cookie pit

   HTTP Cookie is set to secure, the cookie can only be written to the browser under the HTTPS channel.

      The HTTPS cookie is set to secure, and the cookie can only be written to the browser under the HTTPS channel.

      HTTP Cookie is not set secure, the cookie can be written to the browser under both HTTPS and HTTP channels.

      HTTPS Cookie is not set to secure, the cookie can be written to the browser under both HTTPS and HTTP channels (may leak information security).

 

 

If you use session sharing, you should pay attention to the joint debugging, when your local is http, and the communication server is https, the https cookie will not be able to be shared to http, even if the domain is set correctly.

Guess you like

Origin http://43.154.161.224:23101/article/api/json?id=326220310&siteId=291194637