2019-08-18 14:51:37 +02:00
|
|
|
class ApplicationController < ActionController::Base
|
2022-06-10 12:03:33 +02:00
|
|
|
include Pundit::Authorization
|
|
|
|
|
|
|
|
|
|
rescue_from Pundit::NotAuthorizedError, with: :user_not_authorized
|
|
|
|
|
|
2019-08-19 15:45:44 +02:00
|
|
|
before_action :configure_permitted_parameters, if: :devise_controller?
|
2022-07-18 10:47:54 +02:00
|
|
|
prepend_before_action :load_tenant_data
|
2019-08-19 15:45:44 +02:00
|
|
|
|
|
|
|
|
protected
|
|
|
|
|
|
|
|
|
|
def configure_permitted_parameters
|
2022-06-24 14:39:35 +02:00
|
|
|
additional_permitted_parameters = [:full_name, :notifications_enabled]
|
|
|
|
|
|
|
|
|
|
devise_parameter_sanitizer.permit(:sign_up, keys: additional_permitted_parameters)
|
|
|
|
|
devise_parameter_sanitizer.permit(:account_update, keys: additional_permitted_parameters)
|
2019-08-19 15:45:44 +02:00
|
|
|
end
|
2019-08-22 17:09:13 +02:00
|
|
|
|
2022-07-18 10:47:54 +02:00
|
|
|
def load_tenant_data
|
|
|
|
|
if Rails.application.multi_tenancy?
|
|
|
|
|
return if request.subdomain.blank? or RESERVED_SUBDOMAINS.include?(request.subdomain)
|
|
|
|
|
|
|
|
|
|
# Load the current tenant based on subdomain
|
|
|
|
|
current_tenant = Tenant.find_by(subdomain: request.subdomain)
|
|
|
|
|
|
|
|
|
|
if current_tenant.status == "pending" and controller_name != "confirmation" and action_name != "show"
|
|
|
|
|
redirect_to pending_tenant_path; return
|
|
|
|
|
end
|
|
|
|
|
|
|
|
|
|
if current_tenant.status == "blocked"
|
|
|
|
|
redirect_to blocked_tenant_path; return
|
|
|
|
|
end
|
|
|
|
|
|
|
|
|
|
redirect_to showcase_url unless current_tenant
|
|
|
|
|
else
|
|
|
|
|
# Load the one and only tenant
|
|
|
|
|
current_tenant = Tenant.first
|
|
|
|
|
end
|
|
|
|
|
|
|
|
|
|
return unless current_tenant
|
|
|
|
|
Current.tenant = current_tenant
|
|
|
|
|
|
|
|
|
|
# Load tenant data
|
|
|
|
|
@tenant = Current.tenant_or_raise!
|
2023-02-04 15:43:15 +01:00
|
|
|
@tenant_setting = TenantSetting.first_or_create
|
2019-09-19 18:55:55 +02:00
|
|
|
@boards = Board.select(:id, :name).order(order: :asc)
|
2022-07-18 10:47:54 +02:00
|
|
|
|
|
|
|
|
# Setup locale
|
|
|
|
|
I18n.locale = @tenant.locale
|
2019-08-22 17:09:13 +02:00
|
|
|
end
|
2022-06-10 12:03:33 +02:00
|
|
|
|
2022-08-05 18:15:17 +02:00
|
|
|
def load_oauths
|
|
|
|
|
@o_auths = Current.tenant_or_raise!.o_auths
|
|
|
|
|
.where(is_enabled: true)
|
|
|
|
|
.order(created_at: :asc)
|
|
|
|
|
end
|
|
|
|
|
|
2022-06-10 12:03:33 +02:00
|
|
|
private
|
|
|
|
|
|
|
|
|
|
def user_not_authorized
|
|
|
|
|
render json: {
|
2022-07-23 13:32:40 +02:00
|
|
|
error: t('errors.unauthorized')
|
2022-06-10 12:03:33 +02:00
|
|
|
}, status: :unauthorized
|
|
|
|
|
end
|
2019-08-18 14:51:37 +02:00
|
|
|
end
|