Merged in fix/webview-auth-fix-3 (pull request #2848)
Fix/webview auth fix 3 * feat(webview auth): set maxAge on cookie * Changed samesite to lax Approved-by: Anton Gunnarsson
This commit is contained in:
@@ -156,8 +156,9 @@ async function handleWebviewRewrite({
|
|||||||
res.cookies.set("webviewToken", decryptedData, {
|
res.cookies.set("webviewToken", decryptedData, {
|
||||||
httpOnly: true,
|
httpOnly: true,
|
||||||
secure: true,
|
secure: true,
|
||||||
sameSite: "strict",
|
sameSite: "lax",
|
||||||
path: "/",
|
path: "/",
|
||||||
|
maxAge: 60 * 30, // 30 minutes
|
||||||
})
|
})
|
||||||
}
|
}
|
||||||
return res
|
return res
|
||||||
@@ -185,8 +186,9 @@ async function handleWebviewRewrite({
|
|||||||
res.cookies.set("webviewToken", decryptedData, {
|
res.cookies.set("webviewToken", decryptedData, {
|
||||||
httpOnly: true,
|
httpOnly: true,
|
||||||
secure: true,
|
secure: true,
|
||||||
sameSite: "strict",
|
sameSite: "lax",
|
||||||
path: "/",
|
path: "/",
|
||||||
|
maxAge: 60 * 30, // 30 minutes
|
||||||
})
|
})
|
||||||
}
|
}
|
||||||
return res
|
return res
|
||||||
@@ -203,8 +205,9 @@ async function handleWebviewRewrite({
|
|||||||
res.cookies.set("webviewToken", decryptedData, {
|
res.cookies.set("webviewToken", decryptedData, {
|
||||||
httpOnly: true,
|
httpOnly: true,
|
||||||
secure: true,
|
secure: true,
|
||||||
sameSite: "strict",
|
sameSite: "lax",
|
||||||
path: "/",
|
path: "/",
|
||||||
|
maxAge: 60 * 30, // 30 minutes
|
||||||
})
|
})
|
||||||
}
|
}
|
||||||
return res
|
return res
|
||||||
|
|||||||
Reference in New Issue
Block a user