Skip to content

Conversation

@jarosenb
Copy link
Collaborator

Overview

Implement httponly auth by proxying Tup-Services

Related

Changes

  • Proxy tup-services via nginx instead of making direct API calls
  • Perform auth within a Django view and set the cookie on the backend
  • Obtain user information via API request/SSR rather than the x-tup-token cookie
  • Allow impersonation sessions to be ended by users without logging out

UI

Notes

@wesleyboar wesleyboar mentioned this pull request May 28, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants