diff --git a/src/accounts/user.js b/src/accounts/user.js index 4c3cac7..b224edf 100644 --- a/src/accounts/user.js +++ b/src/accounts/user.js @@ -5,6 +5,7 @@ import { createTokens } from './tokens.js' const { ObjectId } = mongo const JWTSignature = process.env.JWT_SIGNATURE +const { ROOT_DOMAIN } = process.env export async function getUserFromCookies(request, reply) { try { @@ -58,13 +59,13 @@ export async function refreshTokens(sessionToken, userId, reply) { reply .setCookie('refreshToken', refreshToken, { path: "/", - domain: "localhost", + domain: ROOT_DOMAIN, httpOnly: true, secure: true, expires: refreshExpires, }).setCookie('accessToken', accessToken, { path: "/", - domain: "localhost", + domain: ROOT_DOMAIN, httpOnly: true, secure: true, })