1
0
Fork 0
mirror of https://github.com/seanmorley15/AdventureLog.git synced 2025-07-28 01:09:37 +02:00

Update secure cookie setting to conditionally use HTTPS protocol in authentication flows

This commit is contained in:
Sean Morley 2024-12-29 12:38:54 -05:00
parent 8716efb613
commit b5ac66a1cc
3 changed files with 3 additions and 3 deletions

View file

@ -47,7 +47,7 @@ export const authHook: Handle = async ({ event, resolve }) => {
path: '/', path: '/',
httpOnly: true, httpOnly: true,
sameSite: 'lax', sameSite: 'lax',
secure: true, secure: event.url.protocol === 'https:',
expires: expiryDate expires: expiryDate
}); });
} }

View file

@ -106,7 +106,7 @@ function handleSuccessfulLogin(event: RequestEvent<RouteParams, '/login'>, respo
path: '/', path: '/',
httpOnly: true, httpOnly: true,
sameSite: 'lax', sameSite: 'lax',
secure: true, secure: event.url.protocol === 'https:',
expires: new Date(expiryString) expires: new Date(expiryString)
}); });
} }

View file

@ -93,7 +93,7 @@ export const actions: Actions = {
path: '/', path: '/',
httpOnly: true, httpOnly: true,
sameSite: 'lax', sameSite: 'lax',
secure: true, secure: event.url.protocol === 'https:',
expires: expiryDate expires: expiryDate
}); });
} }