visionmedia / express-resource

Resourceful routing for Express
1.41k stars 140 forks source link

POST/PUT/DELETE -> Forbidden #53

Closed panosru closed 12 years ago

panosru commented 12 years ago

Hello, POST/PUT/DELETE always return Forbidden, GET methods works fine... I tried to use the example

exports.index = (req, res) ->
  res.send "forum index"

exports["new"] = (req, res) ->
  res.send "new forum"

exports.create = (req, res) ->
  res.send "create forum"

exports.show = (req, res) ->
  res.send "show forum " + req.params.api

exports.edit = (req, res) ->
  res.send "edit forum " + req.params.api

exports.update = (req, res) ->
  res.send "update forum " + req.params.api

exports.destroy = (req, res) ->
  res.send "destroy forum " + req.params.api

I used api resource name instead of forum for my test

So index,new,show,edit worked fine but create,update,destroy throw me Forbidden :/

panosru commented 12 years ago

Ok... it was because of csrf D A M N ! so many hours lost :P

tj commented 12 years ago

hahaha perhaps in development we should log a warning :D

panosru commented 12 years ago

or perhaps I need to go to bed because it is already 3:50am :P