diff --git a/config/application.rb b/config/application.rb index 4792f6670a817636c44692f78633ed3d2bea39bd..4f04687a5e459fae61c961fb9d1363f13dfae534 100644 --- a/config/application.rb +++ b/config/application.rb @@ -99,10 +99,10 @@ module Gitlab config.action_view.sanitized_allowed_protocols = %w(smb) - config.middleware.use Rack::Attack + config.middleware.insert_before Warden::Manager, Rack::Attack # Allow access to GitLab API from other domains - config.middleware.use Rack::Cors do + config.middleware.insert_before Warden::Manager, Rack::Cors do allow do origins '*' resource '/api/*',