From 13f5111d7a55de13545a4dbbdc399bbc198a36da Mon Sep 17 00:00:00 2001 From: Alexandre Iooss Date: Sun, 30 Jan 2022 19:51:58 +0100 Subject: [PATCH] Mark CSRF cookies as secure --- photo21/settings.py | 1 + 1 file changed, 1 insertion(+) diff --git a/photo21/settings.py b/photo21/settings.py index 92965ca..f46c675 100644 --- a/photo21/settings.py +++ b/photo21/settings.py @@ -43,6 +43,7 @@ ADMINS = [ # Use secure cookies in production SESSION_COOKIE_SECURE = not DEBUG +CSRF_COOKIE_SECURE = not DEBUG # Application definition