gentoo-overlay/www-apps/gitlabhq/files/gitlabhq-6.5.0-fix-login-over-ssl.patch

12 lines
613 B
Diff

--- config/initializers/session_store.rb.broken 2014-01-22 22:15:38.530000000 +0100
+++ config/initializers/session_store.rb 2014-01-22 22:06:53.020000000 +0100
@@ -4,7 +4,7 @@
:redis_store, # Using the cookie_store would enable session replay attacks.
servers: Gitlab::Application.config.cache_store.last, # re-use the Redis config from the Rails cache store
key: '_gitlab_session',
- secure: Gitlab.config.gitlab.https,
+ secure: Gitlab::Application.config.force_ssl,
httponly: true,
path: (Rails.application.config.relative_url_root.nil?) ? '/' : Rails.application.config.relative_url_root
)