From 4c5255f5ad587b13644c6a38e9d9ef3c0ef9852f Mon Sep 17 00:00:00 2001 From: Unknwon Date: Tue, 14 Feb 2017 03:52:20 -0500 Subject: cookie: enhance cookie security (#3525) --- modules/setting/setting.go | 2 ++ 1 file changed, 2 insertions(+) (limited to 'modules/setting/setting.go') diff --git a/modules/setting/setting.go b/modules/setting/setting.go index 5b8ab211..d0fd21fd 100644 --- a/modules/setting/setting.go +++ b/modules/setting/setting.go @@ -98,6 +98,7 @@ var ( LogInRememberDays int CookieUserName string CookieRememberName string + CookieSecure bool ReverseProxyAuthUser string // Database settings @@ -466,6 +467,7 @@ func NewContext() { LogInRememberDays = sec.Key("LOGIN_REMEMBER_DAYS").MustInt() CookieUserName = sec.Key("COOKIE_USERNAME").String() CookieRememberName = sec.Key("COOKIE_REMEMBER_NAME").String() + CookieSecure = sec.Key("COOKIE_SECURE").MustBool(false) ReverseProxyAuthUser = sec.Key("REVERSE_PROXY_AUTHENTICATION_USER").MustString("X-WEBAUTH-USER") sec = Cfg.Section("attachment") -- cgit v1.2.3