diff --git a/docs/ref/csrf.txt b/docs/ref/csrf.txt index 6072dcd732..e963c1e627 100644 --- a/docs/ref/csrf.txt +++ b/docs/ref/csrf.txt @@ -152,7 +152,8 @@ class-based views`. .. function:: csrf_protect(view) - Decorator that provides the protection of ``CsrfViewMiddleware`` to a view. + Decorator that provides the protection of + :class:`~django.middleware.csrf.CsrfViewMiddleware` to a view. Usage:: diff --git a/docs/ref/middleware.txt b/docs/ref/middleware.txt index ba9bef7e6f..d899922dc1 100644 --- a/docs/ref/middleware.txt +++ b/docs/ref/middleware.txt @@ -569,6 +569,9 @@ Adds protection against Cross Site Request Forgeries by adding hidden form fields to POST forms and checking requests for the correct value. See the :doc:`Cross Site Request Forgery protection documentation `. +You can add Cross Site Request Forgery protection to individual views using the +:func:`~django.views.decorators.csrf.csrf_protect()` decorator. + ``X-Frame-Options`` middleware ------------------------------