diff options
Diffstat (limited to 'custom/conf')
-rw-r--r-- | custom/conf/app.ini.sample | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/custom/conf/app.ini.sample b/custom/conf/app.ini.sample index e44cc90a4b..0212964750 100644 --- a/custom/conf/app.ini.sample +++ b/custom/conf/app.ini.sample @@ -321,6 +321,8 @@ IMPORT_LOCAL_PATHS = false DISABLE_GIT_HOOKS = false ; Password Hash algorithm, either "pbkdf2", "argon2", "scrypt" or "bcrypt" PASSWORD_HASH_ALGO = pbkdf2 +; Set false to allow JavaScript to read CSRF cookie +CSRF_COOKIE_HTTP_ONLY = true [openid] ; |