Added some logging up front when the app is initialized to see if

DANGEROUS_SALT and SECRET_KEY are both available and have data in them.

Signed-off-by: Cliff Hill <clifford.hill@gsa.gov>
This commit is contained in:
Cliff Hill
2024-06-07 11:55:26 -04:00
parent 17bafd74e3
commit f539cad4b4

View File

@@ -233,6 +233,14 @@ def create_app(application):
)
logging.init_app(application)
import hashlib
for key in ("SECRET_KEY", "DANGEROUS_SALT"):
application.logger.info(
f"{key} Length: {len(application.config[key])}; "
f"SHA-1: {hashlib.sha1(application.config[key].encode('utf8'), usedforsecurity=False).hexdigest()}"
)
login_manager.login_view = "main.sign_in"
login_manager.login_message_category = "default"
login_manager.session_protection = None