Files
pangolin/server/middlewares
Marc Schäfer f617f93a94 test(middleware): add regression tests for cross-org site binding prevention
Test the org-match logic in verifySiteAccess:
- Same org: allowed
- Cross-org: rejected with 403
- No prior org context (site-only routes): check skipped, normal flow

Test route stack ordering:
- verifySiteAccess runs after verifyResourceAccess/verifyTargetAccess
- verifySiteAccess runs before the target create/update handler

Test security scenarios for both WireGuard and newt site types.

Signed-off-by: Marc Schäfer <git@marcschaeferger.de>
2026-05-29 22:57:39 +00:00
..
2024-12-25 22:04:20 -05:00
2025-12-09 10:56:14 -05:00
2026-02-24 17:58:11 -08:00
2025-10-27 13:45:24 -07:00
2024-10-26 17:19:10 -04:00
2025-12-09 10:56:14 -05:00
2025-12-09 10:56:14 -05:00
2026-02-24 17:58:11 -08:00
2026-02-24 17:58:11 -08:00
2026-02-24 17:58:11 -08:00
2026-02-24 17:58:11 -08:00
2025-11-25 10:51:53 -05:00
2026-02-24 17:58:11 -08:00
2025-11-25 10:51:53 -05:00
2026-02-24 17:58:11 -08:00