Skip to content

set secure flag for cookies served via https #2543

Description

@anonymous-matomo-user

Hi

Looking at ticket:409#comment:50

For compability with https pages, the cookie secure flag should be set automatically based on the current URL protocol (in setCookie())

And the follow up, ticket:409#comment:53 I would expect a Piwik install that is only available via https to set the secure cookie flag.

However this doesn't seem to be the case, see for example the cookies that get set on this site: http://www.transitionnetwork.org/

The Piwik server is running 1.5.

Keywords: https secure cookie

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    BugFor errors / faults / flaws / inconsistencies etc.worksformeThe issue cannot be reproduced and things work as intended.

    Type

    No type

    Projects

    No projects

      Milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions