How can I make cookies secure (https-only) by default in rails?

后端 未结 8 1879
不知归路
不知归路 2021-02-01 14:34

In a Rails controller, I can set a cookie like this:

cookies[:foo] = \"bar\"

And specify that the \"secure\" (https-only) flag be on like this:

8条回答
  •  清酒与你
    2021-02-01 15:26

    # session only available over HTTPS
    ActionController::Base.session_options[:secure] = true
    

提交回复
热议问题