Welcome! Log In Create A New Profile

Advanced

RE: secure and httponly cookies

March 07, 2016 04:52PM
I have tried exactly the same as in this page:-

proxy_cookie_path / "/; secure; HttpOnly";

it sets the flags on the cookie in the response header, but when I refresh the page, it is sending the cookies in the requests header without these flags, it just resets it.

Thanks,
Krishna

-----Original Message-----
From: nginx [mailto:nginx-bounces@nginx.org] On Behalf Of Aleksandar Lazic
Sent: Monday, March 07, 2016 1:16 PM
To: nginx@nginx.org
Subject: Re: secure and httponly cookies

Hi.

Am 07-03-2016 21:15, schrieb krishna@brocade.com:
> Here, nginx is proxy passing the requests to webseal and webseal sends
> the response with cookies.
> We are trying to rewrite this cookie headers.

Please can you show us how you have tried to do this.

As you can see on this pages there should be a option with 'plain' nginx
;-)

https://urldefense.proofpoint.com/v2/url?u=http-3A__serverfault.com_questions_268633_controlling-2Dnginx-2Dproxy-2Dtarget-2Dusing-2Da-2Dcookie&d=CwICAg&c=IL_XqQWOjubgfqINi2jTzg&r=PZ7-DbptEeW_9SeYl3U87b-UoRqXIcJD3kzHs3AtV7E&m=6gm5ZW2zS0OsqHDgC0ZQdRy2r648aRPQq1pCVy1H4sA&s=RUz0YUGoSUkE6lu5tJ39Q6wGT4OOTv5_pHDdBeUYXs8&e=
https://urldefense.proofpoint.com/v2/url?u=https-3A__maximilian-2Dboehm.com_hp2134_NGINX-2Das-2DProxy-2DRewrite-2DSet-2DCookie-2Dto-2DSecure-2Dand-2DHttpOnly.htm&d=CwICAg&c=IL_XqQWOjubgfqINi2jTzg&r=PZ7-DbptEeW_9SeYl3U87b-UoRqXIcJD3kzHs3AtV7E&m=6gm5ZW2zS0OsqHDgC0ZQdRy2r648aRPQq1pCVy1H4sA&s=yaYJMYFzaQG_Jx8xt2eDryBca7PrrSJCMoxoMwcR5xQ&e=

Please can you also post the output of nginx -V and the config.

Cheers Aleks

> Could you tell me more about LUA or some links where i can read about
> it?
>
> Posted at Nginx Forum:
> https://urldefense.proofpoint.com/v2/url?u=https-3A__forum.nginx.org_r
> ead.php-3F2-2C265137-2C265142-23msg-2D265142&d=CwICAg&c=IL_XqQWOjubgfq
> INi2jTzg&r=PZ7-DbptEeW_9SeYl3U87b-UoRqXIcJD3kzHs3AtV7E&m=6gm5ZW2zS0Osq
> HDgC0ZQdRy2r648aRPQq1pCVy1H4sA&s=Mv5hguz8jSa78zlUxgzcU4OCcKCRtqjhKZ_xl
> wesMOA&e=
>
> _______________________________________________
> nginx mailing list
> nginx@nginx.org
> https://urldefense.proofpoint.com/v2/url?u=http-3A__mailman.nginx.org_
> mailman_listinfo_nginx&d=CwICAg&c=IL_XqQWOjubgfqINi2jTzg&r=PZ7-DbptEeW
> _9SeYl3U87b-UoRqXIcJD3kzHs3AtV7E&m=6gm5ZW2zS0OsqHDgC0ZQdRy2r648aRPQq1p
> CVy1H4sA&s=AFoUlENMfmYahoSjjMns5RW3FemZeDlb6xodRGyXtmA&e=

_______________________________________________
nginx mailing list
nginx@nginx.org
https://urldefense.proofpoint.com/v2/url?u=http-3A__mailman.nginx.org_mailman_listinfo_nginx&d=CwICAg&c=IL_XqQWOjubgfqINi2jTzg&r=PZ7-DbptEeW_9SeYl3U87b-UoRqXIcJD3kzHs3AtV7E&m=6gm5ZW2zS0OsqHDgC0ZQdRy2r648aRPQq1pCVy1H4sA&s=AFoUlENMfmYahoSjjMns5RW3FemZeDlb6xodRGyXtmA&e=

_______________________________________________
nginx mailing list
nginx@nginx.org
http://mailman.nginx.org/mailman/listinfo/nginx
Subject Author Posted

secure and httponly cookies

krishna@brocade.com March 07, 2016 02:38PM

Re: secure and httponly cookies

Lucas Rolff March 07, 2016 02:48PM

Re: secure and httponly cookies

krishna@brocade.com March 07, 2016 02:54PM

Re: secure and httponly cookies

Lucas Rolff March 07, 2016 03:02PM

Re: secure and httponly cookies

krishna@brocade.com March 07, 2016 03:15PM

Re: secure and httponly cookies

Aapo Talvensaari March 07, 2016 03:32PM

Re: secure and httponly cookies

Robert Paprocki March 07, 2016 03:38PM

Re: secure and httponly cookies

Aleksandar Lazic March 07, 2016 04:26PM

RE: secure and httponly cookies

krishna@brocade.com March 07, 2016 04:52PM

Re: secure and httponly cookies

Francis Daly March 07, 2016 05:58PM

RE: secure and httponly cookies

krishna@brocade.com March 07, 2016 07:40PM

Re: secure and httponly cookies

Aapo Talvensaari March 08, 2016 02:36AM

RE: secure and httponly cookies

krishna@brocade.com March 08, 2016 02:46AM

RE: secure and httponly cookies

Aleksandar Lazic March 08, 2016 03:00AM

RE: secure and httponly cookies

krishna@brocade.com March 07, 2016 04:54PM



Sorry, only registered users may post in this forum.

Click here to login

Online Users

Guests: 306
Record Number of Users: 8 on April 13, 2023
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready