]> source.dussan.org Git - nextcloud-server.git/commit
Only send samesite cookies 17075/head
authorRoeland Jago Douma <roeland@famdouma.nl>
Mon, 9 Sep 2019 19:29:58 +0000 (21:29 +0200)
committerRoeland Jago Douma <roeland@famdouma.nl>
Thu, 6 Feb 2020 14:24:35 +0000 (15:24 +0100)
commit2016e57eab1d970e6edd63370e956f462e56c86c
treeece03de343ce9af606967d73cad1d68ea5deea6a
parentdaf6887c09b3b706728c5fdef6cb6df0640f1e21
Only send samesite cookies

This makes the last remaining two cookies lax. The session cookie
itself. And the session password as well (on php 7.3 that is). Samesite
cookies are the best cookies!

Signed-off-by: Roeland Jago Douma <roeland@famdouma.nl>
lib/private/Session/CryptoWrapper.php
lib/private/Session/Internal.php