[Commotion-admin] [luci-commotion-linux] Added secure and httponly flags to sysauth cookie in apps_controller.lua (#1)

areynold notifications at github.com
Fri Sep 27 17:14:08 UTC 2013


apps_controller.lua uses the same sysauth Set-Cookie code as luci's dispatcher.lua. Per commotion-openwrt issues 32 & 33, sysauth cookie should use httponly and secure flags.
You can merge this Pull Request by running:

  git pull https://github.com/opentechinstitute/luci-commotion-linux sysauth-cookie

Or you can view, comment on it, or merge it online at:

  https://github.com/opentechinstitute/luci-commotion-linux/pull/1

-- Commit Summary --

  * Added secure and httponly flags to sysauth cookie in apps_controller.lua

-- File Changes --

    M modules/commotion/luasrc/controller/commotion/apps_controller.lua (4)

-- Patch Links --

https://github.com/opentechinstitute/luci-commotion-linux/pull/1.patch
https://github.com/opentechinstitute/luci-commotion-linux/pull/1.diff
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.chambana.net/pipermail/commotion-admin/attachments/20130927/31ec398e/attachment.html>


More information about the Commotion-admin mailing list