diff options
author | Louise Crow <louise.crow@gmail.com> | 2014-11-04 21:56:54 +0000 |
---|---|---|
committer | Louise Crow <louise.crow@gmail.com> | 2014-12-18 14:03:49 +0000 |
commit | 49758c23ccca57483413a4df10308e95fb7c8cc4 (patch) | |
tree | 2575293288b2fd315cf6897c485e91683c6006d2 /app/controllers/admin_incoming_message_controller.rb | |
parent | 095e216f43eba4081730335ba6be90e12ce02b8c (diff) |
Move admin incoming message actions to use RESTful routes.
So data changing actions require a POST and can be protected against
CSRF.
Diffstat (limited to 'app/controllers/admin_incoming_message_controller.rb')
-rw-r--r-- | app/controllers/admin_incoming_message_controller.rb | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/app/controllers/admin_incoming_message_controller.rb b/app/controllers/admin_incoming_message_controller.rb index 46460d466..bc653bf53 100644 --- a/app/controllers/admin_incoming_message_controller.rb +++ b/app/controllers/admin_incoming_message_controller.rb @@ -27,7 +27,7 @@ class AdminIncomingMessageController < AdminController end def destroy - @incoming_message = IncomingMessage.find(params[:incoming_message_id]) + @incoming_message = IncomingMessage.find(params[:id]) @info_request = @incoming_message.info_request incoming_message_id = @incoming_message.id @@ -41,7 +41,7 @@ class AdminIncomingMessageController < AdminController end def redeliver - incoming_message = IncomingMessage.find(params[:redeliver_incoming_message_id]) + incoming_message = IncomingMessage.find(params[:id]) message_ids = params[:url_title].split(",").each {|x| x.strip} previous_request = incoming_message.info_request destination_request = nil |