Cookie samesite warning in aem | Community
Skip to main content
prasadk46728
December 9, 2019
Solved

Cookie samesite warning in aem

  • December 9, 2019
  • 1 reply
  • 3963 views

Hi,

Am using AEM 6.5,

Recently we are getting the below warning messages in chrome browser,

A cookie associated with a cross-site resource at http://mxpez29397.i.lithium.com/ was set without the `SameSite` attribute. A future release of Chrome will only deliver cookies with cross-site requests if they are set with `SameSite=None` and `Secure`. You can review cookies in developer tools under Application>Storage>Cookies and see more details at https://www.chromestatus.com/feature/5088147346030592 and https://www.chromestatus.com/feature/5633521622188032.

A cookie associated with a cross-site resource at http://www.facebook.com/ was set without the `SameSite` attribute. A future release of Chrome will only deliver cookies with cross-site requests if they are set with `SameSite=None` and `Secure`. You can review cookies in developer tools under Application>Storage>Cookies and see more details at https://www.chromestatus.com/feature/5088147346030592 and https://www.chromestatus.com/feature/5633521622188032.

I tried to enable the session cookie secure in Apache Felix Jetty based Http Service, but it doesn't works.

Please let me know how to resolve this.

This post is no longer active and is closed to new replies. Need help? Start a new post to ask your question.
Best answer by Peter_Puzanovs

Dear Prasak,

 

More docs on the change required:

https://github.com/GoogleChromeLabs/samesite-examples

 

and consequent changes in Apache:

https://stackoverflow.com/questions/54104573/how-to-set-samesite-cookie-attribute-using-apache-configuration

 

Regards,

Peter

1 reply

Peter_Puzanovs
Community Advisor
Peter_PuzanovsCommunity AdvisorAccepted solution
Community Advisor
December 19, 2019