Please note that I have not tried to set something like this up, but I
think I might prefer a proper SSO solution to reduce the fragility, but
this is just my 2 cents.
First, in order to use the same cookie for both sling instances, the cookie
domain and path must be sent by the server from both
I'm going to start talking and saying things, and if I come across like I'm
being pedantic I apologize in advance :)
First, when we talk about logging in, we're talking about cookies. A cookie is
used to identify a Session or store user credentials. You can't have a server
side session or