Mariusz Felisiak
|
1d16dbc745
Fixed broken links and redirects in docs.
|
3 years ago |
sdwoodbury
|
691b8dd8ed
Made CSRF JavaScript example more reusable.
|
3 years ago |
Tim Graham
|
2411b8b5eb
Fixed #16010 -- Added Origin header checking to CSRF middleware.
|
4 years ago |
Carlton Gibson
|
3d4ffd1ff0
Fixed #32065 -- Restored leading dot to CSRF_COOKIE_DOMAIN examples.
|
4 years ago |
Adam Johnson
|
2afa61e7d9
Refs #31493 -- Replaced var with const/let in documentation JS.
|
4 years ago |
Adam Johnson
|
1cdfe8d912
Prevented (and corrected) single backtick usage in docs.
|
5 years ago |
Ram Rachum
|
5b09354954
Fixed #31291 -- Renamed salt to mask for CSRF tokens.
|
5 years ago |
Jon Dufresne
|
3fe5d0128b
Rewrote CSRF JavaScript example without jQuery.
|
5 years ago |
Jon Dufresne
|
e703b93a65
Fixed #31080 -- Removed redundant type="text/javascript" attribute from <script> tags.
|
5 years ago |
Baptiste Mispelon
|
ff1b19da67
Fixed #31029 -- Used more specific links to RFCs.
|
5 years ago |
Tobias Kunze
|
4a954cfd11
Fixed #30573 -- Rephrased documentation to avoid words that minimise the involved difficulty.
|
5 years ago |
Tim Graham
|
8e675e2bd8
Fixed #30299 -- Removed jQuery dependency from getCookie() in CSRF docs.
|
6 years ago |
François Freitag
|
9b15ff08ba
Used auto-numbered lists in documentation.
|
6 years ago |
Mayank Singhal
|
76b3367035
Fixed #29879 -- Added CSRF_COOKIE_HTTPONLY to CSRF AJAX docs.
|
6 years ago |
Tim Graham
|
a29fce8984
Fixed #29858 -- Clarified docs regarding CSRF token header name.
|
6 years ago |
Maxime Lorant
|
31407fa3b3
Removed duplicate words in docs.
|
6 years ago |
Mariusz Felisiak
|
35319bf12c
Alphabetized imports in various docs.
|
6 years ago |
CHI Cheng
|
4660ce5a69
Fixed #29375 -- Removed empty action attribute on HTML forms.
|
7 years ago |
Alex Gaynor
|
9a56b4b13e
Fixed #27863 -- Added support for the SameSite cookie flag.
|
7 years ago |
Tim Graham
|
5446b72003
Removed versionadded/changed annotations for 1.11.
|
7 years ago |
Flávio Juvenal
|
0af14b2eaa
Refs #16870 -- Doc'd that CSRF protection requires the Referer header.
|
7 years ago |
Claude Paroz
|
01f658644a
Updated various links in docs to avoid redirects
|
7 years ago |
Alasdair Nicol
|
503e944ac7
Refs #16859 -- Updated CSRF FAQ to mention CSRF_USE_SESSIONS setting.
|
8 years ago |
Tim Graham
|
e27e4c0339
Removed versionadded/changed annotations for 1.10.
|
8 years ago |
Raphael Michel
|
ddf169cdac
Refs #16859 -- Allowed storing CSRF tokens in sessions.
|
8 years ago |
Camilo Nova
|
222e1334bf
Used strict comparison in docs/ref/csrf.txt's JavaScript.
|
8 years ago |
Holly Becker
|
55fec16aaf
Fixed #26628 -- Changed CSRF logger to django.security.csrf.
|
8 years ago |
B. J. Potter
|
9c53facc45
Fixed #26596 -- Added Jinja2 {{ csrf_input }} documentation.
|
8 years ago |
B. J. Potter
|
261738990e
Added syntax highlighting to CSRF example.
|
8 years ago |
Holly Becker
|
ff9198ee0f
Refs #26628 -- Documented CSRF failure logging.
|
8 years ago |