Re: [users@httpd] Source of JSESSIONID Cookie

2022-01-18 Thread Jim Albert
On 1/18/2022 3:36 PM, John wrote: These are default cookies from somewhere; my code doesn't set or manage them. Focusing on this portion of your response: "These are default cookies from somewhere; my code doesn't set or manage them." ... using your browser's Developer Tools (F12), look at

[users@httpd] RE: [EXTERNAL] [users@httpd] Source of JSESSIONID Cookie

2022-01-18 Thread Orendt, John
Hi My general recollection is cross site scripting must include the specific allowable domains in the configuration for this to work. Allowing cross site scripting from all domains is very bad. John Orendt john.p.ore...@medtronic.com -Original Message- From: John Sent: Tuesday, Januar

[users@httpd] Source of JSESSIONID Cookie

2022-01-18 Thread John
I am developing a payment function that requires data to be loaded from a third-party URL. Firefox is throwing errors such as: 1. Some cookies are misusing the “SameSite“ attribute, so it won’t work as expected 2 2 Cookie “JSESSIONID” has “SameSite” policy set to “Lax” because it is missing a