Skip to content

Commit e314c75

Browse files
Merge pull request #206 from UWB-ACM/change-cookie-samesite
Fix google auth
2 parents fcd3810 + 8b00268 commit e314c75

1 file changed

Lines changed: 4 additions & 1 deletion

File tree

src/util/session.ts

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -110,7 +110,10 @@ export async function ensureSession(req: NextRequest, res: NextResponse) {
110110
httpOnly: true,
111111
// Development isn't a secure context.
112112
secure: process.env.NODE_ENV !== "development",
113-
sameSite: "strict",
113+
// Not strict because the session may be used to
114+
// generate first load HTML, and to enable auth
115+
// with OAuth2 redirects.
116+
sameSite: "lax",
114117
});
115118

116119
// Also set the request header so that any server

0 commit comments

Comments
 (0)