Skip to content

Conversation

tehasdf
Copy link
Contributor

@tehasdf tehasdf commented Jul 7, 2016

There is no need for the user to ever care about the secret_key value,
the only thing that matters is that it isn't easy to guess (or repeated across
hosts).

Try to see if the auth token generator is used, and if it is, generate a safe
secret_key during bootstrap.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant