mirror of
https://github.com/librenms/librenms.git
synced 2024-10-07 16:52:45 +00:00
Validate secure cookies (#15401)
* Validate secure session cookies if HTTPS When HTTPS is available, secure session cookies should be enabled SESSION_SECURE_COOKIE=true * Apply fixes from StyleCI * Note config:cache --------- Co-authored-by: StyleCI Bot <bot@styleci.io>
This commit is contained in:
@@ -62,6 +62,10 @@ class WebServer extends BaseValidation
|
||||
$validator->fail('base_url is not set correctly', "lnms config:set base_url $correct_base");
|
||||
}
|
||||
}
|
||||
|
||||
if (request()->secure() && ! \config('session.secure')) {
|
||||
$validator->fail('Secure session cookies are not enabled', 'Set SESSION_SECURE_COOKIE=true and run lnms config:cache');
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
|
Reference in New Issue
Block a user