Improve security of cookies

This commit is contained in:
Jonny Barnes 2022-09-10 13:03:51 +01:00
parent bb01d22562
commit 87aca4864c
Signed by: jonny
SSH key fingerprint: SHA256:CTuSlns5U7qlD9jqHvtnVmfYV3Zwl2Z7WnJ4/dqOaL8

View file

@ -128,7 +128,7 @@ return [
'cookie' => env( 'cookie' => env(
'SESSION_COOKIE', 'SESSION_COOKIE',
Str::slug(env('APP_NAME', 'laravel'), '_') . '_session' (env('SECURE_SESSION_COOKIE') ? '__Host-' : '') . Str::slug(env('APP_NAME', 'laravel'), '_') . '_session'
), ),
/* /*
@ -196,6 +196,6 @@ return [
| |
*/ */
'same_site' => 'lax', 'same_site' => 'strict',
]; ];