mirror of
https://github.com/gitbucket/gitbucket.git
synced 2025-11-14 01:15:50 +01:00
(refs #1291)Add http-only attribute to JSESSIONID cookie
This commit is contained in:
@@ -88,6 +88,9 @@
|
|||||||
<!-- ===================================================================== -->
|
<!-- ===================================================================== -->
|
||||||
<session-config>
|
<session-config>
|
||||||
<session-timeout>1440</session-timeout>
|
<session-timeout>1440</session-timeout>
|
||||||
|
<cookie-config>
|
||||||
|
<http-only>true</http-only>
|
||||||
|
</cookie-config>
|
||||||
</session-config>
|
</session-config>
|
||||||
|
|
||||||
<!-- ===================================================================== -->
|
<!-- ===================================================================== -->
|
||||||
|
|||||||
Reference in New Issue
Block a user