这段代码来自于使用rails书的敏捷web开发..我不明白代码的这部分内容... 用户是一个名称为hashed_password,盐为字段的模型。但是在代码中他们提到了密码和密码确认,而模型中没有这样的字段。模型只有hashed_password。我相信错误与我同在。请为我清除:) 用户模型有名称,hashed_password,salt。所有字段都是字符串使用rails的敏捷web开发
require 'digest/sha1'
class User < ActiveRecord::Base
validates_presence_of :name
validates_uniqueness_of :name
attr_accessor :password_confirmation
validates_confirmation_of :password
validate :password_non_blank
def self.authenticate(name, password)
user = self.find_by_name(name)
if user
expected_password = encrypted_password(password, user.salt)
if user.hashed_password != expected_password
user = nil
end
end
user
end
def password
@password
end
def password=(pwd)
@password = pwd
return if pwd.blank?
create_new_salt
self.hashed_password = User.encrypted_password(self.password, self.salt)
end
private
def password_non_blank
errors.add(:password,"Missing password")if hashed_password.blank?
end
def create_new_salt
self.salt = self.object_id.to_s + rand.to_s
end
def self.encrypted_password(password, salt)
string_to_hash = password + "wibble" + salt
Digest::SHA1.hexdigest(string_to_hash)
end
end
谢谢...这部分代码 attr_accessor:password_confirmation validates_confirmation_of:password – felix 2010-05-04 18:13:50