posts.html.erb @@ -0,0 +1,3 @@ +

Your Posts

+ +<%= render 'list' %> diff --git a/Authorization_with_Pundit/bin/bundle b/Authorization_with_Pundit/bin/bundle new file mode 100644 index 0000000..e3c2f62 --- /dev/null +++ b/Authorization_with_Pundit/bin/bundle @@ -0,0 +1,3 @@ +#!/usr/bin/env ruby.exe +ENV['BUNDLE_GEMFILE'] ||= File.expand_path('../../Gemfile', __FILE__) +load Gem.bin_path('bundler', 'bundle') diff --git a/Authorization_with_Pundit/bin/rails b/Authorization_with_Pundit/bin/rails new file mode 100644 index 0000000..c9a0f38 --- /dev/null +++ b/Authorization_with_Pundit/bin/rails @@ -0,0 +1,4 @@ +#!/usr/bin/env ruby.exe +APP_PATH = File.expand_path('../../config/application', __FILE__) +require_relative '../config/boot' +require 'rails/commands' diff --git a/Authorization_with_Pundit/bin/rake b/Authorization_with_Pundit/bin/rake new file mode 100644 index 0000000..f6ed5a2 --- /dev/null +++ b/Authorization_with_Pundit/bin/rake @@ -0,0 +1,4 @@ +#!/usr/bin/env ruby.exe +require_relative '../config/boot' +require 'rake' +Rake.application.run diff --git a/Authorization_with_Pundit/bin/setup b/Authorization_with_Pundit/bin/setup new file mode 100644 index 0000000..2d041ee --- /dev/null +++ b/Authorization_with_Pundit/bin/setup @@ -0,0 +1,29 @@ +#!/usr/bin/env ruby.exe +require 'pathname' + +# path to your application root. +APP_ROOT = Pathname.new File.expand_path('../../', __FILE__) + +Dir.chdir APP_ROOT do + # This script is a starting point to setup your application. + # Add necessary setup steps to this file: + + puts "== Installing dependencies ==" + system "gem install bundler --conservative" + system "bundle check || bundle install" + + # puts "\n== Copying sample files ==" + # unless File.exist?("config/database.yml") + # system "cp config/database.yml.sample config/database.yml" + # end + + puts "\n== Preparing database ==" + system "bin/rake db:setup" + + puts "\n== Removing old logs and tempfiles ==" + system "rm -f log/*" + system "rm -rf tmp/cache" + + puts "\n== Restarting application server ==" + system "touch tmp/restart.txt" +end diff --git a/Authorization_with_Pundit/config.ru b/Authorization_with_Pundit/config.ru new file mode 100644 index 0000000..bd83b25 --- /dev/null +++ b/Authorization_with_Pundit/config.ru @@ -0,0 +1,4 @@ +# This file is used by Rack-based servers to start the application. + +require ::File.expand_path('../config/environment', __FILE__) +run Rails.application diff --git a/Authorization_with_Pundit/config/application.rb b/Authorization_with_Pundit/config/application.rb new file mode 100644 index 0000000..fbf6b38 --- /dev/null +++ b/Authorization_with_Pundit/config/application.rb @@ -0,0 +1,35 @@ +require File.expand_path('../boot', __FILE__) + +require "rails" +# Pick the frameworks you want: +require "active_model/railtie" +require "active_job/railtie" +require "active_record/railtie" +require "action_controller/railtie" +require "action_mailer/railtie" +require "action_view/railtie" +require "sprockets/railtie" +# require "rails/test_unit/railtie" + +# Require the gems listed in Gemfile, including any gems +# you've limited to :test, :development, or :production. +Bundler.require(*Rails.groups) + +module PunditAuth + class Application < Rails::Application + # Settings in config/environments/* take precedence over those specified here. + # Application configuration should go into files in config/initializers + # -- all .rb files in that directory are automatically loaded. + + # Set Time.zone default to the specified zone and make Active Record auto-convert to this zone. + # Run "rake -D time" for a list of tasks for finding time zone names. Default is UTC. + # config.time_zone = 'Central Time (US & Canada)' + + # The default locale is :en and all translations from config/locales/*.rb,yml are auto loaded. + # config.i18n.load_path += Dir[Rails.root.join('my', 'locales', '*.{rb,yml}').to_s] + # config.i18n.default_locale = :de + + # Do not swallow errors in after_commit/after_rollback callbacks. + config.active_record.raise_in_transactional_callbacks = true + end +end diff --git a/Authorization_with_Pundit/config/boot.rb b/Authorization_with_Pundit/config/boot.rb new file mode 100644 index 0000000..6b750f0 --- /dev/null +++ b/Authorization_with_Pundit/config/boot.rb @@ -0,0 +1,3 @@ +ENV['BUNDLE_GEMFILE'] ||= File.expand_path('../../Gemfile', __FILE__) + +require 'bundler/setup' # Set up gems listed in the Gemfile. diff --git a/Authorization_with_Pundit/config/database.yml b/Authorization_with_Pundit/config/database.yml new file mode 100644 index 0000000..1c1a37c --- /dev/null +++ b/Authorization_with_Pundit/config/database.yml @@ -0,0 +1,25 @@ +# SQLite version 3.x +# gem install sqlite3 +# +# Ensure the SQLite 3 gem is defined in your Gemfile +# gem 'sqlite3' +# +default: &default + adapter: sqlite3 + pool: 5 + timeout: 5000 + +development: + <<: *default + database: db/development.sqlite3 + +# Warning: The database defined as "test" will be erased and +# re-generated from your development database when you run "rake". +# Do not set this db to the same as development or production. +test: + <<: *default + database: db/test.sqlite3 + +production: + <<: *default + database: db/production.sqlite3 diff --git a/Authorization_with_Pundit/config/environment.rb b/Authorization_with_Pundit/config/environment.rb new file mode 100644 index 0000000..ee8d90d --- /dev/null +++ b/Authorization_with_Pundit/config/environment.rb @@ -0,0 +1,5 @@ +# Load the Rails application. +require File.expand_path('../application', __FILE__) + +# Initialize the Rails application. +Rails.application.initialize! diff --git a/Authorization_with_Pundit/config/environments/development.rb b/Authorization_with_Pundit/config/environments/development.rb new file mode 100644 index 0000000..b55e214 --- /dev/null +++ b/Authorization_with_Pundit/config/environments/development.rb @@ -0,0 +1,41 @@ +Rails.application.configure do + # Settings specified here will take precedence over those in config/application.rb. + + # In the development environment your application's code is reloaded on + # every request. This slows down response time but is perfect for development + # since you don't have to restart the web server when you make code changes. + config.cache_classes = false + + # Do not eager load code on boot. + config.eager_load = false + + # Show full error reports and disable caching. + config.consider_all_requests_local = true + config.action_controller.perform_caching = false + + # Don't care if the mailer can't send. + config.action_mailer.raise_delivery_errors = false + + # Print deprecation notices to the Rails logger. + config.active_support.deprecation = :log + + # Raise an error on page load if there are pending migrations. + config.active_record.migration_error = :page_load + + # Debug mode disables concatenation and preprocessing of assets. + # This option may cause significant delays in view rendering with a large + # number of complex assets. + config.assets.debug = true + + # Asset digests allow you to set far-future HTTP expiration dates on all assets, + # yet still be able to expire them through the digest params. + config.assets.digest = true + + # Adds additional error checking when serving assets at runtime. + # Checks for improperly declared sprockets dependencies. + # Raises helpful error messages. + config.assets.raise_runtime_errors = true + + # Raises error for missing translations + # config.action_view.raise_on_missing_translations = true +end diff --git a/Authorization_with_Pundit/config/environments/production.rb b/Authorization_with_Pundit/config/environments/production.rb new file mode 100644 index 0000000..5c1b32e --- /dev/null +++ b/Authorization_with_Pundit/config/environments/production.rb @@ -0,0 +1,79 @@ +Rails.application.configure do + # Settings specified here will take precedence over those in config/application.rb. + + # Code is not reloaded between requests. + config.cache_classes = true + + # Eager load code on boot. This eager loads most of Rails and + # your application in memory, allowing both threaded web servers + # and those relying on copy on write to perform better. + # Rake tasks automatically ignore this option for performance. + config.eager_load = true + + # Full error reports are disabled and caching is turned on. + config.consider_all_requests_local = false + config.action_controller.perform_caching = true + + # Enable Rack::Cache to put a simple HTTP cache in front of your application + # Add `rack-cache` to your Gemfile before enabling this. + # For large-scale production use, consider using a caching reverse proxy like + # NGINX, varnish or squid. + # config.action_dispatch.rack_cache = true + + # Disable serving static files from the `/public` folder by default since + # Apache or NGINX already handles this. + config.serve_static_files = ENV['RAILS_SERVE_STATIC_FILES'].present? + + # Compress JavaScripts and CSS. + config.assets.js_compressor = :uglifier + # config.assets.css_compressor = :sass + + # Do not fallback to assets pipeline if a precompiled asset is missed. + config.assets.compile = false + + # Asset digests allow you to set far-future HTTP expiration dates on all assets, + # yet still be