aboutsummaryrefslogtreecommitdiffstats
path: root/actionpack/lib/action_controller/session
diff options
context:
space:
mode:
authorPelle Braendgaard <pelleb@gmail.com>2008-09-16 09:22:11 -0700
committerMichael Koziarski <michael@koziarski.com>2008-09-17 13:20:16 +0200
commit7ecb9689b03335ec28958c506b083390f4212d45 (patch)
treee359e86f989b0c9a27f9bafba68c5ba6cd9f01bc /actionpack/lib/action_controller/session
parentc47525a58397851895b25f7c1bba06b30b0f6b5d (diff)
downloadrails-7ecb9689b03335ec28958c506b083390f4212d45.tar.gz
rails-7ecb9689b03335ec28958c506b083390f4212d45.tar.bz2
rails-7ecb9689b03335ec28958c506b083390f4212d45.zip
Added support for http_only cookies in cookie_store Added unit tests for secure and http_only cookies in cookie_store
Signed-off-by: Michael Koziarski <michael@koziarski.com> [#1046 state:committed]
Diffstat (limited to 'actionpack/lib/action_controller/session')
-rw-r--r--actionpack/lib/action_controller/session/cookie_store.rb3
1 files changed, 2 insertions, 1 deletions
diff --git a/actionpack/lib/action_controller/session/cookie_store.rb b/actionpack/lib/action_controller/session/cookie_store.rb
index 5bf7503f04..f2fb200950 100644
--- a/actionpack/lib/action_controller/session/cookie_store.rb
+++ b/actionpack/lib/action_controller/session/cookie_store.rb
@@ -70,7 +70,8 @@ class CGI::Session::CookieStore
'path' => options['session_path'],
'domain' => options['session_domain'],
'expires' => options['session_expires'],
- 'secure' => options['session_secure']
+ 'secure' => options['session_secure'],
+ 'http_only' => options['session_http_only']
}
# Set no_hidden and no_cookies since the session id is unused and we