Skip to content
Snippets Groups Projects

security issue solved using external middleware

Merged Piotr Gawron requested to merge 199_security_issue_by_external_middleware into devel_0.10.x
16 files
+ 36
46
Compare changes
  • Side-by-side
  • Inline
Files
16
+ 5
1
@@ -36,6 +36,7 @@ INSTALLED_APPS = [
'django_otp.plugins.otp_totp',
'two_factor',
'web',
'stronghold',
'debug_toolbar'
]
@@ -50,6 +51,7 @@ MIDDLEWARE = [
'django_otp.middleware.OTPMiddleware',
'django.contrib.messages.middleware.MessageMiddleware',
'django.middleware.clickjacking.XFrameOptionsMiddleware',
'stronghold.middleware.LoginRequiredMiddleware',
]
ROOT_URLCONF = 'smash.urls'
@@ -119,9 +121,11 @@ STATIC_URL = '/static/'
MEDIA_URL = '/media/'
# Used for @login_required ecosystem
# LOGIN_URL = '/login'
LOGIN_URL = 'two_factor:login'
LOGIN_REDIRECT_URL = 'web.views.appointments'
LOGOUT_REDIRECT_URL = 'web.views.appointments'
# Used for LoginRequiredMiddleware
STRONGHOLD_PUBLIC_NAMED_URLS = (LOGIN_URL,)
from local_settings import *
Loading