From fa3f81e630270a3932394d470e68fb5705870247 Mon Sep 17 00:00:00 2001 From: kryswisnaskas Date: Wed, 10 Feb 2021 16:22:08 -0500 Subject: [PATCH 1/2] Add explicit cookie session options --- src/app.js | 2 ++ 1 file changed, 2 insertions(+) diff --git a/src/app.js b/src/app.js index acc92b0c87..2265c933de 100644 --- a/src/app.js +++ b/src/app.js @@ -29,6 +29,8 @@ app.use(cookieSession({ // Cookie Options. httpOnly is set by default to true for https sameSite: 'lax', + secure: true, + secureProxy: true, })); if (process.env.NODE_ENV === 'production') { From 4ba76a9bc6d58e25bd01c6524f5de4997eb995a4 Mon Sep 17 00:00:00 2001 From: kryswisnaskas Date: Fri, 12 Feb 2021 16:55:58 -0500 Subject: [PATCH 2/2] Remove one of secure cookie settings --- src/app.js | 1 - 1 file changed, 1 deletion(-) diff --git a/src/app.js b/src/app.js index 2265c933de..a962c8600c 100644 --- a/src/app.js +++ b/src/app.js @@ -29,7 +29,6 @@ app.use(cookieSession({ // Cookie Options. httpOnly is set by default to true for https sameSite: 'lax', - secure: true, secureProxy: true, }));