Forum Discussion
Chris_Paulraj_1
Nimbostratus
Jan 20, 2009Could someone shed light on "Modified Domain Cookie" violations?
I need some help in understanding the modified cookie domain violation. Does ASM report it when a cookie gets modified at the client side (browser)? and does it also report when a cookie gets updated ...
Javier_Checa_41
Nimbostratus
Jan 27, 2009Hello cpaulrag,
I guess you already have tried this.. but.. have you checked from which domain the cookie is set.
Browsers do allow cookies for the domain you are browsing and for higher domains. For example: if you are browsing for devcentral.f5.com , your browser will allow setting and viewing cookies for the domain devcentral.f5.com and also, cookies for the domain f5.com .
However, F5 ASM only allow cookies from the same exactly domain. If you are browsing devcentral.f5.com , it won't allow you to use f5.com domain cookies and it will trigger the "Modified Domain Cookies".
regards,
Javier.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
