From a0ccff71efb85f13fbdfaa2079dfa31983bf05fd Mon Sep 17 00:00:00 2001 From: VVX7 Date: Wed, 2 Oct 2019 16:34:27 -0400 Subject: [PATCH] chg: [authentication] added flask session secret --- config/config.cfg.default | 1 + server.py | 4 +++- 2 files changed, 4 insertions(+), 1 deletion(-) diff --git a/config/config.cfg.default b/config/config.cfg.default index ec9d131..50fa496 100644 --- a/config/config.cfg.default +++ b/config/config.cfg.default @@ -6,6 +6,7 @@ debug = False [Auth] misp_fqdn = "https://misp.local" ssl_verify = True +session_secret = **Change_Me** [Dashboard] #hours diff --git a/server.py b/server.py index 60de476..6e30692 100755 --- a/server.py +++ b/server.py @@ -34,9 +34,11 @@ server_host = cfg.get("Server", "host") server_port = cfg.getint("Server", "port") server_debug = cfg.get("Server", "debug") auth_host = cfg.get("Auth", "misp_fqdn") -auth_ssl_verify = cfg.get("Auth", "ssl_verify") +auth_ssl_verify = cfg.getboolean("Auth", "ssl_verify") +auth_session_secret = cfg.get("Auth", "session_secret") app = Flask(__name__) +app.secret_key = auth_session_secret redis_server_log = redis.StrictRedis( host=cfg.get('RedisGlobal', 'host'),