fix: sameSite=none for cross-origin cookie (pingql.com → api.pingql.com)
This commit is contained in:
parent
5a0cf5033b
commit
1a7bc4dfa5
|
|
@ -78,7 +78,7 @@ export function requireAuth(app: Elysia) {
|
||||||
const COOKIE_OPTS = {
|
const COOKIE_OPTS = {
|
||||||
httpOnly: true,
|
httpOnly: true,
|
||||||
secure: process.env.COOKIE_SECURE !== "false",
|
secure: process.env.COOKIE_SECURE !== "false",
|
||||||
sameSite: "lax" as const,
|
sameSite: "none" as const,
|
||||||
path: "/",
|
path: "/",
|
||||||
domain: process.env.COOKIE_DOMAIN ?? ".pingql.com",
|
domain: process.env.COOKIE_DOMAIN ?? ".pingql.com",
|
||||||
maxAge: 60 * 60 * 24 * 30, // 30 days
|
maxAge: 60 * 60 * 24 * 30, // 30 days
|
||||||
|
|
|
||||||
|
|
@ -78,7 +78,7 @@ export function requireAuth(app: Elysia) {
|
||||||
const COOKIE_OPTS = {
|
const COOKIE_OPTS = {
|
||||||
httpOnly: true,
|
httpOnly: true,
|
||||||
secure: process.env.COOKIE_SECURE !== "false",
|
secure: process.env.COOKIE_SECURE !== "false",
|
||||||
sameSite: "lax" as const,
|
sameSite: "none" as const,
|
||||||
path: "/",
|
path: "/",
|
||||||
domain: process.env.COOKIE_DOMAIN ?? ".pingql.com",
|
domain: process.env.COOKIE_DOMAIN ?? ".pingql.com",
|
||||||
maxAge: 60 * 60 * 24 * 30, // 30 days
|
maxAge: 60 * 60 * 24 * 30, // 30 days
|
||||||
|
|
|
||||||
Loading…
Reference in New Issue