[Webkit-unassigned] [Bug 198181] Cookies with SameSite=None or SameSite=invalid treated as Strict

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Tue Dec 17 16:17:35 PST 2019


https://bugs.webkit.org/show_bug.cgi?id=198181

Andrew Soderberg <media at mac.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |media at mac.com

--- Comment #25 from Andrew Soderberg <media at mac.com> ---
(In reply to Robert Slaney from comment #23)

In case you had not seen these yet, I found the following articles that describe how to support non-conforming browsers that do not know how to handle 'SameSite=None' without having to resort to potentially 'complex and brittle' User-Agent (UA) Sniffing:

https://auth0.com/blog/browser-behavior-changes-what-developers-need-to-know/

https://web.dev/samesite-cookie-recipes/

/cc robert.slaney@, billy.richardson@, kaoskaoskaoskaos at .

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20191218/e50476c1/attachment.htm>


More information about the webkit-unassigned mailing list