@view_config( route_name='core/currentUser', renderer='json')
#default permissions already setted to read :
config.set_default_permission('read')
@view_config(
route_name=route_prefix+'login', permission=NO_PERMISSION_REQUIRED, request_method='POST')def login(request): user_id = request.POST.get('user_id', '') pwd = request.POST.get('password', '') user = DBSession.query(User).filter(User.id==user_id).one() if user is not None and user.check_password(pwd): headers = remember(request, user_id) response = request.response response.headerlist.extend(headers) transaction.commit() return response else: transaction.commit() return HTTPUnauthorized()
--
You received this message because you are subscribed to the Google Groups "pylons-discuss" group.
To unsubscribe from this group and stop receiving emails from it, send an email to pylons-discus...@googlegroups.com.
To post to this group, send email to pylons-...@googlegroups.com.
Visit this group at http://groups.google.com/group/pylons-discuss.
For more options, visit https://groups.google.com/d/optout.