diff options
author | Paul Duncan <pabs@pablotron.org> | 2016-05-21 14:03:26 -0400 |
---|---|---|
committer | Paul Duncan <pabs@pablotron.org> | 2016-05-21 14:03:26 -0400 |
commit | cfbf618af7b19189f38fce2573d22e946735f0dd (patch) | |
tree | ea4438bd15dacfbefa41424c808b17f9f6afeacc /src/guff.cr | |
parent | 000a5915a143f52aa46f8838947e08b6b96e6bff (diff) | |
download | guff-cfbf618af7b19189f38fce2573d22e946735f0dd.tar.bz2 guff-cfbf618af7b19189f38fce2573d22e946735f0dd.zip |
remove unused session header check
Diffstat (limited to 'src/guff.cr')
-rw-r--r-- | src/guff.cr | 12 |
1 files changed, 0 insertions, 12 deletions
diff --git a/src/guff.cr b/src/guff.cr index 2702d7e..7e826e8 100644 --- a/src/guff.cr +++ b/src/guff.cr @@ -480,9 +480,6 @@ module Guff class SessionHandler < Guff::Handlers::Handler def call(context : HTTP::Server::Context) - # check for forged headers - check_headers(context.request.headers) - # clear session @context.session.clear @@ -493,15 +490,6 @@ module Guff call_next(context) end - - private def check_headers(headers : HTTP::Headers) - # FIXME: this isn't needed any more - %w{x-guff-user-id x-guff-role}.each do |key| - if headers.has_key?(key) - raise "forged header: #{key}" - end - end - end end # TODO: check referrer, add x-frame-options |