Files
galaxy/static/scripts/layout
John Chilton b17091a3ec CSRF protection for login, logout, and user registeration.
The approach is to use per-session CSRF tokens - this avoids many complications related to per-form tokens. We generate a sequence of hashes based on session IDs that doesn't follow the same pattern as normal database API IDs by supplying a "kind" parameter to encode_id (we use the same pattern for securing the job files API for Pulsar).
2017-08-04 11:52:13 -04:00
..
2016-07-22 22:47:13 +02:00
2016-03-23 12:39:06 -04:00
2017-06-20 22:26:03 -04:00