]> git.openstreetmap.org Git - rails.git/blobdiff - app/controllers/browse_controller.rb
Use CanCanCan to control access to oauth controller actions
[rails.git] / app / controllers / browse_controller.rb
index 6eb9675683f81df3089136e9fdfca2ba62e9ae57..0fccbb506bb2a19dae6db4087853a64b8f0933cf 100644 (file)
@@ -6,6 +6,7 @@ class BrowseController < ApplicationController
   before_action(:except => [:query]) { |c| c.check_database_readable(true) }
   before_action :require_oauth
   around_action :web_timeout
+  authorize_resource :class => false
 
   def relation
     @type = "relation"