This commit is contained in:
2026-03-19 15:25:55 +07:00
parent 6cb4f53410
commit 64711bc54a
2 changed files with 29 additions and 0 deletions

22
src/middleware/auth.js Normal file
View File

@@ -0,0 +1,22 @@
// Authentication middleware
function requireAuth(req, res, next) {
if (!req.session || !req.session.authenticated) {
return res.status(401).json({ error: 'Unauthorized' });
}
next();
}
// Role-based permissions
function getRolePermissions(role) {
const permissions = {
admin: ['read', 'write', 'delete', 'admin'],
editor: ['read', 'write'],
viewer: ['read']
};
return permissions[role] || permissions.viewer;
}
module.exports = {
requireAuth,
getRolePermissions
};