Compare commits

..

No commits in common. "2d1e117b66a90b8df8b24def58048e9352f21d93" and "df0cc26e710edc3784f46b72cd6c9b707525d98e" have entirely different histories.

3 changed files with 7 additions and 14 deletions

View File

@ -21,6 +21,3 @@ steps:
when: when:
branch: branch:
- main - main
event:
exclude:
- pull_request

View File

@ -8,13 +8,9 @@ var passport = server.passport;
router.route("/") router.route("/")
.get(passport.authenticate("jwt", { session: false }), (req, res) => { .get(passport.authenticate("jwt", { session: false }), (req, res) => {
if (req.user.roles.includes("admin")) {
database.share.collection(result => { database.share.collection(result => {
res.json(result).status(200).end(); res.json(result).status(200).end();
}) })
} else {
res.status(403).end();
}
}); });
router.route("/:id") router.route("/:id")
.get((req, res) => { .get((req, res) => {

View File

@ -19,7 +19,7 @@ router
}) })
}) })
.post(passport.authenticate("jwt", { session: false }), (req, res) => { .post(passport.authenticate("jwt", { session: false }), (req, res) => {
if (req.user.roles.includes("admin")) { if (req.user.roles.indexOf("admin") > -1) {
database.system.setAllows(req.body, () => { database.system.setAllows(req.body, () => {
res.status(200).end(); res.status(200).end();
}) })
@ -31,7 +31,7 @@ router
router router
.route("/domains") .route("/domains")
.get(passport.authenticate("jwt", { session: false }), (req, res) => { .get(passport.authenticate("jwt", { session: false }), (req, res) => {
if (req.user.roles.includes("admin")) { if (req.user.roles.indexOf("admin") > -1) {
let domains = { let domains = {
const: config.allowed_domains, const: config.allowed_domains,
dynamic: [] dynamic: []
@ -47,7 +47,7 @@ router
} }
}) })
.post(passport.authenticate("jwt", { session: false }), (req, res) => { .post(passport.authenticate("jwt", { session: false }), (req, res) => {
if (req.user.roles.includes("admin")) { if (req.user.roles.indexOf("admin") > -1) {
database.system.setDomains(req.body, () => { database.system.setDomains(req.body, () => {
res.status(200).end(); res.status(200).end();
}); });