able to expire them through the digest params. + config.assets.digest = true + + # `config.assets.precompile` and `config.assets.version` have moved to config/initializers/assets.rb + + # Specifies the header that your server uses for sending files. + # config.action_dispatch.x_sendfile_header = 'X-Sendfile' # for Apache + # config.action_dispatch.x_sendfile_header = 'X-Accel-Redirect' # for NGINX + + # Force all access to the app over SSL, use Strict-Transport-Security, and use secure cookies. + # config.force_ssl = true + + # Use the lowest log level to ensure availability of diagnostic information + # when problems arise. + config.log_level = :debug + + # Prepend all log lines with the following tags. + # config.log_tags = [ :subdomain, :uuid ] + + # Use a different logger for distributed setups. + # config.logger = ActiveSupport::TaggedLogging.new(SyslogLogger.new) + + # Use a different cache store in production. + # config.cache_store = :mem_cache_store + + # Enable serving of images, stylesheets, and JavaScripts from an asset server. + # config.action_controller.asset_host = 'http://assets.example.com' + + # Ignore bad email addresses and do not raise email delivery errors. + # Set this to true and configure the email server for immediate delivery to raise delivery errors. + # config.action_mailer.raise_delivery_errors = false + + # Enable locale fallbacks for I18n (makes lookups for any locale fall back to + # the I18n.default_locale when a translation cannot be found). + config.i18n.fallbacks = true + + # Send deprecation notices to registered listeners. + config.active_support.deprecation = :notify + + # Use default logging formatter so that PID and timestamp are not suppressed. + config.log_formatter = ::Logger::Formatter.new + + # Do not dump schema after migrations. + config.active_record.dump_schema_after_migration = false +end diff --git a/Authorization_with_Pundit/config/environments/test.rb b/Authorization_with_Pundit/config/environments/test.rb new file mode 100644 index 0000000..1c19f08 --- /dev/null +++ b/Authorization_with_Pundit/config/environments/test.rb @@ -0,0 +1,42 @@ +Rails.application.configure do + # Settings specified here will take precedence over those in config/application.rb. + + # The test environment is used exclusively to run your application's + # test suite. You never need to work with it otherwise. Remember that + # your test database is "scratch space" for the test suite and is wiped + # and recreated between test runs. Don't rely on the data there! + config.cache_classes = true + + # Do not eager load code on boot. This avoids loading your whole application + # just for the purpose of running a single test. If you are using a tool that + # preloads Rails for running tests, you may have to set it to true. + config.eager_load = false + + # Configure static file server for tests with Cache-Control for performance. + config.serve_static_files = true + config.static_cache_control = 'public, max-age=3600' + + # Show full error reports and disable caching. + config.consider_all_requests_local = true + config.action_controller.perform_caching = false + + # Raise exceptions instead of rendering exception templates. + config.action_dispatch.show_exceptions = false + + # Disable request forgery protection in test environment. + config.action_controller.allow_forgery_protection = false + + # Tell Action Mailer not to deliver emails to the real world. + # The :test delivery method accumulates sent emails in the + # ActionMailer::Base.deliveries array. + config.action_mailer.delivery_method = :test + + # Randomize the order test cases are executed. + config.active_support.test_order = :random + + # Print deprecation notices to the stderr. + config.active_support.deprecation = :stderr + + # Raises error for missing translations + # config.action_view.raise_on_missing_translations = true +end diff --git a/Authorization_with_Pundit/config/initializers/assets.rb b/Authorization_with_Pundit/config/initializers/assets.rb new file mode 100644 index 0000000..01ef3e6 --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/assets.rb @@ -0,0 +1,11 @@ +# Be sure to restart your server when you modify this file. + +# Version of your assets, change this if you want to expire all your assets. +Rails.application.config.assets.version = '1.0' + +# Add additional assets to the asset load path +# Rails.application.config.assets.paths << Emoji.images_path + +# Precompile additional assets. +# application.js, application.css, and all non-JS/CSS in app/assets folder are already added. +# Rails.application.config.assets.precompile += %w( search.js ) diff --git a/Authorization_with_Pundit/config/initializers/backtrace_silencers.rb b/Authorization_with_Pundit/config/initializers/backtrace_silencers.rb new file mode 100644 index 0000000..59385cd --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/backtrace_silencers.rb @@ -0,0 +1,7 @@ +# Be sure to restart your server when you modify this file. + +# You can add backtrace silencers for libraries that you're using but don't wish to see in your backtraces. +# Rails.backtrace_cleaner.add_silencer { |line| line =~ /my_noisy_library/ } + +# You can also remove all the silencers if you're trying to debug a problem that might stem from framework code. +# Rails.backtrace_cleaner.remove_silencers! diff --git a/Authorization_with_Pundit/config/initializers/clearance.rb b/Authorization_with_Pundit/config/initializers/clearance.rb new file mode 100644 index 0000000..91ddfb4 --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/clearance.rb @@ -0,0 +1,3 @@ +Clearance.configure do |config| + config.mailer_sender = "reply@example.com" +end diff --git a/Authorization_with_Pundit/config/initializers/cookies_serializer.rb b/Authorization_with_Pundit/config/initializers/cookies_serializer.rb new file mode 100644 index 0000000..7f70458 --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/cookies_serializer.rb @@ -0,0 +1,3 @@ +# Be sure to restart your server when you modify this file. + +Rails.application.config.action_dispatch.cookies_serializer = :json diff --git a/Authorization_with_Pundit/config/initializers/filter_parameter_logging.rb b/Authorization_with_Pundit/config/initializers/filter_parameter_logging.rb new file mode 100644 index 0000000..4a994e1 --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/filter_parameter_logging.rb @@ -0,0 +1,4 @@ +# Be sure to restart your server when you modify this file. + +# Configure sensitive parameters which will be filtered from the log file. +Rails.application.config.filter_parameters += [:password] diff --git a/Authorization_with_Pundit/config/initializers/inflections.rb b/Authorization_with_Pundit/config/initializers/inflections.rb new file mode 100644 index 0000000..ac033bf --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/inflections.rb @@ -0,0 +1,16 @@ +# Be sure to restart your server when you modify this file. + +# Add new inflection rules using the following format. Inflections +# are locale specific, and you may define rules for as many different +# locales as you wish. All of these examples are active by default: +# ActiveSupport::Inflector.inflections(:en) do |inflect| +# inflect.plural /^(ox)$/i, '\1en' +# inflect.singular /^(ox)en/i, '\1' +# inflect.irregular 'person', 'people' +# inflect.uncountable %w( fish sheep ) +# end + +# These inflection rules are supported but not enabled by default: +# ActiveSupport::Inflector.inflections(:en) do |inflect| +# inflect.acronym 'RESTful' +# end diff --git a/Authorization_with_Pundit/config/initializers/mime_types.rb b/Authorization_with_Pundit/config/initializers/mime_types.rb new file mode 100644 index 0000000..dc18996 --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/mime_types.rb @@ -0,0 +1,4 @@ +# Be sure to restart your server when you modify this file. + +# Add new mime types for use in respond_to blocks: +# Mime::Type.register "text/richtext", :rtf diff --git a/Authorization_with_Pundit/config/initializers/session_store.rb b/Authorization_with_Pundit/config/initializers/session_store.rb new file mode 100644 index 0000000..f7c706b --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/session_store.rb @@ -0,0 +1,3 @@ +# Be sure to restart your server when you modify this file. + +Rails.application.config.session_store :cookie_store, key: '_PunditAuth_session' diff --git a/Authorization_with_Pundit/config/initializers/wrap_parameters.rb b/Authorization_with_Pundit/config/initializers/wrap_parameters.rb new file mode 100644 index 0000000..33725e9 --- /dev/null +++ b/Authorization_with_Pundit/config/initializers/wrap_parameters.rb @@ -0,0 +1,14 @@ +# Be sure to restart your server when you modify this file. + +# This file contains settings for ActionController::ParamsWrapper which +# is enabled by default. + +# Enable parameter wrapping for JSON. You can disable this by setting :format to an empty array. +ActiveSupport.on_load(:action_controller) do + wrap_parameters format: [:json] if respond_to?