note on security
parent
3d7a033f08
commit
da5286dc86
|
|
@ -23,6 +23,7 @@ class ApplicationController < ActionController::Base
|
||||||
end
|
end
|
||||||
|
|
||||||
def access_denied
|
def access_denied
|
||||||
|
# NOTE: For security reasons, consider using 404 when denied access to a read operation.
|
||||||
render 'application/access_denied', status: :unauthorized
|
render 'application/access_denied', status: :unauthorized
|
||||||
end
|
end
|
||||||
|
|
||||||
|
|
|
||||||
Loading…
Reference in New Issue