mirror of
https://codeberg.org/davrot/forgejo.git
synced 2025-04-23 16:26:42 +02:00
![]() Backport #26999 If the AppURL(ROOT_URL) is an HTTPS URL, then the COOKIE_SECURE's default value should be true. And, if a user visits an "http" site with "https" AppURL, they won't be able to login, and they should have been warned. The only problem is that the "language" can't be set either in such case, while I think it is not a serious problem, and it could be fixed easily if needed. (cherry picked from commit b0a405c5fad2055976747a1c8b2c48dfe2750c9f) |
||
---|---|---|
.. | ||
content | ||
scripts | ||
static | ||
.gitignore | ||
LICENSE | ||
README.md | ||
README_ZH.md |