(:wrap_parameters) +end + +# To enable root element in JSON for ActiveRecord objects. +# ActiveSupport.on_load(:active_record) do +# self.include_root_in_json = true +# end diff --git a/Authorization_with_Pundit/config/locales/en.yml b/Authorization_with_Pundit/config/locales/en.yml new file mode 100644 index 0000000..212fe26 --- /dev/null +++ b/Authorization_with_Pundit/config/locales/en.yml @@ -0,0 +1,26 @@ +# Files in the config/locales directory are used for internationalization +# and are automatically loaded by Rails. If you want to use locales other +# than English, add the necessary files in this directory. +# +# To use the locales, use `I18n.t`: +# +# I18n.t 'hello' +# +# In views, this is aliased to just `t`: +# +# <%= t('hello') %> +# +# To use a different locale, set it with `I18n.locale`: +# +# I18n.locale = :es +# +# This would use the information in config/locales/es.yml. +# +# To learn more, please read the Rails Internationalization guide +# available at http://guides.rubyonrails.org/i18n.html. + +en: + pundit: + default: 'You cannot perform this action.' + post_policy: + destroy?: 'You cannot destroy this post!' diff --git a/Authorization_with_Pundit/config/routes.rb b/Authorization_with_Pundit/config/routes.rb new file mode 100644 index 0000000..8461bd8 --- /dev/null +++ b/Authorization_with_Pundit/config/routes.rb @@ -0,0 +1,65 @@ +Rails.application.routes.draw do + resources :posts do + collection do + get '/user_posts', to: 'posts#user_posts', as: :user + end + end + + resources :users, only: [:update] + + root to: 'posts#index' + # The priority is based upon order of creation: first created -> highest priority. + # See how all your routes lay out with "rake routes". + + # You can have the root of your site routed with "root" + # root 'welcome#index' + + # Example of regular route: + # get 'products/:id' => 'catalog#view' + + # Example of named route that can be invoked with purchase_url(id: product.id) + # get 'products/:id/purchase' => 'catalog#purchase', as: :purchase + + # Example resource route (maps HTTP verbs to controller actions automatically): + # resources :products + + # Example resource route with options: + # resources :products do + # member do + # get 'short' + # post 'toggle' + # end + # + # collection do + # get 'sold' + # end + # end + + # Example resource route with sub-resources: + # resources :products do + # resources :comments, :sales + # resource :seller + # end + + # Example resource route with more complex sub-resources: + # resources :products do + # resources :comments + # resources :sales do + # get 'recent', on: :collection + # end + # end + + # Example resource route with concerns: + # concern :toggleable do + # post 'toggle' + # end + # resources :posts, concerns: :toggleable + # resources :photos, concerns: :toggleable + + # Example resource route within a namespace: + # namespace :admin do + # # Directs /admin/products/* to Admin::ProductsController + # # (app/controllers/admin/products_controller.rb) + # resources :products + # end +end diff --git a/Authorization_with_Pundit/config/secrets.yml b/Authorization_with_Pundit/config/secrets.yml new file mode 100644 index 0000000..4b048cc --- /dev/null +++ b/Authorization_with_Pundit/config/secrets.yml @@ -0,0 +1,22 @@ +# Be sure to restart your server when you modify this file. + +# Your secret key is used for verifying the integrity of signed cookies. +# If you change this key, all old signed cookies will become invalid! + +# Make sure the secret is at least 30 characters and all random, +# no regular words or you'll be exposed to dictionary attacks. +# You can use `rake secret` to generate a secure secret key. + +# Make sure the secrets in this file are kept private +# if you're sharing your code publicly. + +development: + secret_key_base: 305f8206832903cbd4dca8febf10f2c06ceec4833fd0f5f73522fbb487af5c12da0bbc45e8e9656a481f482af2f4ceb96ab3d7eb4bf1d91bf27ee06ed008c08d + +test: + secret_key_base: 3dcf414182c5f0b95566081a5a9b537d94f880c089d37d09c987759313af74130e25c7981328674684346df6366d7120df6ef6d557bf410d9175eb4955d1f95a + +# Do not keep production secrets in the repository, +# instead read values from the environment. +production: + secret_key_base: <%= ENV["SECRET_KEY_BASE"] %> diff --git a/Authorization_with_Pundit/db/migrate/20150924150618_create_users.rb b/Authorization_with_Pundit/db/migrate/20150924150618_create_users.rb new file mode 100644 index 0000000..a61969b --- /dev/null +++ b/Authorization_with_Pundit/db/migrate/20150924150618_create_users.rb @@ -0,0 +1,14 @@ +class CreateUsers < ActiveRecord::Migration + def change + create_table :users do |t| + t.timestamps null: false + t.string :email, null: false + t.string :encrypted_password, limit: 128, null: false + t.string :confirmation_token, limit: 128 + t.string :remember_token, limit: 128, null: false + t.boolean :admin, default: false, null: false + t.index :email + t.index :remember_token + end + end +end diff --git a/Authorization_with_Pundit/db/migrate/20150924151025_create_posts.rb b/Authorization_with_Pundit/db/migrate/20150924151025_create_posts.rb new file mode 100644 index 0000000..691c505 --- /dev/null +++ b/Authorization_with_Pundit/db/migrate/20150924151025_create_posts.rb @@ -0,0 +1,10 @@ +class CreatePosts < ActiveRecord::Migration + def change + create_table :posts do |t| + t.string :title + t.text :body + + t.timestamps null: false + end + end +end diff --git a/Authorization_with_Pundit/db/migrate/20150924152323_add_user_id_to_posts.rb b/Authorization_with_Pundit/db/migrate/20150924152323_add_user_id_to_posts.rb new file mode 100644 index 0000000..d605e9f --- /dev/null +++ b/Authorization_with_Pundit/db/migrate/20150924152323_add_user_id_to_posts.rb @@ -0,0 +1,5 @@ +class AddUserIdToPosts < ActiveRecord::Migration + def change + add_reference :posts, :user, index: true, foreign_key: true + end +end diff --git a/Authorization_with_Pundit/db/migrate/20150924154338_add_special_to_posts.rb b/Authorization_with_Pundit/db/migrate/20150924154338_add_special_to_posts.rb new file mode 100644 index 0000000..1fa89fb --- /dev/null +++ b/Authorization_with_Pundit/db/migrate/20150924154338_add_special_to_posts.rb @@ -0,0 +1,5 @@ +class AddSpecialToPosts < ActiveRecord::Migration + def change + add_column :posts, :special, :boolean, default: false + end +end diff --git a/Authorization_with_Pundit/db/schema.rb b/Authorization_with_Pundit/db/schema.rb new file mode 100644 index 0000000..dede338 --- /dev/null +++ b/Authorization_with_Pundit/db/schema.rb @@ -0,0 +1,40 @@ +# encoding: UTF-8 +# This file is auto-generated from the current state of the database. Instead +# of editing this file, please use the migrations feature of Active Record to +# incrementally modify your database, and then regenerate this schema definition. +# +# Note that this schema.rb definition is the authoritative source for your +# database schema. If you need to create the application database on another +# system, you should be using db:schema:load, not running all the migrations +# from scratch. The latter is a flawed and unsustainable approach (the more migrations +# you'll amass, the slower it'll run and the greater likelihood for issues). +# +# It's strongly recommended that you check this file into your version control system. + +ActiveRecord::Schema.define(version: 20150924154338) do + + create_table "posts", force: :cascade do |t| + t.string "title" + t.text "body" + t.datetime "created_at", null: false + t.datetime "updated_at", null: false + t.integer "user_id" + t.boolean "special", default: false + end + + add_index "posts", ["user_id"], name: "index_posts_on_user_id" + + create_table "users", force: :cascade do |t| + t.datetime "created_at", null: false + t.datetime "updated_at", null: false + t.string "email", null: false + t.string "encrypted_password", limit: 128, null: false + t.string "confirmation_token", limit: 128 + t.string "remember_token", limit: 128, null: false + t.boolean "admin", default: false, null: false + end + + add_index "users", ["email"], name: "index_users_on_email" + add_index "users", ["remember_token"], name: "index_users_on_remember_token" + +end diff --git a/Authorization_with_Pundit/db/seeds.rb b/Authorization_with_Pundit/db/seeds.rb new file mode 100644 index 0000000..1829823 --- /dev/null +++ b/Authorization_with_Pundit/db/seeds.rb @@ -0,0 +1,11 @@ +# This file should contain all the record creation needed to seed the database with its default values. +# The data can then be loaded with the rake db:seed (or created alongside the db with db:setup). +# +# Examples: +# +# cities = City.create([{ name: 'Chicago' }, { name: 'Copenhagen' }]) +# Mayor.create(name: 'Emanuel', city: cities.first) + +20.times do |i| + Post.create({title: "Post #{i + 1}", body: 'test body', user_id: i > 10 ? 1 : 2}) +end diff --git a/Authorization_with_Pundit/lib/assets/.keep b/Authorization_with_Pundit/lib/assets/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/lib/tasks/.keep b/Authorization_with_Pundit/lib/tasks/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/log/.keep b/Authorization_with_Pundit/log/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/public/404.html b/Authorization_with_Pundit/public/404.html new file mode 100644 index 0000000..b612547 --- /dev/null +++ b/Authorization_with_Pundit/public/404.html @@ -0,0 +1,67 @@ + + + + The page you were looking for doesn't exist (404) + + + + + + +
+
+

