Use SameSite=strict cookies consistently (#1450)

This commit is contained in:
Adam Williams
2017-10-20 15:31:46 +01:00
committed by Alexey Sokolov
parent 42d30901d4
commit dca012f0b7

View File

@@ -743,7 +743,7 @@ bool CHTTPSock::PrintHeader(off_t uContentLength, const CString& sContentType,
for (const auto& it : m_msResponseCookies) {
Write("Set-Cookie: " + it.first.Escape_n(CString::EURL) + "=" +
it.second.Escape_n(CString::EURL) + "; HttpOnly; path=/;" +
(GetSSL() ? "Secure;" : "") + "\r\n");
(GetSSL() ? "Secure;" : "") + " SameSite=Strict;\r\n");
}
for (const auto& it : m_msHeaders) {