Forum Discussion
Mark_Wallis_833
Nimbostratus
Apr 13, 2010Cookies - HttpOnly, Secure and ASM
Hi,
I'm trying to use the iRule code below in our HTTP_RESPONSE event to ensure that the secure flag is
enabled on all our outgoing Set-Cookie's.
foreach a_cookie [HTTP::coo...
Pavel_Jurik_707
Nimbostratus
Sep 12, 2012Hi Mark,
have you solved the issue regarding the 1st question?
We have the same problem that F5 parse a cookie with httponly parameter as 2 separate cookies - first is named JSESSIOND and second is HTTPONLY.
regarding 2nd questions - there is workaround in 10.2.0:
http://support.f5.com/kb/en-us/products/big-ip_asm/releasenotes/product/relnotes_asm_10_2_0.html
Cookie internal parameters added (CR131850)
thanks
pave
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
