Skip to content

Commit d9405cc

Browse files
committed
HttpExtension: option 'sameSiteProtection' does not change session cookie flag 'samesite'
1 parent f1f8dad commit d9405cc

File tree

2 files changed

+1
-6
lines changed

2 files changed

+1
-6
lines changed

src/Bridges/HttpDI/HttpExtension.php

Lines changed: 0 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -82,11 +82,6 @@ public function beforeCompile()
8282
$builder->getDefinitionByType(Nette\Http\Session::class)
8383
->addSetup('setOptions', [['cookie_secure' => $value]]);
8484
}
85-
86-
if (!empty($this->config['sameSiteProtection'])) {
87-
$builder->getDefinitionByType(Nette\Http\Session::class)
88-
->addSetup('setOptions', [['cookie_samesite' => 'Lax']]);
89-
}
9085
}
9186

9287

tests/Http.DI/HttpExtension.sameSiteProtection.phpt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -36,4 +36,4 @@ Assert::contains(
3636
: 'Set-Cookie: nette-samesite=1; path=/; SameSite=Strict; HttpOnly',
3737
$headers
3838
);
39-
Assert::same('Lax', $container->getService('session.session')->getOptions()['cookie_samesite']);
39+
Assert::true(empty($container->getService('session.session')->getOptions()['cookie_samesite']));

0 commit comments

Comments
 (0)