Besides applying these settings to both applications, the only thing missing in your approach is SESSION_COOKIE_DOMAIN.
You install it on ".abc.com", which means that it will work if your application has a domain name: www.abc.comand somesubdomain.abc.com.
www.abc.com:9002, , TLD www.abc.com. , django , www.abc.com:9002 www.abc.com - , .abc.com.
, :
django. Django , ROOT_URL_CONF DJANGO_SETTINGS_MODULE , . , .
-, nginx haproxy, , . , , django, first.abc.com second.abc.com ( 80 second.abc.com ), . , , .
. ALLOWED_HOSTS .abc.com .