SAP Knowledge Base Article - Preview

3548934 - SameSite cookie attribute value settings doesn't take effect for spring session 2.7.4

Symptom

When enable spring session and configure SameSite cookie attribute as below, the actual JSESSIONID cookie SameSite attribute value is Lax, while not None.

spring.session.enabled=true
spring.session.yacceleratorstorefront.cookie.path=/yacceleratorstorefront
spring.session.yacceleratorstorefront.save=async
spring.session.yacceleratorstorefront.cookie.name=JSESSIONID

cookies.SameSite.enabled=true
cookies.SameSite=None

Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental. 


Read more...

Product

SAP Commerce Cloud 2211

Keywords

SameSite, Cookie, Lax, None, spring session , KBA , CEC-SCC-PLA-PL , Platform , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.