From 824f910bfe39b8d789ca3edcfca44b66f603a81c Mon Sep 17 00:00:00 2001 From: Erik Michelson Date: Thu, 27 Aug 2020 02:04:49 +0200 Subject: Add config option for cookie SameSite policy Signed-off-by: Erik Michelson --- lib/config/default.js | 1 + 1 file changed, 1 insertion(+) (limited to 'lib/config/default.js') diff --git a/lib/config/default.js b/lib/config/default.js index 9284882a..3d1a1367 100644 --- a/lib/config/default.js +++ b/lib/config/default.js @@ -27,6 +27,7 @@ module.exports = { upgradeInsecureRequests: 'auto', reportURI: undefined }, + cookiePolicy: 'strict', protocolUseSSL: false, useCDN: false, allowAnonymous: true, -- cgit v1.2.3 From 387e6682757d32b9d9e9b7e3d443143a39ce2184 Mon Sep 17 00:00:00 2001 From: Erik Michelson Date: Thu, 27 Aug 2020 09:05:17 +0200 Subject: Changed default policy from 'strict' to 'lax' due to the reasons mentioned in 3d1fab05 Signed-off-by: Erik Michelson --- lib/config/default.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'lib/config/default.js') diff --git a/lib/config/default.js b/lib/config/default.js index 3d1a1367..38bb164b 100644 --- a/lib/config/default.js +++ b/lib/config/default.js @@ -27,7 +27,7 @@ module.exports = { upgradeInsecureRequests: 'auto', reportURI: undefined }, - cookiePolicy: 'strict', + cookiePolicy: 'lax', protocolUseSSL: false, useCDN: false, allowAnonymous: true, -- cgit v1.2.3