From d8eef34a377e991c2adc6346e8e6b219c1b244c0 Mon Sep 17 00:00:00 2001 From: Livio Amstutz Date: Fri, 10 Jul 2020 13:09:30 +0200 Subject: [PATCH] fix: send csrf on root path (#444) --- internal/ui/login/handler/login.go | 1 + 1 file changed, 1 insertion(+) diff --git a/internal/ui/login/handler/login.go b/internal/ui/login/handler/login.go index 4b2d5fbf88..6463dd91c1 100644 --- a/internal/ui/login/handler/login.go +++ b/internal/ui/login/handler/login.go @@ -83,6 +83,7 @@ func csrfInterceptor(config CSRF, errorHandler http.Handler) (func(http.Handler) return csrf.Protect([]byte(csrfKey), csrf.Secure(!config.Development), csrf.CookieName(config.CookieName), + csrf.Path("/"), csrf.ErrorHandler(errorHandler), ), nil }