use host instead of headers to make Rack happy (#15741)
"headers" is provided by Rails, Rack can't rely on itgh/stable
parent
9c273c2a59
commit
3f8523130d
|
@ -7,7 +7,7 @@ module ActionDispatch
|
||||||
# Monkey-patch ActionDispatch to serve secure cookies to Tor Hidden Service
|
# Monkey-patch ActionDispatch to serve secure cookies to Tor Hidden Service
|
||||||
# users. Otherwise, ActionDispatch would drop the cookie over HTTP.
|
# users. Otherwise, ActionDispatch would drop the cookie over HTTP.
|
||||||
def write_cookie?(*)
|
def write_cookie?(*)
|
||||||
request.headers['Host'].ends_with?('.onion') || super
|
request.host.ends_with?('.onion') || super
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
|
@ -17,7 +17,7 @@ ActionDispatch::Cookies::CookieJar.prepend(ActionDispatch::CookieJarExtensions)
|
||||||
module Rack
|
module Rack
|
||||||
module SessionPersistedExtensions
|
module SessionPersistedExtensions
|
||||||
def security_matches?(request, options)
|
def security_matches?(request, options)
|
||||||
request.headers['Host'].ends_with?('.onion') || super
|
request.host.ends_with?('.onion') || super
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
end
|
end
|
||||||
|
|
Reference in New Issue