mirror of
https://github.com/davidhalter/django-stubs.git
synced 2025-12-08 21:14:49 +08:00
Both CSRF_COOKIE_SAMESITE and SESSION_COOKIE_SAMESITE should be Optional (#216)
This commit is contained in:
committed by
Maksim Kurnikov
parent
d061e84cc7
commit
2829faf1af
@@ -345,7 +345,7 @@ SESSION_COOKIE_PATH = "/"
|
|||||||
SESSION_COOKIE_HTTPONLY = True
|
SESSION_COOKIE_HTTPONLY = True
|
||||||
# Whether to set the flag restricting cookie leaks on cross-site requests.
|
# Whether to set the flag restricting cookie leaks on cross-site requests.
|
||||||
# This can be 'Lax', 'Strict', or None to disable the flag.
|
# This can be 'Lax', 'Strict', or None to disable the flag.
|
||||||
SESSION_COOKIE_SAMESITE = "Lax"
|
SESSION_COOKIE_SAMESITE: Optional[str] = ...
|
||||||
# Whether to save the session data on every request.
|
# Whether to save the session data on every request.
|
||||||
SESSION_SAVE_EVERY_REQUEST = False
|
SESSION_SAVE_EVERY_REQUEST = False
|
||||||
# Whether a user's session cookie expires when the Web browser is closed.
|
# Whether a user's session cookie expires when the Web browser is closed.
|
||||||
@@ -413,7 +413,7 @@ CSRF_COOKIE_DOMAIN = None
|
|||||||
CSRF_COOKIE_PATH = "/"
|
CSRF_COOKIE_PATH = "/"
|
||||||
CSRF_COOKIE_SECURE = False
|
CSRF_COOKIE_SECURE = False
|
||||||
CSRF_COOKIE_HTTPONLY = False
|
CSRF_COOKIE_HTTPONLY = False
|
||||||
CSRF_COOKIE_SAMESITE = "Lax"
|
CSRF_COOKIE_SAMESITE: Optional[str] = ...
|
||||||
CSRF_HEADER_NAME = "HTTP_X_CSRFTOKEN"
|
CSRF_HEADER_NAME = "HTTP_X_CSRFTOKEN"
|
||||||
CSRF_TRUSTED_ORIGINS: List[str] = ...
|
CSRF_TRUSTED_ORIGINS: List[str] = ...
|
||||||
CSRF_USE_SESSIONS = False
|
CSRF_USE_SESSIONS = False
|
||||||
|
|||||||
Reference in New Issue
Block a user