regenerate session after login/logout

This commit is contained in:
azivner
2017-10-15 20:16:30 -04:00
parent 0c823a2927
commit 4459b22552
3 changed files with 10 additions and 7 deletions

View File

@@ -16,9 +16,10 @@ router.post('', async (req, res, next) => {
if (req.body.username === userName && await verifyPassword(guessedPassword)) {
const rememberMe = req.body.rememberme;
req.session.loggedIn = true;
return res.redirect('/');
req.session.regenerate(() => {
req.session.loggedIn = true;
res.redirect('/');
});
}
else {
res.render('login', {'failedAuth': true});