35588d09e2
- `GET /api/v1/admin/domain_allows` lists allowed domains - `GET /api/v1/admin/domain_allows/:id` shows one by ID - `DELETE /api/v1/admin/domain_allows/:id` deletes a given domain from the list of allowed domains - `POST /api/v1/admin/domain_allows` to allow a new domain: if that domain is already allowed, the existing DomainAllow will be returned
35 lines
832 B
Ruby
35 lines
832 B
Ruby
# frozen_string_literal: true
|
|
|
|
# == Schema Information
|
|
#
|
|
# Table name: domain_allows
|
|
#
|
|
# id :bigint(8) not null, primary key
|
|
# domain :string default(""), not null
|
|
# created_at :datetime not null
|
|
# updated_at :datetime not null
|
|
#
|
|
|
|
class DomainAllow < ApplicationRecord
|
|
include Paginable
|
|
include DomainNormalizable
|
|
include DomainMaterializable
|
|
|
|
validates :domain, presence: true, uniqueness: true, domain: true
|
|
|
|
scope :matches_domain, ->(value) { where(arel_table[:domain].matches("%#{value}%")) }
|
|
|
|
class << self
|
|
def allowed?(domain)
|
|
!rule_for(domain).nil?
|
|
end
|
|
|
|
def rule_for(domain)
|
|
return if domain.blank?
|
|
|
|
uri = Addressable::URI.new.tap { |u| u.host = domain.gsub(/[\/]/, '') }
|
|
|
|
find_by(domain: uri.normalized_host)
|
|
end
|
|
end
|
|
end
|