Forum Discussion
Separate domain cookie for different apps
you have a new option for policy in V12 : Profile Scope
This setting prevents a malicious user from establishing a session using one virtual server, and then using that same session to access, potentially without further authentication, another virtual server and the resources behind it.
Profile Gives a user access only to resources that are behind the same access profile. This is the default value.
Virtual Server Gives a user access only to resources that are behind the same virtual server.
Global Gives a user access to resources behind any access profile that has global scope
If you are in a version below maybe you can use sso multi domain support with cookies restricted to host name.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com