class UserController < ApplicationController
layout 'site'
+
+ before_filter :authorize, :only => :preferences
+ before_filter :authorize_web, :only => :rename
+
def save
@user = User.new(params[:user])
render :action => 'new'
end
end
+
+ def rename
+ new_name = params['display_name']
+ if @user
+ @user.display_name = new_name
+ if @user.save
+ flash[:notice] = "User display name updated OK."
+ else
+ flash[:notice] = "Rename failed: #{ @user.errors.full_messages.join('; ') }."
+ end
+ else
+ flash[:notice] = 'not logged in'
+ end
+ redirect_to :back
+ end
def lost_password
if params['user']['email']
end
end
+ def reset_password
+ if params['token']
+ user = User.find_by_token(params['token'])
+ if user
+ pass = User.make_token(8)
+ user.pass_crypt = pass
+ user.save
+ Notifier::deliver_reset_password(user, pass)
+ flash[:notice] = "You're password has been changed and is on the way to your mailbox :-)"
+ else
+ flash[:notice] = "Didn't find that token, check the URL maybe?"
+ end
+ end
+ redirect_to :action => 'login'
+ end
+
def new
end
end
end
+ def preferences
+ if request.get?
+ render_text @user.preferences
+ elsif request.post? or request.put?
+ @user.preferences = request.raw_post
+ @user.save!
+ render :nothing => true
+ else
+ render :status => 400, :nothing => true
+ end
+ end
end
+