Clear oauthproxy session in case the access token is invalid

This commit is contained in:
Johannes Zellner
2015-10-21 15:57:18 +02:00
parent bc09e4204b
commit 1eb1c44926

View File

@@ -55,7 +55,13 @@ function verifySession(req, res, next) {
console.error(error);
req.authenticated = false;
} else if (result.statusCode !== 200) {
req.sessionData.accessToken = null;
// clear session
delete gSessions[req.session.id];
req.session.id = uuid.v4();
gSessions[req.session.id] = {};
req.sessionData = gSessions[req.session.id];
req.authenticated = false;
} else {
req.authenticated = true;