mirror of
				https://github.com/redmine/redmine.git
				synced 2025-10-31 10:25:55 +01:00 
			
		
		
		
	git-svn-id: svn+ssh://rubyforge.org/var/svn/redmine/trunk@2778 e93f8b46-1217-0410-a6f0-8f06a7374b81
		
			
				
	
	
		
			52 lines
		
	
	
		
			1.5 KiB
		
	
	
	
		
			Ruby
		
	
	
	
	
	
			
		
		
	
	
			52 lines
		
	
	
		
			1.5 KiB
		
	
	
	
		
			Ruby
		
	
	
	
	
	
| # Redmine - project management software
 | |
| # Copyright (C) 2006-2009  Jean-Philippe Lang
 | |
| #
 | |
| # This program is free software; you can redistribute it and/or
 | |
| # modify it under the terms of the GNU General Public License
 | |
| # as published by the Free Software Foundation; either version 2
 | |
| # of the License, or (at your option) any later version.
 | |
| # 
 | |
| # This program is distributed in the hope that it will be useful,
 | |
| # but WITHOUT ANY WARRANTY; without even the implied warranty of
 | |
| # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
 | |
| # GNU General Public License for more details.
 | |
| # 
 | |
| # You should have received a copy of the GNU General Public License
 | |
| # along with this program; if not, write to the Free Software
 | |
| # Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA  02110-1301, USA.
 | |
| 
 | |
| class Token < ActiveRecord::Base
 | |
|   belongs_to :user
 | |
|   validates_uniqueness_of :value
 | |
|   
 | |
|   before_create :delete_previous_tokens
 | |
|   
 | |
|   @@validity_time = 1.day
 | |
|   
 | |
|   def before_create
 | |
|     self.value = Token.generate_token_value
 | |
|   end
 | |
| 
 | |
|   # Return true if token has expired  
 | |
|   def expired?
 | |
|     return Time.now > self.created_on + @@validity_time
 | |
|   end
 | |
|   
 | |
|   # Delete all expired tokens
 | |
|   def self.destroy_expired
 | |
|     Token.delete_all ["action <> 'feeds' AND created_on < ?", Time.now - @@validity_time]
 | |
|   end
 | |
|   
 | |
| private
 | |
|   def self.generate_token_value
 | |
|     ActiveSupport::SecureRandom.hex(20)
 | |
|   end
 | |
|   
 | |
|   # Removes obsolete tokens (same user and action)
 | |
|   def delete_previous_tokens
 | |
|     if user
 | |
|       Token.delete_all(['user_id = ? AND action = ?', user.id, action])
 | |
|     end
 | |
|   end
 | |
| end
 |