]> git.ipfire.org Git - ipfire.org.git/commitdiff
cookie: Set secure attribute
authorMichael Tremer <michael.tremer@ipfire.org>
Mon, 6 Sep 2021 17:07:45 +0000 (17:07 +0000)
committerMichael Tremer <michael.tremer@ipfire.org>
Mon, 6 Sep 2021 17:07:45 +0000 (17:07 +0000)
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
src/web/auth.py

index d9bb703ec8aff8d2fb3574003e66a9b9f27eb81c..d633a94b2e0603186f0450700c49469d7bba3d63 100644 (file)
@@ -26,7 +26,7 @@ class AuthenticationMixin(CacheMixin):
 
                # Send session cookie to the client
                self.set_cookie("session_id", session_id,
-                       domain=self.request.host, expires=session_expires)
+                       domain=self.request.host, expires=session_expires, secure=True)
 
        def logout(self):
                session_id = self.get_cookie("session_id")