[Webkit-unassigned] [Bug 219150] Safari does not allow first-party JS cookie to be set after SSO flow

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Thu Nov 19 04:50:05 PST 2020


https://bugs.webkit.org/show_bug.cgi?id=219150

--- Comment #2 from Lukas Röllin (Swisscom) <lukas.roellin at swisscom.com> ---
I think it may be due to how we set the cookies without user interaction?

1. User goes to our site ("A")
2. User clicks on login button (*user interaction*)
3. User gets to SSO flow (multiple pages of site "B") 
4. User gets redirected back to site "A", and without further user interaction, the cookies are set

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20201119/4398f519/attachment.htm>


More information about the webkit-unassigned mailing list