Lasso Soft Inc. > Home

RhinoTrac

LassoSoft Ticket Tracking System

NOTE: If you are using Lasso Server 9.3 please Log your ticket directly via the LUX admin as this will give us more information about your issue.

Lasso 9 Issues



Ticket #7935: Add a param httpOnly for setting cookie

Reported by:
Jolle
Date:
12 Jan, 2015
Priority:
major
Component:
Lasso 9
Version:
9.3
Keywords:
Platform:
Issue Report from Jolle (jolle@kulturfaktorn.se)
Company: Kulturfaktorn

Component: Lasso 9 Server
Version: 9.3
Source IP: 90.229.223.158

Detail
======
From a security point of view it should be possible to have a param httpOnly when creating a cookie.

Comments

13 Jan, 2015 by Eric Knibbe
I added this already for 8.6; shouldn't be hard.
13 Jan, 2015 by Eric Knibbe
In [changeset:"5185"]:
#!CommitTicketReference repository="" revision="5185"
add -httponly option to setCookie, cookie_set, session_start, session_end - refs #7935
31 Mar, 2015 by Rachel Guthrie
in next minor 9.3
23 Sep, 2015 by Eric Knibbe
In [changeset:"5514"]:
#!CommitTicketReference repository="" revision="5514"
check for httponly when writing cookie (refs #7935)
Please log in to your LassoSoft account to comment

LassoSoft Inc. > Home

 

 

©LassoSoft Inc 2015 | Web Development by Treefrog Inc | PrivacyLegal terms and Shipping | Contact LassoSoft