From 22ca5f47b3ce2e98db308bda303c3505ca5c284f Mon Sep 17 00:00:00 2001 From: Robert Richter Date: Fri, 29 May 2020 22:01:01 +0200 Subject: [PATCH] update Fr 29. Mai 22:01:01 CEST 2020 --- server/routing.js | 33 +++------------------------------ 1 file changed, 3 insertions(+), 30 deletions(-) diff --git a/server/routing.js b/server/routing.js index a67e82f..8f03651 100755 --- a/server/routing.js +++ b/server/routing.js @@ -49,38 +49,11 @@ module.exports = function (app, sql, uuidv4, app_cfg, passport, auth, waip, udp) }); // API - app.get('/api', function (req, res) { - if (app_cfg.public.ext_privacy) { - res.redirect(app_cfg.public.url_privacy); - } else { - res.render('privacy', { - public: app_cfg.public, - title: 'Datenschutzerklärung', - user: req.user - }); - }; - }); - - // 404 abfangen und an error handler weiterleiten - app.use(function (req, res, next) { - var err = new Error('Seite nicht gefunden!'); - err.status = 404; + app.get('/api', function (req, res, next) { + var err = new Error('Sie sind nicht berechtigt diese Seite aufzurufen!'); + err.status = 403; next(err); }); - - // error handler - app.use(function (err, req, res, next) { - // set locals, only providing error in development - res.locals.message = err.message; - res.locals.error = app_cfg.global.development ? err : {}; - // render the error page - res.status(err.status || 500); - res.render('error', { - public: app_cfg.public, - user: req.user - }); - }); -