File: //usr/lib/python3/dist-packages/django/core/checks/security/__pycache__/sessions.cpython-310.pyc
o
ʎ�_� � @ s� d dl mZ ddlmZmZmZ dd� Zeed�dd�Zeed �d
d�Zeed�dd�Z d
d� Z
ee
d�dd�Zee
d�dd�Zee
d�dd�Z
eejdd�dd� �Zeejdd�dd� �Zdd� Zdd� ZdS ) � )�settings� )�Tags�Warning�registerc C � | d S )Nzq Using a secure-only session cookie makes it more difficult for network traffic sniffers to hijack user sessions.� ��messager r �F/usr/lib/python3/dist-packages/django/core/checks/security/sessions.py�add_session_cookie_message � �r znYou have 'django.contrib.sessions' in your INSTALLED_APPS, but you have not set SESSION_COOKIE_SECURE to True.z
security.W010)�idz�You have 'django.contrib.sessions.middleware.SessionMiddleware' in your MIDDLEWARE, but you have not set SESSION_COOKIE_SECURE to True.z
security.W011z)SESSION_COOKIE_SECURE is not set to True.z
security.W012c C r )Nzs Using an HttpOnly session cookie makes it more difficult for cross-site scripting attacks to hijack user sessions.r r r r r �add_httponly_message$ r
r zpYou have 'django.contrib.sessions' in your INSTALLED_APPS, but you have not set SESSION_COOKIE_HTTPONLY to True.z
security.W013z�You have 'django.contrib.sessions.middleware.SessionMiddleware' in your MIDDLEWARE, but you have not set SESSION_COOKIE_HTTPONLY to True.z
security.W014z+SESSION_COOKIE_HTTPONLY is not set to True.z
security.W015T)�deployc K �@ g }t jst� r
|�t� t� r|�t� t|�dkrtg}|S �N� ) r �SESSION_COOKIE_SECURE�_session_app�append�W010�_session_middleware�W011�len�W012��app_configs�kwargs�errorsr r r �check_session_cookie_secureB �
r c K r r ) r �SESSION_COOKIE_HTTPONLYr r �W013r �W014r �W015r r r r �check_session_cookie_httponlyO r! r&