Forum Discussion
Bob_10976
Oct 29, 2012Nimbostratus
Sensitive Cookie Missing 'HTTPONLY' Attribute
We were recently dingged by an audit scan for "Sensitive Cookie Missing 'HTTPONLY' Attribute" not being set on several of our websites, which pretty much is spread accross several different VS in the...
Bob_10976
Nov 02, 2012Nimbostratus
Thanks!! I did find that the audit was running the scan against the URL so it caused it to return a 302 redirect response
and the redirect response was where the HTTPOnly attribrute was missing from. With the addition of the if/else clause this resloved the problem.
Thanks again,
Bob
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects