Skip to content

Commit 36cdb85

Browse files
author
Marius Burkard
committed
Merge branch '6179-improve-session-security' into 'develop'
Resolve "Improve session security" Closes #6179 See merge request ispconfig/ispconfig3!1488
2 parents 3ecd395 + cabf603 commit 36cdb85

File tree

1 file changed

+3
-0
lines changed

1 file changed

+3
-0
lines changed

interface/lib/app.inc.php

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -126,6 +126,9 @@ public function initialize_session() {
126126
array($this->session, 'destroy'),
127127
array($this->session, 'gc'));
128128

129+
ini_set('session.cookie_httponly', true);
130+
@ini_set('session.cookie_samesite', 'Lax');
131+
129132
session_start();
130133

131134
//* Initialize session variables

0 commit comments

Comments
 (0)