Sha256: 8da51021b7391d177bbbf37245ed618a4c7cfe69251672f1b1eefdc450cc5693

Contents?: true

Size: 1.94 KB

Versions: 69

Compression:

Stored size: 1.94 KB

Contents

require 'rbbt/util/misc'

require 'sinatra/base'

module Sinatra
  module RbbtAuth

    module Helpers
      def authorized?
        ! user.nil?
      end

      def authorize!
        return true if authorized?
        target_url = request.env["REQUEST_URI"]
        Log.warn{ "Unauthorized access to #{target_url}" }
        session[:target_url] = target_url
        redirect '/login' 
      end

      def logout!
        session[:user] = nil
      end

      def user
        session[:user]
      end
    end

    def self.registered(app)
      app.helpers RbbtAuth::Helpers

      if Rbbt.etc.web_users.exists?
        app.set :users, Rbbt.etc.web_users.yaml
      else
        app.set :users, {}
      end

      app.get '/login' do
        "<form class='login ui form' method='POST' action='/login'>" +
          "<div class='ui field'>" +
          "<label for='login_name' class='ui label'>Name: </label>" +
          "<input id='login_name' class='ui input' type='text' name='user'>" +
          "</div>" +
          "<div class='ui field'>" +
          "<label for='login_pass' class='ui label'>Pass: </label>" +
          "<input id='login_pass' class='ui input' type='password' name='pass'>" +
          "</div>" +
          "<input type='submit'>" +
        "</form>"
      end

      app.post '/login' do
        user = params[:user]
        pass = params[:pass]

        if settings.users.include?(user) and settings.users[user] == pass
          Log.warn{ "Successful login #{[user, pass] * ": "}" }
          session[:user] = user
          if session[:target_url]
            url = session.delete :target_url
            redirect url
          else
            redirect '/'
          end
        else
          Log.warn{ "Failed login attempt #{[user, pass] * ": "}" }
          session[:user] = nil
          redirect '/login'
        end
      end
      
      app.get '/logout' do
        session[:user] = nil
        redirect '/'
      end
    end
  end

end

Version data entries

69 entries across 69 versions & 1 rubygems

Version Path
rbbt-rest-1.8.71 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.70 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.69 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.68 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.67 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.66 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.65 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.64 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.63 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.62 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.61 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.60 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.59 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.58 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.57 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.56 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.55 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.53 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.52 lib/rbbt/rest/common/users.rb
rbbt-rest-1.8.51 lib/rbbt/rest/common/users.rb