Make session cookie "permanent" (31 days)
This is to avoid being logged out unpredictably.
This commit is contained in:
2
main.py
2
main.py
@@ -110,6 +110,7 @@ def login():
|
|||||||
if password.verify(request.form['password'], hash):
|
if password.verify(request.form['password'], hash):
|
||||||
flash('Logged in', 'success')
|
flash('Logged in', 'success')
|
||||||
session['user_id'] = id
|
session['user_id'] = id
|
||||||
|
session.permanent = True
|
||||||
return redirect(url_for('index'))
|
return redirect(url_for('index'))
|
||||||
else:
|
else:
|
||||||
# Sleep to reduce effectiveness of bruteforce
|
# Sleep to reduce effectiveness of bruteforce
|
||||||
@@ -730,6 +731,7 @@ def register_user(show_password):
|
|||||||
flash(s, 'success')
|
flash(s, 'success')
|
||||||
uid, = uid
|
uid, = uid
|
||||||
session['user_id'] = uid
|
session['user_id'] = uid
|
||||||
|
session.permanent = True
|
||||||
return True
|
return True
|
||||||
return False
|
return False
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user