Documentation
¶
Overview ¶
Package viewerauth admits only requests that carry a valid viewer token from the runner.
Index ¶
Constants ¶
This section is empty.
Variables ¶
This section is empty.
Functions ¶
func Middleware ¶
Middleware verifies the token of every request for app and puts what it names in the request context. A request to callPath must carry a call token, which names the calling app; any other request must carry a viewer token, which names none. Requests without a fitting, valid token get 401 and never reach next.
A viewer token and a call token made for a viewer put the viewer and the raw token in the context; a call token also puts the calling app. A token for a call an app makes as itself puts only the calling app.
Types ¶
This section is empty.
Click to show internal directories.
Click to hide internal directories.