Hi Team

We upgraded our Jetty version to 9.4.38.v20210224 and we want to Set 'SameSite' 
attribute to 'Strict'  in JSESSIONID for our portal security .

We made the code changes as per below in our web.xml and still not seeing any 
difference.

  <session-config>
    <cookie-config>
     <http-only>false</http-only>
     <secure>false</secure>
     <comment>__SAME_SITE_STRICT__</comment>
    </cookie-config>
  </session-config>

Browser Cookie

[cid:image001.png@01D778F8.67782AB0]

Can you please through some idea to get this done .

Thanks
Sai


_______________________________________________
jetty-users mailing list
jetty-users@eclipse.org
To unsubscribe from this list, visit 
https://www.eclipse.org/mailman/listinfo/jetty-users

Reply via email to