From 480d1a783b239054ed91625f7b6d7d4f02b91eee Mon Sep 17 00:00:00 2001 From: okfprojz Date: Tue, 15 Nov 2016 18:13:01 -0500 Subject: no csrf for now --- lib/server.js | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/lib/server.js b/lib/server.js index 64c19a4..b13582b 100644 --- a/lib/server.js +++ b/lib/server.js @@ -24,6 +24,7 @@ site.init = function(){ name: 'panda', resave: false, saveUninitialized: true, + proxy: true, cookie: { secure: true } })) app.use(express.static( path.join(__dirname, '../public'))) @@ -54,7 +55,7 @@ site.init = function(){ app.use(router) var csrfMiddleware = csrf() - router.post("*", csrfMiddleware) + // router.post("*", csrfMiddleware) router.get("/", csrfMiddleware, function(req,res){ res.locals._csrf = req.csrfToken() res.render("index") @@ -81,4 +82,4 @@ site.https = function(app){ return server } -module.exports = site \ No newline at end of file +module.exports = site -- cgit v1.2.3-70-g09d2