Potion/lib/potion_web/router.ex
Hayden Hargreaves 55589c1f6e (FEAT): Added authentication.
But honestly, this shit is too complex. I need to learn how to actually
use this framework and language before building this. I think its back
to GoLang for me...
2025-06-10 22:30:35 -07:00

90 lines
2.7 KiB
Elixir

defmodule PotionWeb.Router do
use PotionWeb, :router
import PotionWeb.UserAuth
pipeline :browser do
plug :accepts, ["html"]
plug :fetch_session
plug :fetch_live_flash
plug :put_root_layout, html: {PotionWeb.Layouts, :root}
plug :protect_from_forgery
plug :put_secure_browser_headers
plug :fetch_current_user
end
pipeline :api do
plug :accepts, ["json"]
end
scope "/", PotionWeb do
pipe_through :browser
get "/home", PageController, :home
get "/favorites", PageController, :favorites
get "/create", PageController, :create
get "/list", PageController, :list
get "/profile", PageController, :profile
end
# Other scopes may use custom stacks.
# scope "/api", PotionWeb do
# pipe_through :api
# end
# Enable LiveDashboard and Swoosh mailbox preview in development
if Application.compile_env(:potion, :dev_routes) do
# If you want to use the LiveDashboard in production, you should put
# it behind authentication and allow only admins to access it.
# If your application does not have an admins-only section yet,
# you can use Plug.BasicAuth to set up some basic authentication
# as long as you are also using SSL (which you should anyway).
import Phoenix.LiveDashboard.Router
scope "/dev" do
pipe_through :browser
live_dashboard "/dashboard", metrics: PotionWeb.Telemetry
forward "/mailbox", Plug.Swoosh.MailboxPreview
end
end
## Authentication routes
scope "/", PotionWeb do
pipe_through [:browser, :redirect_if_user_is_authenticated]
live_session :redirect_if_user_is_authenticated,
on_mount: [{PotionWeb.UserAuth, :redirect_if_user_is_authenticated}] do
live "/user/register", UserRegistrationLive, :new
live "/user/log_in", UserLoginLive, :new
live "/user/reset_password", UserForgotPasswordLive, :new
live "/user/reset_password/:token", UserResetPasswordLive, :edit
end
post "/user/log_in", UserSessionController, :create
end
scope "/", PotionWeb do
pipe_through [:browser, :require_authenticated_user]
live_session :require_authenticated_user,
on_mount: [{PotionWeb.UserAuth, :ensure_authenticated}] do
live "/user/settings", UserSettingsLive, :edit
live "/user/settings/confirm_email/:token", UserSettingsLive, :confirm_email
end
end
scope "/", PotionWeb do
pipe_through [:browser]
delete "/user/log_out", UserSessionController, :delete
live_session :current_user,
on_mount: [{PotionWeb.UserAuth, :mount_current_user}] do
live "/user/confirm/:token", UserConfirmationLive, :edit
live "/user/confirm", UserConfirmationInstructionsLive, :new
end
end
end