Skip to content

[Security] Remember me: allow to set the samesite cookie flag #27976

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 1 commit into from
Jul 18, 2018

Conversation

dunglas
Copy link
Member

@dunglas dunglas commented Jul 17, 2018

Q A
Branch? master
Bug fix? no
New feature? yes
BC breaks? no
Deprecations? no
Tests pass? no
Fixed tickets no
License MIT
Doc PR symfony/symfony-docs#10077

This PR allows to set the samesite cookie flag for remember me token cookies.

@chalasr chalasr added this to the next milestone Jul 17, 2018
@fabpot
Copy link
Member

fabpot commented Jul 18, 2018

Thank you @dunglas.

@fabpot fabpot merged commit 337e8ef into symfony:master Jul 18, 2018
fabpot added a commit that referenced this pull request Jul 18, 2018
…ie flag (dunglas)

This PR was merged into the 4.2-dev branch.

Discussion
----------

[Security] Remember me: allow to set the samesite cookie flag

| Q             | A
| ------------- | ---
| Branch?       | master
| Bug fix?      | no
| New feature?  | yes <!-- don't forget to update src/**/CHANGELOG.md files -->
| BC breaks?    | no     <!-- see https://symfony.com/bc -->
| Deprecations? |no <!-- don't forget to update UPGRADE-*.md and src/**/CHANGELOG.md files -->
| Tests pass?   | no
| Fixed tickets | no
| License       | MIT
| Doc PR        | symfony/symfony-docs#10077

This PR allows to set the [`samesite`](https://www.owasp.org/index.php/SameSite) cookie flag for remember me token cookies.

Commits
-------

337e8ef [Security] Remember me: allow to set the samesite cookie flag
javiereguiluz added a commit to symfony/symfony-docs that referenced this pull request Jul 18, 2018
This PR was merged into the master branch.

Discussion
----------

[Security] Remember me: samesite cookie

symfony/symfony#27976

Commits
-------

eefa182 [Security] Remember me: samesite cookie
@nicolas-grekas nicolas-grekas modified the milestones: next, 4.2 Nov 1, 2018
This was referenced Nov 3, 2018
nicolas-grekas added a commit that referenced this pull request Mar 23, 2020
…kie flag (dunglas)

This PR was merged into the 3.4 branch.

Discussion
----------

[Security/Http] Remember me: allow to set the samesite cookie flag

| Q             | A
| ------------- | ---
| Branch?       | 3.4
| Bug fix?      | yes
| New feature?  | no
| Deprecations? | no
| Tickets       | -
| License       | MIT
| Doc PR        | -

Similar to #35605, since Chrome 80 is going to require the `samesite` attribute.

This is a cherry-pick of #27976

Commits
-------

f0ceb73 [Security] Remember me: allow to set the samesite cookie flag
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants