Restrict access to oauth/applications to admins only

th-downstream
Eugen Rochko 8 years ago
parent cab1211ef7
commit ff0eca7337

@ -15,7 +15,7 @@ Doorkeeper.configure do
# If you want to restrict access to the web interface for adding oauth authorized applications, you need to declare the block below.
admin_authenticator do
current_user || redirect_to(new_user_session_url)
(current_user && current_user.admin?) || redirect_to(new_user_session_url)
end
# Authorization Code expiration time (default 10 minutes).

Loading…
Cancel
Save