File APIs for Java Developers
Manipulate DOC, XLS, PPT, PDF and many others from your application.
A friendly place for programming greenhorns!
Big Moose Saloon
Register / Login
Win a copy of
Android Security Essentials Live Lessons
this week in the
Need to set HTTPONLY value to make cookies secure!!!
Joined: Oct 15, 2008
Apr 21, 2010 23:24:13
I am currently setting HTTPOnly to make the cookies secure using following code.
response.setHeader("SET-COOKIE", "JSESSIONID=" + sessionid+ ";HttpOnly");
I have referred following URL for this.
But while doing so each time it is creating a new sessionID.
So, by means of that old session value got vanished.
Please do let me know what should be the possible solution of this problem.
Waiting for prompt reply.
It is sorta covered in the
JavaRanch Style Guide
subject: Need to set HTTPONLY value to make cookies secure!!!
Multiple Cookies with the name 'JSESSIONID' getting created
Non-secure Cookie Used
HTTPonly & Secure cookie in Websphere?
All times are in JavaRanch time: GMT-6 in summer, GMT-7 in winter
| Powered by
Copyright © 1998-2014