Skip to content

Commit 0d9b17f

Browse files
author
Matthew Fisher
committed
ref(controller): disable CSRF token authn/authz
1 parent bc83b63 commit 0d9b17f

2 files changed

Lines changed: 2 additions & 11 deletions

File tree

client/deis.py

Lines changed: 2 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -152,16 +152,8 @@ def _get_name_from_git_remote(self, git_root):
152152

153153
def request(self, *args, **kwargs):
154154
"""
155-
Issue an HTTP request with proper cookie handling including
156-
`Django CSRF tokens <https://docs.djangoproject.com/en/dev/ref/contrib/csrf/>`
157-
"""
158-
for cookie in self.cookies:
159-
if cookie.name == 'csrftoken':
160-
if 'headers' in kwargs:
161-
kwargs['headers']['X-CSRFToken'] = cookie.value
162-
else:
163-
kwargs['headers'] = {'X-CSRFToken': cookie.value}
164-
break
155+
Issue an HTTP request with proper cookie handling
156+
"""
165157
url = args[1]
166158
if 'headers' in kwargs:
167159
kwargs['headers']['Referer'] = url

controller/deis/settings.py

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -104,7 +104,6 @@
104104
MIDDLEWARE_CLASSES = (
105105
'django.middleware.common.CommonMiddleware',
106106
'django.contrib.sessions.middleware.SessionMiddleware',
107-
'django.middleware.csrf.CsrfViewMiddleware',
108107
'django.contrib.auth.middleware.AuthenticationMiddleware',
109108
'django.contrib.messages.middleware.MessageMiddleware',
110109
'api.middleware.VersionMiddleware',

0 commit comments

Comments
 (0)