1
0
Fork 0

Fix missing CSRF_TRUSTED_ORIGINS setting

Signed-off-by: Alfredos-Panagiotis Damkalis <fredy@fredy.gr>
spacecruft
Alfredos-Panagiotis Damkalis 2022-04-20 01:37:31 +03:00
parent e5c0f03339
commit 6313b93b67
1 changed files with 1 additions and 0 deletions

View File

@ -393,6 +393,7 @@ SECURE_HSTS_SECONDS = config('SECURE_HSTS_SECONDS', default=31536000, cast=int)
CORS_ALLOW_ALL_ORIGINS = config('CORS_ALLOW_ALL_ORIGINS', default=True, cast=bool)
CORS_URLS_REGEX = config('CORS_URLS_REGEX', default=r'^(?:/api/artifacts/.*|/media/artifacts/.*)$')
CORS_ALLOW_METHODS = config('CORS_ALLOW_METHODS', default='GET, OPTIONS', cast=Csv())
CSRF_TRUSTED_ORIGINS = config('CSRF_TRUSTED_ORIGINS', default='', cast=Csv())
CSP_DEFAULT_SRC = config(
'CSP_DEFAULT_SRC',
cast=lambda v: tuple(s.strip() for s in v.split(',')),