Guest User

Untitled

a guest
Oct 19th, 2017
81
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.35 KB | None | 0 0
  1. OrdersController.class_eval do
  2. before_filter :check_authorization
  3.  
  4. private
  5.  
  6. def check_authorization
  7. session[:access_token] ||= params[:token]
  8. order = current_order || Order.find_by_number(params[:id])
  9.  
  10. if order
  11. authorize! :edit, order, session[:access_token]
  12. else
  13. authorize! :create, Order
  14. end
  15. end
  16.  
  17. end
Add Comment
Please, Sign In to add comment