diff --git a/docs/topics/api-clients.md b/docs/topics/api-clients.md index ec0b4272c..23e63a267 100644 --- a/docs/topics/api-clients.md +++ b/docs/topics/api-clients.md @@ -428,6 +428,9 @@ the user to login, and then instantiate a client using session authentication: The authentication scheme will handle including a CSRF header in any outgoing requests for unsafe HTTP methods. +** Note: ** This mechanism does not work when used in conjunction with +`CSRF_USE_SESSIONS = True` in your Django settings. + #### Token authentication The `TokenAuthentication` class can be used to support REST framework's built-in