>
>
>
> But since you're asking so critically I have to admit I'm not entirely sure
> if the session check is entirely required. However, it did seem to be the
> thing that caused all the tests to fail? Maybe Marius has better memory than
> me here?
>
> The only case we could think of that uses the session without the user
being logged in is in the case of flash messages. However, flash messages
are only used in actions that are POST-ed to, in which case the user should
be on https already. So I think we can remove that part.

I will fix this method on master.

Christian

-- 
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to
[email protected]

Reply via email to