Fixed hardcoded nonsense in api config

This commit is contained in:
2025-11-23 23:39:10 -05:00
parent b8bf809c14
commit 0d9e7c3e3b
2 changed files with 5 additions and 3 deletions

View File

@@ -12,8 +12,10 @@ AUTH_CLIENT_ID=
AUTH_CLIENT_SECRET= AUTH_CLIENT_SECRET=
AUTH_REDIRECT_URI= AUTH_REDIRECT_URI=
AUTH_REVOCATION_URI= AUTH_REVOCATION_URI=
AUTH_END_SESSION_URI=
# AUTH_MODE=mock #uncomment this to bypass authentik # AUTH_MODE=mock #uncomment this to bypass authentik
# SERVER SETTINGS # SERVER SETTINGS
SERVER_PORT=3000 SERVER_PORT=3000
CLIENT_URL= # This is whatever URL the client web app is served on CLIENT_URL= # This is whatever URL the client web app is served on
CLIENT_DOMAIN= #whatever.com

View File

@@ -8,7 +8,7 @@ const app = express()
app.use(morgan('dev')) app.use(morgan('dev'))
app.use(cors({ app.use(cors({
origin: ['https://aj17thdev.nexuszone.net', 'http://localhost:5173'], // your SPA origins origin: [process.env.CLIENT_URL], // your SPA origins
credentials: true credentials: true
})); }));
@@ -32,7 +32,7 @@ app.use(session({
cookie: { cookie: {
httpOnly: true, httpOnly: true,
sameSite: 'lax', sameSite: 'lax',
domain: 'nexuszone.net' domain: process.env.CLIENT_DOMAIN
} }
})); }));
app.use(passport.authenticate('session')); app.use(passport.authenticate('session'));