[Koha-bugs] [Bug 26019] Koha should set SameSite attribute on cookies

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Thu Aug 6 13:58:50 CEST 2020


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=26019

--- Comment #4 from Marcel de Rooy <m.de.rooy at rijksmuseum.nl> ---
(In reply to David Cook from comment #3)
> (In reply to Marcel de Rooy from comment #2)
> > Why wouldnt we add a preference like SameSiteCookie to include cookie names
> > that do not want to default to Lax ?
> 
> Why should we let librarians determine cookie settings? It seems to me that
> we as developers are best suited to making those choices?

I agree that most librarians would not. But we have more preferences that
should be set by sysadmins. But surely, we could move them to koha-conf.xml.
Risking the argument that people want to change them and have no access..

-- 
You are receiving this mail because:
You are watching all bug changes.
You are the assignee for the bug.


More information about the Koha-bugs mailing list