Skip to content

Conversation

@mythmon
Copy link
Contributor

@mythmon mythmon commented Jan 30, 2015

Previously this was disallowed for cross-origin concerns. However, I learned that this also checks CSRF, so I'm not worried about cross-origin anymore.

r?

Previously this was disallowed for cross-origin concerns. However, I
learned that this also checks CSRF, so I'm not worried about
cross-origin anymore.
@mythmon mythmon force-pushed the drf-session-auth-1112921 branch from 891a041 to db7a853 Compare January 30, 2015 00:01
@mythmon mythmon changed the title [Bug ] Allow SessionAuthentication on APIs. [Bug 1112921] Allow SessionAuthentication on APIs. Jan 30, 2015
@rlr
Copy link
Contributor

rlr commented Jan 30, 2015

That makes sense regarding csrf. r+

mythmon added a commit that referenced this pull request Jan 30, 2015
[Bug 1112921] Allow SessionAuthentication on APIs.
@mythmon mythmon merged commit 0bb1604 into mozilla:master Jan 30, 2015
@mythmon mythmon deleted the drf-session-auth-1112921 branch January 30, 2015 00:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants