Skip to content

Commit c73952a

Browse files
authored
Actually, the session ID stuff wasn't quite accurate
The reason for `none` and `duplicate` is so you can find the differences. Setting it to lax would break 3rd party interactions.
1 parent 0169dd8 commit c73952a

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

docs/cookies.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -57,9 +57,9 @@ config.cookies = {
5757
```ruby
5858
config.cookies = {
5959
samesite: {
60-
strict: { only: ['_rails_session_duplicate'] },
60+
strict: { only: ['session_id_duplicate'] },
6161
lax: { only: ['_guest', '_rails_session', 'device_id'] },
62-
none: { only: ['_tracking', 'saml_cookie'] },
62+
none: { only: ['_tracking', 'saml_cookie', 'session_id'] },
6363
}
6464
}
6565
```

0 commit comments

Comments
 (0)