Files
BeetRoundServer/lib/beet_round_server_web/router.ex

132 lines
4.2 KiB
Elixir

defmodule BeetRoundServerWeb.Router do
use BeetRoundServerWeb, :router
import BeetRoundServerWeb.AdminAuth
import BeetRoundServerWeb.UserAuth
pipeline :browser do
plug :accepts, ["html"]
plug :fetch_session
plug :fetch_live_flash
plug :put_root_layout, html: {BeetRoundServerWeb.Layouts, :root}
plug :protect_from_forgery
plug :put_secure_browser_headers
plug :fetch_current_scope_for_admin
plug :fetch_current_scope_for_user
end
pipeline :api do
plug :accepts, ["json"]
end
scope "/", BeetRoundServerWeb do
pipe_through :browser
get "/", PageController, :home
end
scope "/api", BeetRoundServerWeb do
pipe_through :api
post "/log_in", AdminController, :log_in
post "/admin_create", AdminController, :create
end
# Other scopes may use custom stacks.
scope "/api", BeetRoundServerWeb do
pipe_through :api
get "/", DefaultApiController, :index
get "/bidding_rounds/get_current", BiddingRoundController, :get_highest
get "/bidding_rounds/start_new", BiddingRoundController, :start_new
get "/bidding_rounds/restart", BiddingRoundController, :restart
get "/bidding_rounds/stop", BiddingRoundController, :stop
get "/biddings_of_round/:round_number", BiddingController, :biddings_of_round
get "/biddings_of_highest_round", BiddingController, :biddings_of_highest_round
post "/invite", UserController, :invite
resources "/users", UserController, except: [:new, :edit]
end
# Enable LiveDashboard and Swoosh mailbox preview in development
if Application.compile_env(:beet_round_server, :dev_routes) do
# If you want to use the LiveDashboard in production, you should put
# it behind authentication and allow only admins to access it.
# If your application does not have an admins-only section yet,
# you can use Plug.BasicAuth to set up some basic authentication
# as long as you are also using SSL (which you should anyway).
import Phoenix.LiveDashboard.Router
scope "/dev" do
pipe_through :browser
live_dashboard "/dashboard", metrics: BeetRoundServerWeb.Telemetry
forward "/mailbox", Plug.Swoosh.MailboxPreview
end
end
## Authentication routes
scope "/", BeetRoundServerWeb do
pipe_through [:browser, :require_authenticated_user]
live_session :require_authenticated_user,
on_mount: [{BeetRoundServerWeb.UserAuth, :require_authenticated}] do
live "/users/settings", UserLive.Settings, :edit
live "/users/settings/confirm-email/:token", UserLive.Settings, :confirm_email
live "/biddings", BiddingLive.Index, :index
live "/biddings/new", BiddingLive.Form, :new
live "/biddings/:id", BiddingLive.Show, :show
live "/biddings/:id/edit", BiddingLive.Form, :edit
end
post "/users/update-password", UserSessionController, :update_password
end
scope "/", BeetRoundServerWeb do
pipe_through [:browser]
live_session :current_user,
on_mount: [{BeetRoundServerWeb.UserAuth, :mount_current_scope}] do
live "/users/register", UserLive.Registration, :new
live "/users/log-in", UserLive.Login, :new
live "/users/log-in/:token", UserLive.Confirmation, :new
end
post "/users/log-in", UserSessionController, :create
delete "/users/log-out", UserSessionController, :delete
get "/log_in/:token", UserSessionController, :login
end
## Authentication routes
scope "/", BeetRoundServerWeb do
pipe_through [:browser, :redirect_if_admin_is_authenticated]
get "/admins/register", AdminRegistrationController, :new
post "/admins/register", AdminRegistrationController, :create
end
scope "/", BeetRoundServerWeb do
pipe_through [:browser, :require_authenticated_admin]
get "/admins/settings", AdminSettingsController, :edit
put "/admins/settings", AdminSettingsController, :update
get "/admins/settings/confirm-email/:token", AdminSettingsController, :confirm_email
end
scope "/", BeetRoundServerWeb do
pipe_through [:browser]
get "/admins/log-in", AdminSessionController, :new
get "/admins/log-in/:token", AdminSessionController, :confirm
post "/admins/log-in", AdminSessionController, :create
delete "/admins/log-out", AdminSessionController, :delete
end
end