put the security middleware as the first middleware
I don't think I've ever gotten a solid idea that this is *necessary*, but I've seen other docs refer to/assume this, so sure?
This commit is contained in:
parent
7baa70d8f6
commit
68f7c80b7e
@ -54,13 +54,13 @@ INSTALLED_APPS = (
|
||||
)
|
||||
|
||||
MIDDLEWARE = (
|
||||
'django.middleware.security.SecurityMiddleware',
|
||||
'django.contrib.sessions.middleware.SessionMiddleware',
|
||||
'django.middleware.common.CommonMiddleware',
|
||||
'django.middleware.csrf.CsrfViewMiddleware',
|
||||
'django.contrib.auth.middleware.AuthenticationMiddleware',
|
||||
'django.contrib.messages.middleware.MessageMiddleware',
|
||||
'django.middleware.clickjacking.XFrameOptionsMiddleware',
|
||||
'django.middleware.security.SecurityMiddleware',
|
||||
)
|
||||
|
||||
ROOT_URLCONF = 'dr_botzo.urls'
|
||||
|
Loading…
Reference in New Issue
Block a user