This repository has been archived on 2023-02-21. You can view files and clone it, but cannot push or open issues or pull requests.
redmine_cas/lib/redmine_cas/account_controller_patch.rb

73 lines
2.2 KiB
Ruby

require 'redmine_cas'
module RedmineCAS
module AccountControllerPatch
def self.included(base)
base.send(:include, InstanceMethods)
base.class_eval do
alias_method_chain :logout, :cas
end
end
module InstanceMethods
def logout_with_cas
return logout_without_cas unless RedmineCAS.enabled?
logout_user
CASClient::Frameworks::Rails::Filter.logout(self, home_url)
end
def cas
return redirect_to_action('login') unless RedmineCAS.enabled?
if User.current.logged?
# User already logged in.
redirect_back_or_default my_page_path
return
end
if CASClient::Frameworks::Rails::Filter.filter(self)
user = User.find_by_login(session[:cas_user])
# Auto-create user if possible
if user.nil? && RedmineCAS.autocreate_users?
user = User.new
user.login = session[:cas_user]
user.assign_attributes(RedmineCAS.user_extra_attributes_from_session(session))
return cas_user_not_created(user) if !user.save
user.reload
end
return cas_user_not_found if user.nil?
return cas_account_pending unless user.active?
user.update_attribute(:last_login_on, Time.now)
user.update_attributes(RedmineCAS.user_extra_attributes_from_session(session))
if RedmineCAS.single_sign_out_enabled?
# logged_user= would start a new session and break single sign-out
User.current = user
start_user_session(user)
else
self.logged_user = user
end
redirect_to url_for(params.merge(:ticket => nil))
else
# CASClient called redirect_to
end
end
def cas_account_pending
render_403 :message => l(:notice_account_pending)
end
def cas_user_not_found
render_403 :message => l(:redmine_cas_user_not_found, :user => session[:cas_user])
end
def cas_user_not_created(user)
logger.error "Could not auto-create user: #{user.errors.full_messages.to_sentence}"
render_403 :message => l(:redmine_cas_user_not_created, :user => session[:cas_user])
end
end
end
end