Permalink
Browse files

ActionController::Base.request_forgery_protection_token should actual…

…ly be the name of the token and not true.
  • Loading branch information...
Carl Lerche
Carl Lerche committed Mar 11, 2010
1 parent 58796dc commit 8b4dca109a307e807a34a86e51f41b5d8a7d75b2
Showing with 1 addition and 1 deletion.
  1. +1 −1 actionpack/lib/action_controller/metal/request_forgery_protection.rb
@@ -12,7 +12,7 @@ module RequestForgeryProtection
included do
# Sets the token parameter name for RequestForgery. Calling +protect_from_forgery+
# sets it to <tt>:authenticity_token</tt> by default.
- config.request_forgery_protection_token ||= true
+ config.request_forgery_protection_token ||= :authenticity_token
# Controls whether request forgergy protection is turned on or not. Turned off by default only in test mode.
config.allow_forgery_protection ||= true

0 comments on commit 8b4dca1

Please sign in to comment.