The page you were looking for doesn't exist.

+

You may have mistyped the address or the page may have moved.

+
+

If you are the application owner check the logs for more information.

+
+ + diff --git a/Authorization_with_Pundit/public/422.html b/Authorization_with_Pundit/public/422.html new file mode 100644 index 0000000..a21f82b --- /dev/null +++ b/Authorization_with_Pundit/public/422.html @@ -0,0 +1,67 @@ + + + + The change you wanted was rejected (422) + + + + + + +
+
+

The change you wanted was rejected.

+

Maybe you tried to change something you didn't have access to.

+
+

If you are the application owner check the logs for more information.

+
+ + diff --git a/Authorization_with_Pundit/public/500.html b/Authorization_with_Pundit/public/500.html new file mode 100644 index 0000000..061abc5 --- /dev/null +++ b/Authorization_with_Pundit/public/500.html @@ -0,0 +1,66 @@ + + + + We're sorry, but something went wrong (500) + + + + + + +
+
+

We're sorry, but something went wrong.

+
+

If you are the application owner check the logs for more information.

+
+ + diff --git a/Authorization_with_Pundit/public/favicon.ico b/Authorization_with_Pundit/public/favicon.ico new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/public/robots.txt b/Authorization_with_Pundit/public/robots.txt new file mode 100644 index 0000000..3c9c7c0 --- /dev/null +++ b/Authorization_with_Pundit/public/robots.txt @@ -0,0 +1,5 @@ +# See http://www.robotstxt.org/robotstxt.html for documentation on how to use the robots.txt file +# +# To ban all spiders from the entire site uncomment the next two lines: +# User-agent: * +# Disallow: / diff --git a/Authorization_with_Pundit/vendor/assets/javascripts/.keep b/Authorization_with_Pundit/vendor/assets/javascripts/.keep new file mode 100644 index 0000000..e69de29 diff --git a/Authorization_with_Pundit/vendor/assets/stylesheets/.keep b/Authorization_with_Pundit/vendor/assets/stylesheets/.keep new file mode 100644 index 0000000..e69de29