summaryrefslogtreecommitdiff
path: root/users/app/controllers/v1/users_controller.rb
diff options
context:
space:
mode:
authorAzul <azul@leap.se>2014-02-08 16:15:46 +0100
committerAzul <azul@leap.se>2014-02-10 14:26:30 +0100
commitcbd757cf151cd61bfdd5637d09f43e4831fec3bb (patch)
treee5a60f11a2963f0689294d0ebf4f18e93effd099 /users/app/controllers/v1/users_controller.rb
parent758b9a3c30a73fd985943fb7a887f0373be3a833 (diff)
require token when updating user via API
Diffstat (limited to 'users/app/controllers/v1/users_controller.rb')
-rw-r--r--users/app/controllers/v1/users_controller.rb2
1 files changed, 1 insertions, 1 deletions
diff --git a/users/app/controllers/v1/users_controller.rb b/users/app/controllers/v1/users_controller.rb
index a16c6e9..8897d01 100644
--- a/users/app/controllers/v1/users_controller.rb
+++ b/users/app/controllers/v1/users_controller.rb
@@ -3,8 +3,8 @@ module V1
skip_before_filter :verify_authenticity_token
before_filter :fetch_user, :only => [:update]
- before_filter :require_login, :only => [:update, :index]
before_filter :require_admin, :only => [:index]
+ before_filter :require_token, :only => [:update]
respond_to :json