class SessionsController < ApplicationController
  def new
  end

  def create
    @current_user = User.find_by_name_and_password(params[:name], params[:password])

    if @current_user
      session[:user_id] = @current_user.id
      if session[:return_to]
        redirect_to session[:return_to]
        session[:return_to] = nil
      else
        redirect_to users_path
      end
    else
      render :action => 'new'
    end
  end

  def destroy
    session[:user_id] = @current_user = nil
  end

end
