summaryrefslogtreecommitdiff
path: root/lib/config
diff options
context:
space:
mode:
authorErik Michelson2020-08-27 09:05:17 +0200
committerErik Michelson2020-08-27 09:05:17 +0200
commit387e6682757d32b9d9e9b7e3d443143a39ce2184 (patch)
tree8ab13c26bf1ac03ea4e35d04a18b9c864bf4daca /lib/config
parent824f910bfe39b8d789ca3edcfca44b66f603a81c (diff)
Changed default policy from 'strict' to 'lax' due to the reasons mentioned in 3d1fab05
Signed-off-by: Erik Michelson <github@erik.michelson.eu>
Diffstat (limited to 'lib/config')
-rw-r--r--lib/config/default.js2
-rw-r--r--lib/config/index.js2
2 files changed, 2 insertions, 2 deletions
diff --git a/lib/config/default.js b/lib/config/default.js
index 3d1a1367..38bb164b 100644
--- a/lib/config/default.js
+++ b/lib/config/default.js
@@ -27,7 +27,7 @@ module.exports = {
upgradeInsecureRequests: 'auto',
reportURI: undefined
},
- cookiePolicy: 'strict',
+ cookiePolicy: 'lax',
protocolUseSSL: false,
useCDN: false,
allowAnonymous: true,
diff --git a/lib/config/index.js b/lib/config/index.js
index 020dee13..203b9ef9 100644
--- a/lib/config/index.js
+++ b/lib/config/index.js
@@ -53,7 +53,7 @@ if (['debug', 'verbose', 'info', 'warn', 'error'].includes(config.loglevel)) {
if (!['strict', 'lax', 'none'].includes(config.cookiePolicy)) {
logger.error('Cookie SameSite policy %s does not exist. Falling back to strict. Available values are: strict, lax, none.', config.cookiePolicy)
- config.cookiePolicy = 'strict'
+ config.cookiePolicy = 'lax'
}
// load LDAP CA