Browse Source

Make cookies secure via nginx

pull/160/head
Mike Olund 8 years ago
parent
commit
95bb215985
2 changed files with 4 additions and 0 deletions
  1. +2
    -0
      edivorce/settings/openshift.py
  2. +2
    -0
      openshift/nginx-proxy/conf.d/server.conf

+ 2
- 0
edivorce/settings/openshift.py View File

@ -80,3 +80,5 @@ BASICAUTH_PASSWORD = os.getenv('BASICAUTH_PASSWORD', '')
# Only send session cookies over SSL # Only send session cookies over SSL
SESSION_COOKIE_SECURE=True SESSION_COOKIE_SECURE=True
SESSION_COOKIE_PATH = PROXY_URL_PREFIX
SESSION_EXPIRE_AT_BROWSER_CLOSE = True

+ 2
- 0
openshift/nginx-proxy/conf.d/server.conf View File

@ -14,6 +14,7 @@ server {
location / { location / {
proxy_pass http://edivorce-django:8080; proxy_pass http://edivorce-django:8080;
proxy_pass_request_headers on; proxy_pass_request_headers on;
proxy_cookie_domain ~(?P<domain>(justice.gov.bc.ca))$ "$domain; Secure";
# remove directories from incoming requests; # remove directories from incoming requests;
rewrite ^/divorce-dev$ / last; rewrite ^/divorce-dev$ / last;
@ -39,6 +40,7 @@ server {
proxy_pass http://edivorce-django:8080; proxy_pass http://edivorce-django:8080;
proxy_pass_request_headers on; proxy_pass_request_headers on;
proxy_cookie_domain ~(?P<domain>(justice.gov.bc.ca))$ "$domain; Secure";
} }
# For status of ngnix service # For status of ngnix service


Loading…
Cancel
Save