Skip to content

Commit a49870b

Browse files
committed
🔧[#45] add session and CSRF samesite option
1 parent 44eb847 commit a49870b

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

open_api_framework/conf/base.py

+2
Original file line numberDiff line numberDiff line change
@@ -416,8 +416,10 @@
416416
#
417417
SESSION_COOKIE_SECURE = IS_HTTPS
418418
SESSION_COOKIE_HTTPONLY = True
419+
SESSION_COOKIE_SAMESITE = config("SESSION_COOKIE_SAMESITE", "Strict")
419420

420421
CSRF_COOKIE_SECURE = IS_HTTPS
422+
CSRF_COOKIE_SAMESITE = config("CSRF_COOKIE_SAMESITE", "Strict")
421423

422424
X_FRAME_OPTIONS = "DENY"
423425

0 commit comments

Comments
 (0)