Java 项目 Tomcat8.x去除默认设置的httpOnly

1.查看tomcat conf/context.xml文件并修改:

<Context useHttpOnly="false">


2.修改项目web.xml

<session-config>
<session-timeout>20</session-timeout>
<cookie-config>
<http-only>false</http-only>
</cookie-config>

</session-config>

猜你喜欢

转载自blog.csdn.net/qq_32523587/article/details/79461795