From 45df2a0123c179c8478eb4dea7fe8b0294309b35 Mon Sep 17 00:00:00 2001 From: Seth Ladygo Date: Sun, 19 May 2019 02:31:21 -0700 Subject: [PATCH] settings.py: add more security settings --- procat2/settings.py | 15 +++++++++++++++ 1 file changed, 15 insertions(+) diff --git a/procat2/settings.py b/procat2/settings.py index 745967d..115ba4e 100644 --- a/procat2/settings.py +++ b/procat2/settings.py @@ -22,7 +22,22 @@ FRONTEND_DIR = os.path.join(BASE_DIR, 'cateditor') # bring in ansible-defined settings from .settings_ansible import * +# for 500 errors logging +ADMINS = [('Seth Ladygo', 'alx-admin@procatalog.io')] +# for broken link reporting +MANAGERS = [('Seth Ladygo', 'alx-admin@procatalog.io')] + +# For deployment, see +# https://docs.djangoproject.com/en/2.1/howto/deployment/checklist/ + +# Security settings recommended by +# ./manage.py check --deploy +SECURE_CONTENT_TYPE_NOSNIFF = True +SECURE_BROWSER_XSS_FILTER = True +SESSION_COOKIE_SECURE = True +CSRF_COOKIE_SECURE = True +X_FRAME_OPTIONS = 'DENY' LOGGING = { 'version': 1,