diff --git a/apimanager/apimanager/settings.py b/apimanager/apimanager/settings.py index 445de42..c3501fb 100644 --- a/apimanager/apimanager/settings.py +++ b/apimanager/apimanager/settings.py @@ -282,6 +282,13 @@ SHOW_API_TESTER = False # Always save session$ SESSION_SAVE_EVERY_REQUEST = True +# Session Cookie Settings +SESSION_COOKIE_SECURE = True +SESSION_COOKIE_HTTPONLY = True +SESSION_COOKIE_AGE = 300 +SESSION_ENGINE = "django.contrib.sessions.backends.signed_cookies" + + # Paths on API_HOST to OAuth OAUTH_TOKEN_PATH = '/oauth/initiate' OAUTH_AUTHORIZATION_PATH = '/oauth/authorize'