view gpp/templates/comments/comment_form.html @ 507:8631d32e6b16

Some users are still having problems with the pop-up login. I think they are actually getting 403s because of the CSRF protection. So I have modified the base template to always have a javascript variable called csrf_token available when they aren't logged in. The ajax_login.js script was then modified to send this value with the ajax post. Fingers crossed.
author Brian Neal <bgneal@gmail.com>
date Sun, 04 Dec 2011 03:05:21 +0000
parents daa2916f5b34
children
line wrap: on
line source
{% load url from future %}
{% load core_tags %}
{% if user.is_authenticated %}
<form action="{% url 'comments-post' %}" method="post" id="comment-form">{% csrf_token %}
{{ form.as_p }}
{% comment_dialogs %}
<input type="submit" name="post" value="Post Comment" id="comment-form-post"/>
</form>
{% else %}
<p>
Please <a href="{% url 'accounts-login' %}">login</a> or
<a href="{% url 'accounts-register' %}">register</a> to leave a comment.
</p>
{% endif %}