Browse Source

Refs #35401 -- Linked the CsrfViewMiddleware docs to the csrf_protect() decorator.

lufafajoshua 9 months ago
parent
commit
708b01c795
2 changed files with 5 additions and 1 deletions
  1. 2 1
      docs/ref/csrf.txt
  2. 3 0
      docs/ref/middleware.txt

+ 2 - 1
docs/ref/csrf.txt

@@ -152,7 +152,8 @@ class-based views<decorating-class-based-views>`.
 
 .. function:: csrf_protect(view)
 
-    Decorator that provides the protection of ``CsrfViewMiddleware`` to a view.
+    Decorator that provides the protection of
+    :class:`~django.middleware.csrf.CsrfViewMiddleware` to a view.
 
     Usage::
 

+ 3 - 0
docs/ref/middleware.txt

@@ -569,6 +569,9 @@ Adds protection against Cross Site Request Forgeries by adding hidden form
 fields to POST forms and checking requests for the correct value. See the
 :doc:`Cross Site Request Forgery protection documentation </ref/csrf>`.
 
+You can add Cross Site Request Forgery protection to individual views using the
+:func:`~django.views.decorators.csrf.csrf_protect()` decorator.
+
 ``X-Frame-Options`` middleware
 ------------------------------