From aead176cdba02279438fa1a6c3e92eb6041f875c Mon Sep 17 00:00:00 2001 From: Lennart <18233294+lennart-k@users.noreply.github.com> Date: Sun, 3 Nov 2024 15:25:18 +0100 Subject: [PATCH] frontend: add cookie parameter --- crates/frontend/src/lib.rs | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-) diff --git a/crates/frontend/src/lib.rs b/crates/frontend/src/lib.rs index 4e51bf0..16381f7 100644 --- a/crates/frontend/src/lib.rs +++ b/crates/frontend/src/lib.rs @@ -1,6 +1,8 @@ -use actix_session::{storage::CookieSessionStore, SessionMiddleware}; +use actix_session::{ + config::CookieContentSecurity, storage::CookieSessionStore, SessionMiddleware, +}; use actix_web::{ - cookie::Key, + cookie::{Key, SameSite}, http::Method, web::{self, Data, Path}, Responder, @@ -73,7 +75,8 @@ pub fn configure_frontend Key::from(&frontend_config.secret_key), ) .cookie_secure(true) - .cookie_content_security(actix_session::config::CookieContentSecurity::Private) + .cookie_same_site(SameSite::Strict) + .cookie_content_security(CookieContentSecurity::Private) .build(), ) .app_data(Data::from(auth_provider))