From 60a0aa151e74c303ccd04a602b097f2fdd782aec Mon Sep 17 00:00:00 2001 From: Greg Von Kuster Date: Wed, 24 Oct 2012 14:32:50 -0400 Subject: [PATCH] Add more information to the community_wsgi.ini.sample file. --- community_wsgi.ini.sample | 14 +++++++++++++- 1 file changed, 13 insertions(+), 1 deletion(-) diff --git a/community_wsgi.ini.sample b/community_wsgi.ini.sample index 4e2dbd712e0..d4b231437f8 100644 --- a/community_wsgi.ini.sample +++ b/community_wsgi.ini.sample @@ -38,9 +38,21 @@ session_data_dir = %(here)s/database/beaker_sessions session_key = galaxysessions session_secret = changethisinproduction -# Galaxy session security +# -- Users and Security + +# Galaxy encodes various internal values when these values will be output in +# some format (for example, in a URL or cookie). You should set a key to be +# used by the algorithm that encodes and decodes these values. It can be any +# string. If left unchanged, anyone could construct a cookie that would grant +# them access to others' sessions. id_secret = changethisinproductiontoo +# User authentication can be delegated to an upstream proxy server (usually +# Apache). The upstream proxy should set a REMOTE_USER header in the request. +# Enabling remote user disables regular logins. For more information, see: +# http://wiki.g2.bx.psu.edu/Admin/Config/Apache%20Proxy +#use_remote_user = False + # Configuration for debugging middleware debug = true use_lint = false