Secure cookies and sessions for WSGI
Changes:
SessionMiddleware
sets secure_cookie.session
in the environ
instead of werkzeug.session
.FilesystemSessionStore
uses the filename template
secure_cookie_%s.session
instead of werkzeug_%s.sess
.SecureCookie.serialization_method
is json
instead of
pickle
. To upgrade existing tokens, override unquote
to try
pickle
if json
fails.