recipes/omniauth.rb in rails3_devise_wizard-0.2.5 vs recipes/omniauth.rb in rails3_devise_wizard-0.2.8
- old
+ new
@@ -1,15 +1,141 @@
-gem 'omniauth', '~> 0.2.0'
+# Application template recipe for the rails3_devise_wizard. Check for a newer version here:
-after_bundler do
- file 'app/controllers/sessions_controller.rb', "class SessionsController < ApplicationController\n def callback\n auth # Do what you want with the auth hash!\n end\n\n def auth; request.env['omniauth.auth'] end\nend"
- route "match '/auth/:provider/callback', :to => 'sessions#callback'"
+if config['omniauth']
+ gem 'omniauth', '>= 0.2.4'
+ recipes.delete('omniauth')
+if config['omniauth']
+ after_bundler do
+ create_file 'config/initializers/omniauth.rb', <<-RUBY
+Rails.application.config.middleware.use OmniAuth::Builder do
+ provider :provider, 'KEY', 'SECRET'
+ end
+ append_file '.gitignore' do <<-TXT
+# keep OmniAuth service provider secrets out of the Git repo
+ end
+ inject_into_file 'config/routes.rb', :before => 'end' do
+ "resources :users, :only => [ :show, :edit, :update ]\n"
+ end
+ inject_into_file 'config/routes.rb', :before => 'end' do
+ "match '/auth/:provider/callback' => 'sessions#create'\n"
+ end
+ inject_into_file 'config/routes.rb', :before => 'end' do
+ "match '/signout' => 'sessions#destroy', :as => :signout\n"
+ end
+ inject_into_file 'config/routes.rb', :before => 'end' do
+ "match '/signin' => 'sessions#new', :as => :signin\n"
+ end
+ inject_into_file 'config/routes.rb', :before => 'end' do
+ "match '/auth/failure' => 'sessions#failure'\n"
+ end
+ inject_into_file 'app/models/user.rb', :before => 'end' do <<-RUBY
+ def self.create_with_omniauth(auth)
+ create! do |user|
+ user.provider = auth['provider']
+ user.uid = auth['uid']
+ = auth['user_info']['name'] if auth['user_info']['name'] # Twitter, Google, Yahoo, GitHub
+ = auth['user_info']['email'] if auth['user_info']['email'] # Google, Yahoo, GitHub
+ = auth['extra']['user_hash']['name'] if auth['extra']['user_hash']['name'] # Facebook
+ = auth['extra']['user_hash']['email'] if auth['extra']['user_hash']['email'] # Facebook
+ end
+ end
+ end
+ create_file 'app/controllers/sessions_controller.rb', <<-RUBY
+class SessionsController < ApplicationController
+ def new
+ redirect_to '/auth/provider}'
+ end
+ def create
+ auth = request.env["omniauth.auth"]
+ user = User.where(:provider => auth['provider'],
+ :uid => auth['uid']).first || User.create_with_omniauth(auth)
+ session[:user_id] =
+ if !
+ redirect_to edit_user_path(user), :alert => "Please enter your email address."
+ else
+ redirect_to root_url, :notice => 'Signed in!'
+ end
+ end
+ def destroy
+ session[:user_id] = nil
+ redirect_to root_url, :notice => 'Signed out!'
+ end
+ def failure
+ redirect_to root_url, :alert => "Authentication error: #{params[:message].humanize}"
+ end
+ end
+ inject_into_file 'app/controllers/application_controller.rb', :before => 'end' do <<-RUBY
+ helper_method :current_user
+ helper_method :user_signed_in?
+ helper_method :correct_user?
+ private
+ def current_user
+ begin
+ @current_user ||= User.find(session[:user_id]) if session[:user_id]
+ rescue Mongoid::Errors::DocumentNotFound
+ nil
+ end
+ end
+ def user_signed_in?
+ return true if current_user
+ end
+ def correct_user?
+ @user = User.find(params[:id])
+ unless current_user == @user
+ redirect_to root_url, :alert => "Access denied."
+ end
+ end
+ def authenticate_user!
+ if !current_user
+ redirect_to root_url, :alert => 'You need to sign in for access to this page.'
+ end
+ end
+ end
+ end
name: OmniAuth
-description: "A basic setup of OmniAuth with a SessionsController to handle the request and callback phases."
-author: mbleigh
+description: "Utilize OmniAuth for authentication."
+author: fortuity
exclusive: authentication
category: authentication
+ - omniauth:
+ type: boolean
+ prompt: Would you like to use OmniAuth for authentication?
+ - provider:
+ type: multiple_choice
+ prompt: "Which service provider will you use?"
+ choices: [["Twitter", twitter], ["Facebook", facebook], ["GitHub", github], ["LinkedIn", linked_in], ["Other", provider]]