Skip to content

Commit 2db8663

Browse files
[Fix]
changed the csrf cookie name
1 parent 3edebcb commit 2db8663

File tree

1 file changed

+8
-8
lines changed

1 file changed

+8
-8
lines changed

web/web.js

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -18,14 +18,6 @@ web.use(express.urlencoded({ extended: false }))
1818
web.use(cookieParser())
1919
web.use(cors({ origin: true, credentials: true }))
2020
web.use(bodyParser.urlencoded({ extended: false }))
21-
web.use(csrf({
22-
cookie: {
23-
key: 'mysupersecret',
24-
sameSite: 'lax',
25-
secure: false
26-
},
27-
ignoreMethods: process.env.NODE_ENV === 'development' ? ['POST', 'PUT', 'DELETE', 'GET', 'OPTIONS'] : ['GET', 'HEAD', 'OPTIONS']
28-
}))
2921

3022
/**Error handling */
3123
web.use(function (err, _req, res, next) {
@@ -39,6 +31,14 @@ const nextYear = new Date().getFullYear() + 1
3931
const exp = new Date().setFullYear(nextYear)
4032
/** */
4133
web.use(cookieSession({ name: 'deployer_session', keys: ['mysupersecret'], expires: new Date(exp), sameSite: 'lax', secure: false }))
34+
web.use(csrf({
35+
cookie: {
36+
sameSite: 'lax',
37+
secure: false
38+
},
39+
ignoreMethods: process.env.NODE_ENV === 'development' ? ['POST', 'PUT', 'DELETE', 'GET', 'OPTIONS'] : ['GET', 'HEAD', 'OPTIONS'],
40+
sessionKey: 'de'
41+
}))
4242
web.use(express.static(path.join(__dirname, 'public')))
4343

4444
web.use('/', apiRouter)

0 commit comments

Comments
 (0)