Comment 11 for bug 1394370

Revision history for this message
David Lyle (david-lyle) wrote : Re: horizon login page is vulnerable to DOS attack

There is no need to create the session for unauthenticated requests.

The patch looks good to me. I think there is a potential need for a health check URL, but that seems to be a greater OpenStack need to arrive at a consistent mechanism for doing health checks.