summaryrefslogtreecommitdiffstats
path: root/server/middleware/auth.js
diff options
context:
space:
mode:
Diffstat (limited to 'server/middleware/auth.js')
-rw-r--r--server/middleware/auth.js23
1 files changed, 23 insertions, 0 deletions
diff --git a/server/middleware/auth.js b/server/middleware/auth.js
new file mode 100644
index 0000000..091d3a7
--- /dev/null
+++ b/server/middleware/auth.js
@@ -0,0 +1,23 @@
+const jwt = require('jsonwebtoken');
+const User = require('../models/User');
+
+const auth = async (req, res, next) => {
+ try {
+ const token = req.header('Authorization').replace('Bearer ', '');
+ const decoded = jwt.verify(token, 'replaceThisWithSecretString');
+ const user = await User.findOne({ _id: decoded._id, 'tokens.token': token });
+
+ if (!user) {
+ throw new Error();
+ }
+
+ req.token = token;
+ req.user = user;
+ next();
+ } catch (err) {
+ res.status(401).send({ error: 'Not authenticated.' });
+ }
+
+};
+
+module.exports = auth;