I followed this tutorial for setting Autlogic up properly. So, my site needs a form of level, like "Admin", "Moderator", "User", "Guest". So Admins can do everything, where Moderators may not can make site changes. And Users can't destroy, Update or Create.
You need an authorization framework like cancan or declarative_authorization for that.
You can check out my example project with Authlogic, Facebook Connect, declarative_authorization and user to user messaging.
http://github.com/jspooner/authlogic_cucumber_rspec_example
If you love us? You can donate to us via Paypal or buy me a coffee so we can maintain and grow! Thank you!
Donate Us With