From: Jason A. Donenfeld Date: Thu, 16 Jan 2014 10:39:17 +0000 (+0100) Subject: authentication: use hidden form instead of referer X-Git-Url: https://gitweb.ps.run/ps-cgit/commitdiff_plain/b826537cb4aa2358027ffcb1dd6a87274734e962?hp=b826537cb4aa2358027ffcb1dd6a87274734e962 authentication: use hidden form instead of referer This also gives us some CSRF protection. Note that we make use of the hmac to protect the redirect value. Signed-off-by: Jason A. Donenfeld ---