I recently switched from J2EE Sessions to CF Sessions so I could use the 
MongoDB solution.
Now our security scan gives me a warning that the session cookies are not 
secure and when I compare the J2EE cookie to the CFID/CFTOKEN cookies in 
Chrome the J2EE cookie has a check in the "Secure" column and the CF* 
cookies don't.

Is there a way to fix this?

Thanks!
John Moss
 

-- 
-- 
online documentation: http://openbd.org/manual/
 http://groups.google.com/group/openbd?hl=en

--- 
You received this message because you are subscribed to the Google Groups "Open 
BlueDragon" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
For more options, visit https://groups.google.com/d/optout.

Reply via email to