app/controllers/users_controller.rb
class UsersController < ApplicationController
def index
@users = User.order :name
end
def create
@user = User.new user_params
if @user.save
flash[:success] = 'User successfully created'
redirect_to '/login'
else
redirect_to :edit
end
end
def show
@user = User.find(params[:id])
end
def edit
@user = User.find(params[:id])
end
def new
@user = User.new
end
def update
@user = User.find params[:id]
if @user.update user_params
redirect_to @user
else
render :edit
end
end
def destroy
end
private
def user_params
params.require(:user).permit!
end
def action_allowed?
['new', 'create'].include?(action) || current_user.admin?
end
end