]> git.openstreetmap.org Git - rails.git/blobdiff - app/controllers/users_controller.rb
Avoid CSP issues with OpenID login
[rails.git] / app / controllers / users_controller.rb
index 01eee61df47fb9ee7e1806b1395fbd8110fcdbdd..e872712c1c4ed64eaa842db6e565bc486fc62cd2 100644 (file)
@@ -264,9 +264,6 @@ class UsersController < ApplicationController
     if params[:username].present? && params[:password].present?
       session[:remember_me] ||= params[:remember_me]
       password_authentication(params[:username], params[:password])
-    elsif params[:openid_url].present?
-      session[:remember_me] ||= params[:remember_me_openid]
-      redirect_to auth_url("openid", params[:openid_url], params[:referer])
     end
   end
 
@@ -644,7 +641,7 @@ class UsersController < ApplicationController
     # - If they have a block on them, show them that.
     # - If they were referred to the login, send them back there.
     # - Otherwise, send them to the home page.
-    if REQUIRE_TERMS_SEEN && !user.terms_seen
+    if !user.terms_seen
       redirect_to :action => :terms, :referer => target
     elsif user.blocked_on_view
       redirect_to user.blocked_on_view, :referer => target