Skip to content

Commit 4a5c7ee

Browse files
committed
Only force ssl in redirect uri for production
Update doorkeeper initializer to only enforce SSL redirect URIs in production environments. - Development/test: allows http:// redirect URIs for easier local OAuth testing - Production: enforces https:// redirect URIs for security
1 parent 6ee25e2 commit 4a5c7ee

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

config/initializers/doorkeeper.rb

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -56,5 +56,5 @@
5656
use_refresh_token expiry: 90.days
5757

5858
# enable ssl requirement for redirect url
59-
force_ssl_in_redirect_uri true
59+
force_ssl_in_redirect_uri Rails.env.production?
6060
end

0 commit comments

Comments
 (0)