Update: Add sameSite Cookie

This commit is contained in:
Yûki VACHOT 2021-12-29 18:39:15 +01:00
parent aca78238fe
commit 96481369da

View file

@ -42,7 +42,7 @@ function createSessionCookie(req, res, payload) {
else { else {
jwtToken = createSessionJWT(payload.id, payload.email, payload.profileImageUrl, payload.role); jwtToken = createSessionJWT(payload.id, payload.email, payload.profileImageUrl, payload.role);
} }
res.cookie('SESSIONID', jwtToken, {httpOnly: true, secure: process.env.NODE_ENV === "production"}); res.cookie('SESSIONID', jwtToken, {httpOnly: true, sameSite: 'strict', secure: process.env.NODE_ENV === 'production'});
} }
function decodeSessionCookie(sessionid) { function decodeSessionCookie(sessionid) {