]> git.ipfire.org Git - ipfire.org.git/commitdiff
xsrf_form_html: Set Vary: Cookie header
authorMichael Tremer <michael.tremer@ipfire.org>
Tue, 6 Nov 2018 09:26:06 +0000 (09:26 +0000)
committerMichael Tremer <michael.tremer@ipfire.org>
Tue, 6 Nov 2018 09:26:06 +0000 (09:26 +0000)
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
src/web/base.py

index 96df315e4d8bb64b267f29ed9309ee8a9ddcdff7..b6fee9b5f68ef44c59c4933462902edf4bee9fb0 100644 (file)
@@ -30,6 +30,12 @@ class BaseHandler(tornado.web.RequestHandler):
 
                self.render("error.html", status_code=status_code, message=message, **kwargs)
 
+       def xsrf_form_html(self, *args, **kwargs):
+               # Set Vary: Cookie header
+               self.add_header("Vary", "Cookie")
+
+               return super().xsrf_form_html(*args, **kwargs)
+
        @property
        def hostname(self):
                # Remove the development prefix