https://redmine.lighttpd.net/https://redmine.lighttpd.net/favicon.ico?13667327412017-02-27T17:19:06Zlighty labsLighttpd - Feature #2795: mod_usertrack should have an option to set the 'Secure' and 'HttpOnly' flags on the cookiehttps://redmine.lighttpd.net/issues/2795?journal_id=109092017-02-27T17:19:06Zgstrauss
<ul><li><strong>Category</strong> set to <i>mod_usertrack</i></li><li><strong>Status</strong> changed from <i>New</i> to <i>Patch Pending</i></li><li><strong>Target version</strong> changed from <i>1.4.x</i> to <i>1.4.46</i></li></ul><p>untested patch forthcoming, so feedback appreciated</p> Lighttpd - Feature #2795: mod_usertrack should have an option to set the 'Secure' and 'HttpOnly' flags on the cookiehttps://redmine.lighttpd.net/issues/2795?journal_id=109102017-02-27T17:20:04Zgstrauss
<ul><li><strong>Status</strong> changed from <i>Patch Pending</i> to <i>Fixed</i></li><li><strong>% Done</strong> changed from <i>0</i> to <i>100</i></li></ul><p>Applied in changeset <a class="changeset" title="[mod_usertrack] usertrack.cookie-attrs config opt (fixes #2795) usertrack.cookie-attrs allows us..." href="https://redmine.lighttpd.net/projects/lighttpd/repository/14/revisions/8ddb727d5c505ec206446879897f9646e97ff1b3">8ddb727d5c505ec206446879897f9646e97ff1b3</a>.</p> Lighttpd - Feature #2795: mod_usertrack should have an option to set the 'Secure' and 'HttpOnly' flags on the cookiehttps://redmine.lighttpd.net/issues/2795?journal_id=109112017-02-27T20:37:05Zerrietta
<ul></ul><p>gstrauss wrote:</p>
<blockquote>
<p>Applied in changeset <a class="changeset" title="[mod_usertrack] usertrack.cookie-attrs config opt (fixes #2795) usertrack.cookie-attrs allows us..." href="https://redmine.lighttpd.net/projects/lighttpd/repository/14/revisions/8ddb727d5c505ec206446879897f9646e97ff1b3">8ddb727d5c505ec206446879897f9646e97ff1b3</a>.</p>
</blockquote>
<p>Works fine thanks!<br /><pre>
errietta@Moltres [2] ~/lighty % curl -k --head https://localhost:8081/ 8 2254 20:34:56 Mon 27.02.2017
HTTP/1.1 200 OK
Set-Cookie: TRACKID=85532de0e816b830e1eff4f23fd828c4; Path=/; Version=1; Max-Age=86400; Secure; HttpOnly
</pre></p>