Files
expressmongotest/chapter21/20_restrict_user_to_self_middleware.js
2013-01-13 18:16:49 -08:00

9 lines
226 B
JavaScript

function restrictUserToSelf(req, res, next) {
if (! req.session.user || req.session.user.username !== req.user.username) {
res.send('Unauthorized', 401);
} else {
next();
}
}
module.exports = restrictUserToSelf;