From 68f7c80b7e65717d73b96f8b6422304fe1a8936f Mon Sep 17 00:00:00 2001 From: Brian Stephan Date: Mon, 20 Feb 2023 10:30:13 -0600 Subject: [PATCH] put the security middleware as the first middleware I don't think I've ever gotten a solid idea that this is *necessary*, but I've seen other docs refer to/assume this, so sure? --- dr_botzo/settings.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/dr_botzo/settings.py b/dr_botzo/settings.py index 0dd3432..3931620 100644 --- a/dr_botzo/settings.py +++ b/dr_botzo/settings.py @@ -54,13 +54,13 @@ INSTALLED_APPS = ( ) MIDDLEWARE = ( + 'django.middleware.security.SecurityMiddleware', 'django.contrib.sessions.middleware.SessionMiddleware', 'django.middleware.common.CommonMiddleware', 'django.middleware.csrf.CsrfViewMiddleware', 'django.contrib.auth.middleware.AuthenticationMiddleware', 'django.contrib.messages.middleware.MessageMiddleware', 'django.middleware.clickjacking.XFrameOptionsMiddleware', - 'django.middleware.security.SecurityMiddleware', ) ROOT_URLCONF = 'dr_botzo.urls'