132 lines
4.2 KiB
Elixir
132 lines
4.2 KiB
Elixir
defmodule BeetRoundServerWeb.Router do
|
|
use BeetRoundServerWeb, :router
|
|
|
|
import BeetRoundServerWeb.AdminAuth
|
|
|
|
import BeetRoundServerWeb.UserAuth
|
|
|
|
pipeline :browser do
|
|
plug :accepts, ["html"]
|
|
plug :fetch_session
|
|
plug :fetch_live_flash
|
|
plug :put_root_layout, html: {BeetRoundServerWeb.Layouts, :root}
|
|
plug :protect_from_forgery
|
|
plug :put_secure_browser_headers
|
|
plug :fetch_current_scope_for_admin
|
|
plug :fetch_current_scope_for_user
|
|
end
|
|
|
|
pipeline :api do
|
|
plug :accepts, ["json"]
|
|
end
|
|
|
|
scope "/", BeetRoundServerWeb do
|
|
pipe_through :browser
|
|
|
|
get "/", PageController, :home
|
|
end
|
|
|
|
scope "/api", BeetRoundServerWeb do
|
|
pipe_through :api
|
|
post "/log_in", AdminController, :log_in
|
|
post "/admin_create", AdminController, :create
|
|
end
|
|
|
|
# Other scopes may use custom stacks.
|
|
scope "/api", BeetRoundServerWeb do
|
|
pipe_through :api
|
|
|
|
get "/", DefaultApiController, :index
|
|
|
|
get "/bidding_rounds/get_current", BiddingRoundController, :get_highest
|
|
get "/bidding_rounds/start_new", BiddingRoundController, :start_new
|
|
get "/bidding_rounds/restart", BiddingRoundController, :restart
|
|
get "/bidding_rounds/stop", BiddingRoundController, :stop
|
|
|
|
get "/biddings_of_round/:round_number", BiddingController, :biddings_of_round
|
|
get "/biddings_of_highest_round", BiddingController, :biddings_of_highest_round
|
|
|
|
post "/invite", UserController, :invite
|
|
|
|
resources "/users", UserController, except: [:new, :edit]
|
|
end
|
|
|
|
# Enable LiveDashboard and Swoosh mailbox preview in development
|
|
if Application.compile_env(:beet_round_server, :dev_routes) do
|
|
# If you want to use the LiveDashboard in production, you should put
|
|
# it behind authentication and allow only admins to access it.
|
|
# If your application does not have an admins-only section yet,
|
|
# you can use Plug.BasicAuth to set up some basic authentication
|
|
# as long as you are also using SSL (which you should anyway).
|
|
import Phoenix.LiveDashboard.Router
|
|
|
|
scope "/dev" do
|
|
pipe_through :browser
|
|
|
|
live_dashboard "/dashboard", metrics: BeetRoundServerWeb.Telemetry
|
|
forward "/mailbox", Plug.Swoosh.MailboxPreview
|
|
end
|
|
end
|
|
|
|
## Authentication routes
|
|
|
|
scope "/", BeetRoundServerWeb do
|
|
pipe_through [:browser, :require_authenticated_user]
|
|
|
|
live_session :require_authenticated_user,
|
|
on_mount: [{BeetRoundServerWeb.UserAuth, :require_authenticated}] do
|
|
live "/users/settings", UserLive.Settings, :edit
|
|
live "/users/settings/confirm-email/:token", UserLive.Settings, :confirm_email
|
|
|
|
live "/biddings", BiddingLive.Index, :index
|
|
live "/biddings/new", BiddingLive.Form, :new
|
|
live "/biddings/:id", BiddingLive.Show, :show
|
|
live "/biddings/:id/edit", BiddingLive.Form, :edit
|
|
end
|
|
|
|
post "/users/update-password", UserSessionController, :update_password
|
|
end
|
|
|
|
scope "/", BeetRoundServerWeb do
|
|
pipe_through [:browser]
|
|
|
|
live_session :current_user,
|
|
on_mount: [{BeetRoundServerWeb.UserAuth, :mount_current_scope}] do
|
|
live "/users/register", UserLive.Registration, :new
|
|
live "/users/log-in", UserLive.Login, :new
|
|
live "/users/log-in/:token", UserLive.Confirmation, :new
|
|
end
|
|
|
|
post "/users/log-in", UserSessionController, :create
|
|
delete "/users/log-out", UserSessionController, :delete
|
|
|
|
get "/log_in/:token", UserSessionController, :login
|
|
end
|
|
|
|
## Authentication routes
|
|
|
|
scope "/", BeetRoundServerWeb do
|
|
pipe_through [:browser, :redirect_if_admin_is_authenticated]
|
|
|
|
get "/admins/register", AdminRegistrationController, :new
|
|
post "/admins/register", AdminRegistrationController, :create
|
|
end
|
|
|
|
scope "/", BeetRoundServerWeb do
|
|
pipe_through [:browser, :require_authenticated_admin]
|
|
|
|
get "/admins/settings", AdminSettingsController, :edit
|
|
put "/admins/settings", AdminSettingsController, :update
|
|
get "/admins/settings/confirm-email/:token", AdminSettingsController, :confirm_email
|
|
end
|
|
|
|
scope "/", BeetRoundServerWeb do
|
|
pipe_through [:browser]
|
|
|
|
get "/admins/log-in", AdminSessionController, :new
|
|
get "/admins/log-in/:token", AdminSessionController, :confirm
|
|
post "/admins/log-in", AdminSessionController, :create
|
|
delete "/admins/log-out", AdminSessionController, :delete
|
|
end
|
|
end
|