diff --git a/src/auth/controllers/auth.controller.ts b/src/auth/controllers/auth.controller.ts index e99922f..7c8e2b4 100644 --- a/src/auth/controllers/auth.controller.ts +++ b/src/auth/controllers/auth.controller.ts @@ -52,14 +52,7 @@ export class AuthController { naverRefreshToken, ); - res.cookie('refresh_token', refreshToken, { - httpOnly: true, - sameSite: 'Lax', - domain: 'localhost', - maxAge: 1000 * 60 * 60 * 24 * 7, // 7일 - }); - - return res.json({ accessToken }); + return res.json({ accessToken, refreshToken }); } @ApiKakaoLogin() @@ -81,14 +74,7 @@ export class AuthController { kakaoRefreshToken, ); - res.cookie('refresh_Token', refreshToken, { - httpOnly: true, - sameSite: 'Lax', - domain: 'localhost', - maxAge: 1000 * 60 * 60 * 24 * 7, // 7일 - }); - - return res.json({ accessToken }); + return res.json({ accessToken, refreshToken }); } @ApiCookieAuth('refresh-token') diff --git a/src/config/guards/jwt-refresh-token.guard.ts b/src/config/guards/jwt-refresh-token.guard.ts index 161097e..43299af 100644 --- a/src/config/guards/jwt-refresh-token.guard.ts +++ b/src/config/guards/jwt-refresh-token.guard.ts @@ -7,7 +7,7 @@ export class JwtRefreshTokenGuard { async canActivate(context: ExecutionContext) { const request = context.switchToHttp().getRequest(); - const refreshToken = request.cookies['refresh_token']; + const refreshToken = request.headers['refresh_token']; if (!refreshToken) { return false;