Remove refresh token cookie on logout (#5182)

Co-authored-by: Rijk van Zanten <rijkvanzanten@me.com>
This commit is contained in:
Pascal Jufer
2021-04-21 18:53:11 +02:00
committed by GitHub
parent b629bf61d0
commit c82d0b4198
2 changed files with 46 additions and 39 deletions

View File

@@ -144,6 +144,13 @@ router.post(
}
await authenticationService.logout(currentRefreshToken);
if (req.cookies.directus_refresh_token) {
res.clearCookie('directus_refresh_token', {
domain: env.REFRESH_TOKEN_COOKIE_DOMAIN,
});
}
return next();
}),
respond