Closed
Bug 1608384
Opened 4 years ago
Closed 4 years ago
Implement sameSite lax-by-default 2 minutes tolerance for unsafe methods
Categories
(Core :: Networking: Cookies, task, P2)
Core
Networking: Cookies
Tracking
()
RESOLVED
FIXED
mozilla75
Tracking | Status | |
---|---|---|
firefox75 | --- | fixed |
People
(Reporter: baku, Assigned: baku)
Details
(Keywords: dev-doc-needed, Whiteboard: [necko-triaged])
Attachments
(1 file)
See: https://www.chromestatus.com/feature/5088147346030592
This will avoid breaking some Microsoft login that Microsoft had noticed: https://groups.google.com/a/chromium.org/d/msg/blink-dev/AknSSyQTGYs/wRWG65IWBQAJ
Assignee | ||
Updated•4 years ago
|
Summary: Implement lax + POST → Implement sameSite lax-by-default 2 minutes tolerance for unsafe methods
Updated•4 years ago
|
Priority: -- → P3
Whiteboard: [necko-triaged]
Comment 1•4 years ago
|
||
Changing to P2 based on the status of the chromium bug 953306 - Make SameSite=Lax apply by default, and add SameSite=None option, as I understand, they already started to work on this and there is a patch. Tracked for Chrome 80, which is now a Beta.
Priority: P3 → P2
Updated•4 years ago
|
Keywords: dev-doc-needed
Assignee | ||
Comment 2•4 years ago
|
||
Updated•4 years ago
|
Assignee: nobody → amarchesini
Status: NEW → ASSIGNED
Pushed by amarchesini@mozilla.com: https://hg.mozilla.org/integration/autoland/rev/5bc7e0faa669 Implement sameSite lax-by-default 2 minutes tolerance for unsafe methods, r=Ehsan
Comment 4•4 years ago
|
||
bugherder |
Status: ASSIGNED → RESOLVED
Closed: 4 years ago
status-firefox75:
--- → fixed
Resolution: --- → FIXED
Target Milestone: --- → mozilla75
You need to log in
before you can comment on or make changes to this bug.
Description
•