[Webkit-unassigned] [Bug 219150] Safari does not allow first-party JS cookie to be set after SSO flow
bugzilla-daemon at webkit.org
bugzilla-daemon at webkit.org
Thu Nov 19 04:50:05 PST 2020
https://bugs.webkit.org/show_bug.cgi?id=219150
--- Comment #2 from Lukas Röllin (Swisscom) <lukas.roellin at swisscom.com> ---
I think it may be due to how we set the cookies without user interaction?
1. User goes to our site ("A")
2. User clicks on login button (*user interaction*)
3. User gets to SSO flow (multiple pages of site "B")
4. User gets redirected back to site "A", and without further user interaction, the cookies are set
--
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20201119/4398f519/attachment.htm>
More information about the webkit-unassigned
mailing list