
    LȂi	                     4   S SK Jr  SSKJrJrJr  S r\" \" S5      SS9r\" \" S5      S	S9r\" \" S
5      SS9r	S r
\" \
" S5      SS9r\" \
" S5      SS9r\" \
" S5      SS9r\" \R                  SS9S 5       r\" \R                  SS9S 5       rS rS rg)    )settings   )TagsWarningregisterc                     U S-   $ )Nzq Using a secure-only session cookie makes it more difficult for network traffic sniffers to hijack user sessions. messages    UD:\sksbv-state-backend\venv\Lib\site-packages\django/core/checks/security/sessions.pyadd_session_cookie_messager      s    	<     znYou have 'django.contrib.sessions' in your INSTALLED_APPS, but you have not set SESSION_COOKIE_SECURE to True.zsecurity.W010)idzYou have 'django.contrib.sessions.middleware.SessionMiddleware' in your MIDDLEWARE, but you have not set SESSION_COOKIE_SECURE to True.zsecurity.W011z)SESSION_COOKIE_SECURE is not set to True.zsecurity.W012c                     U S-   $ )Nzs Using an HttpOnly session cookie makes it more difficult for cross-site scripting attacks to hijack user sessions.r	   r
   s    r   add_httponly_messager   $   s    	@ r   zpYou have 'django.contrib.sessions' in your INSTALLED_APPS, but you have not set SESSION_COOKIE_HTTPONLY to True.zsecurity.W013zYou have 'django.contrib.sessions.middleware.SessionMiddleware' in your MIDDLEWARE, but you have not set SESSION_COOKIE_HTTPONLY to True.zsecurity.W014z+SESSION_COOKIE_HTTPONLY is not set to True.zsecurity.W015T)deployc                     [         R                  SL a  / $ / n[        5       (       a  UR                  [        5        [        5       (       a  UR                  [        5        [        U5      S:  a  [        /nU$ NT   )	r   SESSION_COOKIE_SECURE_session_appappendW010_session_middlewareW011lenW012app_configskwargserrorss      r   check_session_cookie_securer"   B   sY    %%-	F~~dd
6{QMr   c                     [         R                  SL a  / $ / n[        5       (       a  UR                  [        5        [        5       (       a  UR                  [        5        [        U5      S:  a  [        /nU$ r   )	r   SESSION_COOKIE_HTTPONLYr   r   W013r   W014r   W015r   s      r   check_session_cookie_httponlyr(   P   sY    ''4/	F~~dd
6{QMr   c                  (    S[         R                  ;   $ )Nz4django.contrib.sessions.middleware.SessionMiddleware)r   
MIDDLEWAREr	   r   r   r   r   ^   s    AXEXEXXXr   c                  (    S[         R                  ;   $ )Nzdjango.contrib.sessions)r   INSTALLED_APPSr	   r   r   r   r   b   s    $(?(???r   N)django.confr    r   r   r   r   r   r   r   r   r%   r&   r'   securityr"   r(   r   r   r	   r   r   <module>r0      s     & & 	>  	)
  JK 	@  	+
  FG 
$--%
 &
 
$--%
 &
Y@r   