diff --git a/src/forum/config.py b/src/forum/config.py index b057b0f..0bdd88b 100644 --- a/src/forum/config.py +++ b/src/forum/config.py @@ -32,3 +32,9 @@ CACHE_CONFIG = { 'location': os.environ.get('CACHE_LOCATION', ''), 'backend': os.environ.get('CACHE_BACKEND', ''), } + +SECURE_HSTS_SECONDS = os.environ.get('SECURE_HSTS_SECONDS', 3600) +SECURE_SSL_REDIRECT = os.environ.get('SECURE_SSL_REDIRECT', 'False') == 'True' +SESSION_COOKIE_SECURE = os.environ.get('SESSION_COOKIE_SECURE', 'False') == 'True' +CSRF_COOKIE_SECURE = os.environ.get('CSRF_COOKIE_SECURE', 'False') == 'True' +SECURE_CROSS_ORIGIN_OPENER_POLICY = 'same-origin-allow-popups'