From cfbce17ab85cf74b057406da38c12aff2912898c Mon Sep 17 00:00:00 2001 From: Lakhan Samani Date: Wed, 28 Sep 2022 18:42:42 +0530 Subject: [PATCH] fix: set same site cookie to none for cross site --- server/cookie/cookie.go | 2 ++ 1 file changed, 2 insertions(+) diff --git a/server/cookie/cookie.go b/server/cookie/cookie.go index ba409f6..52e6bc6 100644 --- a/server/cookie/cookie.go +++ b/server/cookie/cookie.go @@ -38,6 +38,8 @@ func SetSession(gc *gin.Context, sessionID string) { // TODO add ability to sameSite = none / strict from dashboard if !appCookieSecure { gc.SetSameSite(http.SameSiteLaxMode) + } else { + gc.SetSameSite(http.SameSiteNoneMode) } // TODO allow configuring from dashboard year := 60 * 60 * 24 * 365