diff options
author | Azul <azul@leap.se> | 2014-02-08 16:15:46 +0100 |
---|---|---|
committer | Azul <azul@leap.se> | 2014-02-10 14:26:30 +0100 |
commit | cbd757cf151cd61bfdd5637d09f43e4831fec3bb (patch) | |
tree | e5a60f11a2963f0689294d0ebf4f18e93effd099 /users/app/controllers/v1/users_controller.rb | |
parent | 758b9a3c30a73fd985943fb7a887f0373be3a833 (diff) |
require token when updating user via API
Diffstat (limited to 'users/app/controllers/v1/users_controller.rb')
-rw-r--r-- | users/app/controllers/v1/users_controller.rb | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/users/app/controllers/v1/users_controller.rb b/users/app/controllers/v1/users_controller.rb index a16c6e9..8897d01 100644 --- a/users/app/controllers/v1/users_controller.rb +++ b/users/app/controllers/v1/users_controller.rb @@ -3,8 +3,8 @@ module V1 skip_before_filter :verify_authenticity_token before_filter :fetch_user, :only => [:update] - before_filter :require_login, :only => [:update, :index] before_filter :require_admin, :only => [:index] + before_filter :require_token, :only => [:update] respond_to :json |