Files
galaxy/static/scripts/mvc/user
John Chilton b17091a3ec CSRF protection for login, logout, and user registeration.
The approach is to use per-session CSRF tokens - this avoids many complications related to per-form tokens. We generate a sequence of hashes based on session IDs that doesn't follow the same pattern as normal database API IDs by supplying a "kind" parameter to encode_id (we use the same pattern for securing the job files API for Pulsar).
2017-08-04 11:52:13 -04:00
..
2016-12-14 22:46:36 +01:00
2016-12-14 22:46:36 +01:00
2016-12-14 22:46:36 +01:00
2017-02-14 15:49:59 -05:00