From 25b99764605cbfeabed9dd9ba8058b5f7d5ed53d Mon Sep 17 00:00:00 2001
From: Jennifer Richards <jennifer@staff.ietf.org>
Date: Thu, 18 May 2023 18:37:25 -0300
Subject: [PATCH] chore: Switch to JSONSerializer

PickleSerializer is deprecated
---
 ietf/settings.py | 6 +-----
 1 file changed, 1 insertion(+), 5 deletions(-)

diff --git a/ietf/settings.py b/ietf/settings.py
index 90d48d212..c8454d3cc 100644
--- a/ietf/settings.py
+++ b/ietf/settings.py
@@ -348,11 +348,7 @@ SESSION_COOKIE_SAMESITE = 'None'
 SESSION_COOKIE_SECURE = True
 
 SESSION_EXPIRE_AT_BROWSER_CLOSE = False
-# We want to use the JSON serialisation, as it's safer -- but there is /secr/
-# code which stashes objects in the session that can't be JSON serialized.
-# Switch when that code is rewritten.
-#SESSION_SERIALIZER = "django.contrib.sessions.serializers.JSONSerializer"
-SESSION_SERIALIZER = 'django.contrib.sessions.serializers.PickleSerializer'
+SESSION_SERIALIZER = "django.contrib.sessions.serializers.JSONSerializer"
 SESSION_ENGINE = "django.contrib.sessions.backends.cache"
 SESSION_SAVE_EVERY_REQUEST = True
 SESSION_CACHE_ALIAS = 'sessions'