From 3ef13335b369dda8bed7a01128da5e04914c063d Mon Sep 17 00:00:00 2001 From: Joaquin Date: Thu, 2 Mar 2023 17:47:32 +0200 Subject: [PATCH] [IMPORTANT CHANGE] Switch to session-cookies Switch from data cookies stored on the device to session-cookies managed by the server more securely --- .gitignore | 1 + app.js | 8 ++++---- 2 files changed, 5 insertions(+), 4 deletions(-) diff --git a/.gitignore b/.gitignore index b1bb3a1..93d5231 100644 --- a/.gitignore +++ b/.gitignore @@ -1,2 +1,3 @@ node_modules repo/secret +sessions diff --git a/app.js b/app.js index cfa9568..a835914 100644 --- a/app.js +++ b/app.js @@ -5,7 +5,7 @@ const url = require('url'); const crypto = require('crypto'); const session = require('express-session'); const { query } = require('express'); -//const FileStore = require('session-file-store')(session) +const FileStore = require('session-file-store')(session) const app = express(); @@ -43,8 +43,8 @@ app.use(session({ secret: secret.toString(), saveUninitialized:false, resave:false, - cookie: {maxAge: 120000} - //store:new FileStore() + //cookie: {maxAge: none} + store:new FileStore() })); function report(str){ @@ -454,4 +454,4 @@ app.get('/css/manrope.ttf', (request, response) => { const server = http.createServer(app); -server.listen(8881); \ No newline at end of file +server.listen(8881);