Skip to content

Commit 8757ce5

Browse files
author
karmaking
committed
fix CSRF/CORS
1 parent a1fe695 commit 8757ce5

File tree

2 files changed

+2
-5
lines changed

2 files changed

+2
-5
lines changed

apimanager/apimanager/settings.py

Lines changed: 1 addition & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -44,7 +44,6 @@
4444
'django.contrib.sessions',
4545
'django.contrib.messages',
4646
'django.contrib.staticfiles',
47-
#'corsheaders',
4847
'bootstrap',
4948
'bootstrap_datepicker_plus',
5049
'mathfilters',
@@ -87,7 +86,6 @@
8786
'django.contrib.messages.middleware.MessageMiddleware',
8887
'django.middleware.clickjacking.XFrameOptionsMiddleware',
8988
# 'django.middleware.cache.FetchFromCacheMiddleware',
90-
#'corsheaders.middleware.CorsMiddleware'
9189
]
9290

9391
#cache the view page, we set 60s = 1m,
@@ -284,7 +282,7 @@
284282
CSRF_COOKIE_HTTPONLY = True
285283
CSRF_COOKIE_SECURE = True
286284

287-
#SECURE_PROXY_SSL_HEADER = ('HTTP_X_FORWARDED_PROTO', 'https')
285+
# SECURE_PROXY_SSL_HEADER = ('HTTP_X_FORWARDED_PROTO', 'https')
288286

289287
# Paths on API_HOST to OAuth
290288
OAUTH_TOKEN_PATH = '/oauth/initiate'

requirements.txt

Lines changed: 1 addition & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,5 +10,4 @@ matplotlib
1010
django-bootstrap-datepicker-plus
1111
django-mathfilters
1212
django-bootstrap
13-
django-csp
14-
#django-cors-headers
13+
django-csp

0 commit comments

Comments
 (0)