Discuss authorization
You've discussed authentication with Devise do you think your next video could be on authentication maybe with CanCanCan, Pundit or Authorize?
-
Praveen P commented
Thanks, I was the one suggested this and I will be subscribing now, great job so far, I hope you do the other two as well. It'll be great to get a comparison.
-
I just started to cover authorization with an episode on CanCanCan! https://gorails.com/episodes/authorization-with-cancancan
-
James commented
Explaining with Pundit would be useful.
* Especially regarding namespaces.
* How do we scope index listings.
* Scoping Controller#index. As User manually types the url; account/products but they get an error because the policy_scope() doesn't let them have any results (order/paginate don't like nil). How can we show them an "access denied" (like a regular "#show" authorize @user) message rather than giving an error. -
Chris Oliver commented
This is a great topic idea. I'll be making these shortly. I'd like to do Pundit first and then CanCanCan and Authorize.
It'll be great to compare the three as well so I'll try to set it up so we do the same thing in all 3 and we can compare their approaches.