From 5c2445df2c1bd4b7c82e1fc8905e0e99ab90f5ec Mon Sep 17 00:00:00 2001 From: Lars Beckers <lars.beckers@rwth-aachen.de> Date: Fri, 27 Oct 2017 17:20:47 +0200 Subject: [PATCH] rt: ensure cookies are set with secure attribute --- request-tracker/templates/nginx-rt.j2 | 1 + 1 file changed, 1 insertion(+) diff --git a/request-tracker/templates/nginx-rt.j2 b/request-tracker/templates/nginx-rt.j2 index e0e66ad..8863f5d 100644 --- a/request-tracker/templates/nginx-rt.j2 +++ b/request-tracker/templates/nginx-rt.j2 @@ -14,6 +14,7 @@ server { server_name {{rt_webdomain}}; access_log /var/log/nginx/access.log; + proxy_cookie_path / "/; secure; HttpOnly"; location / { fastcgi_param QUERY_STRING $query_string; -- GitLab