RhinoTrac
LassoSoft Ticket Tracking System
NOTE: If you are using Lasso Server 9.3 please Log your ticket directly via the LUX admin as this will give us more information about your issue.
Ticket #7935: Add a param httpOnly for setting cookie
- Reported by:
- Jolle
- Date:
- 12 Jan, 2015
- Priority:
- major
- Component:
- Lasso 9
- Version:
- 9.3
- Keywords:
- Platform:
Issue Report from Jolle (jolle@kulturfaktorn.se)
Company: Kulturfaktorn
Component: Lasso 9 Server
Version: 9.3
Source IP: 90.229.223.158
Detail
======
From a security point of view it should be possible to have a param httpOnly when creating a cookie.
Please log in to your LassoSoft account to comment
Comments
add -httponly option to setCookie, cookie_set, session_start, session_end - refs #7935
check for httponly when writing cookie (refs #7935)