Skip to content

OS-220 adding HttpOnly+Secure options#7

Merged
stankut merged 2 commits intomasterfrom
f/OS-220-security
Jan 13, 2026
Merged

OS-220 adding HttpOnly+Secure options#7
stankut merged 2 commits intomasterfrom
f/OS-220-security

Conversation

@stankut
Copy link
Contributor

@stankut stankut commented Nov 7, 2025

The OS2Web SimpleSAML Authentication module needs to be extended so that the cookie has HttpOnly set

HttpOnly is missing
is/are missing the "Secure" cookie attribute.

@stankut stankut merged commit 451ac82 into master Jan 13, 2026
@stankut stankut deleted the f/OS-220-security branch January 13, 2026 12:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Sikkerhedsopdatering til "OS2Web SimpleSAML Authentication"

2 participants