session protection
parent
87b20cead9
commit
7e6d657c26
|
@ -11,6 +11,7 @@ import {
|
||||||
} from "../utils/constants";
|
} from "../utils/constants";
|
||||||
import User from "../models/user";
|
import User from "../models/user";
|
||||||
import { terminPlanerRequest } from "../utils/terminPlaner";
|
import { terminPlanerRequest } from "../utils/terminPlaner";
|
||||||
|
import { sessionProtection } from "../middleware/authMiddleware";
|
||||||
|
|
||||||
router.get(
|
router.get(
|
||||||
"/auth/google",
|
"/auth/google",
|
||||||
|
@ -103,15 +104,25 @@ router.get(
|
||||||
}
|
}
|
||||||
);
|
);
|
||||||
|
|
||||||
router.get("/store", calendarController.GetStoreId);
|
router.get("/store", sessionProtection, calendarController.GetStoreId);
|
||||||
router.get("/settings", calendarController.GetCalendarSettings);
|
router.get(
|
||||||
|
"/settings",
|
||||||
|
sessionProtection,
|
||||||
|
calendarController.GetCalendarSettings
|
||||||
|
);
|
||||||
router.post(
|
router.post(
|
||||||
"/settings/personal",
|
"/settings/personal",
|
||||||
|
sessionProtection,
|
||||||
calendarController.UpdatePersonalCalendarSettings
|
calendarController.UpdatePersonalCalendarSettings
|
||||||
);
|
);
|
||||||
router.post("/settings/store", calendarController.UpdateStoreCalendarSettings);
|
router.post(
|
||||||
|
"/settings/store",
|
||||||
|
sessionProtection,
|
||||||
|
calendarController.UpdateStoreCalendarSettings
|
||||||
|
);
|
||||||
router.post(
|
router.post(
|
||||||
"/settings/personal/unlink",
|
"/settings/personal/unlink",
|
||||||
|
sessionProtection,
|
||||||
calendarController.UnlinkGoogleCalendar
|
calendarController.UnlinkGoogleCalendar
|
||||||
);
|
);
|
||||||
|
|
||||||
|
|
|
@ -2,8 +2,9 @@ import express from "express";
|
||||||
const router = express.Router();
|
const router = express.Router();
|
||||||
|
|
||||||
import * as storeController from "../controllers/storeController";
|
import * as storeController from "../controllers/storeController";
|
||||||
|
import { sessionProtection } from "../middleware/authMiddleware";
|
||||||
|
|
||||||
router.get("/:storeId", storeController.GetStore);
|
router.get("/:storeId", sessionProtection, storeController.GetStore);
|
||||||
router.post("/:storeId", storeController.UpdateStore);
|
router.post("/:storeId", sessionProtection, storeController.UpdateStore);
|
||||||
|
|
||||||
export default router;
|
export default router;
|
||||||
|
|
|
@ -2,23 +2,47 @@ import express from "express";
|
||||||
const router = express.Router();
|
const router = express.Router();
|
||||||
|
|
||||||
import * as storeServicesController from "../controllers/storeServicesController";
|
import * as storeServicesController from "../controllers/storeServicesController";
|
||||||
|
import { sessionProtection } from "../middleware/authMiddleware";
|
||||||
|
|
||||||
router.get("/:storeId", storeServicesController.GetStoreServices);
|
router.get(
|
||||||
router.post("/service", storeServicesController.CreateStoreService);
|
"/:storeId",
|
||||||
router.post("/update", storeServicesController.UpdateStoreService);
|
sessionProtection,
|
||||||
router.post("/activity", storeServicesController.CreateStoreServiceActivity);
|
storeServicesController.GetStoreServices
|
||||||
|
);
|
||||||
|
router.post(
|
||||||
|
"/service",
|
||||||
|
sessionProtection,
|
||||||
|
storeServicesController.CreateStoreService
|
||||||
|
);
|
||||||
|
router.post(
|
||||||
|
"/update",
|
||||||
|
sessionProtection,
|
||||||
|
storeServicesController.UpdateStoreService
|
||||||
|
);
|
||||||
|
router.post(
|
||||||
|
"/activity",
|
||||||
|
sessionProtection,
|
||||||
|
storeServicesController.CreateStoreServiceActivity
|
||||||
|
);
|
||||||
router.get(
|
router.get(
|
||||||
"/activities/:storeId/:serviceId",
|
"/activities/:storeId/:serviceId",
|
||||||
|
sessionProtection,
|
||||||
storeServicesController.GetStoreServiceActivities
|
storeServicesController.GetStoreServiceActivities
|
||||||
);
|
);
|
||||||
router.post(
|
router.post(
|
||||||
"/activity/update",
|
"/activity/update",
|
||||||
|
sessionProtection,
|
||||||
storeServicesController.UpdateStoreServiceActivity
|
storeServicesController.UpdateStoreServiceActivity
|
||||||
);
|
);
|
||||||
router.delete(
|
router.delete(
|
||||||
"/activity/:activityId",
|
"/activity/:activityId",
|
||||||
|
sessionProtection,
|
||||||
storeServicesController.DeleteStoreServiceActivity
|
storeServicesController.DeleteStoreServiceActivity
|
||||||
);
|
);
|
||||||
router.delete("/:serviceId", storeServicesController.DeleteStoreService);
|
router.delete(
|
||||||
|
"/:serviceId",
|
||||||
|
sessionProtection,
|
||||||
|
storeServicesController.DeleteStoreService
|
||||||
|
);
|
||||||
|
|
||||||
export default router;
|
export default router;
|
||||||
|
|
|
@ -2,10 +2,11 @@ import express from "express";
|
||||||
const router = express.Router();
|
const router = express.Router();
|
||||||
|
|
||||||
import * as usersController from "../controllers/usersController";
|
import * as usersController from "../controllers/usersController";
|
||||||
|
import { sessionProtection } from "../middleware/authMiddleware";
|
||||||
|
|
||||||
router.post("/", usersController.AddEmployee);
|
router.post("/", sessionProtection, usersController.AddEmployee);
|
||||||
router.get("/:storeId", usersController.GetEmployees);
|
router.get("/:storeId", sessionProtection, usersController.GetEmployees);
|
||||||
router.post("/update", usersController.UpdateEmployee);
|
router.post("/update", sessionProtection, usersController.UpdateEmployee);
|
||||||
router.delete("/", usersController.DeleteEmployee);
|
router.delete("/", sessionProtection, usersController.DeleteEmployee);
|
||||||
|
|
||||||
export default router;
|
export default router;
|
||||||
|
|
Loading…
Reference in New Issue