Tamás Marcinkovics created KNOX-3233:
----------------------------------------

             Summary: Modify KnoxSessionStore to use pac4j Cookie
                 Key: KNOX-3233
                 URL: https://issues.apache.org/jira/browse/KNOX-3233
             Project: Apache Knox
          Issue Type: Task
          Components: KnoxSSO
    Affects Versions: 3.0.0
            Reporter: Tamás Marcinkovics
            Assignee: Tamás Marcinkovics


As discussed, the org.pac4j.core.context.Cookie class contains the 
SameSitePolicy attribute since pac4j-5.0.0, we can modify KnoxSessionStore to 
use the pac4j Cookie class, reverting the changes introduced by 
https://issues.apache.org/jira/browse/KNOX-3148.

As pac4jCsrfToken secure and httpOnly attributes are set correctly since pac4j 
v5.1.5, the changes by https://issues.apache.org/jira/browse/KNOX-3134 can also 
be reverted.

 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to