🚀 Patch auto
This commit is contained in:
14
src/middleware/auth.js
Normal file
14
src/middleware/auth.js
Normal file
@@ -0,0 +1,14 @@
|
||||
import jwt from 'jsonwebtoken';
|
||||
|
||||
export function requireAuth(req, res, next){
|
||||
const hdr = req.headers.authorization || '';
|
||||
const token = hdr.startsWith('Bearer ') ? hdr.slice(7) : null;
|
||||
if(!token) return res.status(401).json({error:'Missing token'});
|
||||
try{
|
||||
const payload = jwt.verify(token, process.env.JWT_SECRET || 'devsecret');
|
||||
req.user = payload;
|
||||
next();
|
||||
}catch(e){
|
||||
res.status(401).json({error:'Invalid token'});
|
||||
}
|
||||
}
|
||||
Reference in New Issue
Block a user