Skip to content
Snippets Groups Projects
  1. Apr 12, 2016
  2. Apr 07, 2016
  3. Feb 15, 2016
  4. Oct 26, 2015
  5. Aug 04, 2015
  6. Jun 08, 2015
  7. May 27, 2015
  8. Apr 21, 2015
  9. Apr 16, 2015
  10. Jul 09, 2014
  11. Sep 13, 2013
  12. Sep 11, 2013
  13. Sep 05, 2013
  14. Jan 30, 2012
  15. Aug 10, 2011
  16. Aug 09, 2010
  17. Jul 13, 2010
  18. Jul 07, 2010
  19. Feb 24, 2010
  20. Feb 15, 2010
    • Olav Morken's avatar
      Disable cookie secure-flag by default. · c4ae073b
      Olav Morken authored
      This patch removes the autodetection of the secure flag for the cookie
      based on whether the user is accessing simpleSAMLphp through https. The
      reason for this is that the user can often access an SP through both
      https and http. If the user starts with http, everything will work, but
      if the user starts with https, the user will get two separate cookies,
      one for https and one for http.
      
      This patch introduces a new configuration option in config.php:
      
          /*
           * Set the secure flag in the cookie.
           *
           * Set this to TRUE if the user only accesses your service
           * through https. If the user can access the service through
           * both http and https, this must be set to FALSE.
           */
          'session.cookie.secure' => FALSE,
      
      git-svn-id: https://simplesamlphp.googlecode.com/svn/trunk@2180 44740490-163a-0410-bde0-09ae8108e29a
      c4ae073b
  21. Dec 02, 2009
  22. Sep 25, 2009
  23. Aug 14, 2009
  24. Jun 06, 2008
  25. May 14, 2008
  26. May 13, 2008
  27. Mar 12, 2008
  28. Jan 30, 2008
  29. Dec 18, 2007
  30. Nov 28, 2007
Loading