I am trying to set up the following:
auth.example.com
sub1.example.com
sub2.example.com
If the user visits sub1.example.com
or
I had a similar problem, however, this solution was good for me, perhaps will help others in the future
edit the php.ini
session.cookie_domain = ".example.com"
the magic is here
suhosin.session.cryptdocroot = Off
suhosin.cookie.cryptdocroot = Off
https://www.sitepoint.com/community/t/sessions-across-subdomains-domain-com-phpsessid-changes/3013/19