Closed timmo001 closed 3 years ago
Done some tests with actual connection and calling, they seem to be disallowed
peer.connect(peerID)
returns undefined if the key is incorrect.
After reading the docs, I can see that the token/key only applies to the POST methods and allow_discovery
is used as an 'avaliable sessions' type request, but the sessions can only be connected to with a token/password.
https://github.com/peers/peerjs-server/blob/master/src/api/README.md
This issue has been automatically locked since there has not been any recent activity after it was closed. Please open a new issue for related bugs.
I'm having an issue:
I have set up a key using
ExpressPeerServer
but anyone can access/rtc/:id/peers
etc. with any key.For example if I get:
I can see all the peers, using any key I provide, it doesn't check against the one I set.