Commit ab2ba4d3 authored by Ruediger Pluem's avatar Ruediger Pluem
Browse files

* Allow HttpOnly, 1 and true to enable HttpOnly, allow secure, 1 and true

  to enable secure.


git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/trunk@664330 13f79535-47bb-0310-9956-ffa450edef68
parent 2c621051
Loading
Loading
Loading
Loading
+2 −2
Changes for docs/manual/mod/mod_rewrite.xml: 2 added lines, 2 removed lines.
Original line number Diff line number Diff line
@@ -1259,8 +1259,8 @@ cannot use <code>$N</code> in the substitution string!
        cookie, such as '.apache.org', the optional <em>lifetime</em>
        is the lifetime of the cookie in minutes, and the optional 
        <em>path</em> is the path of the cookie. If <em>secure</em>
        is set to 'true' or '1', the cookie is only transmitted via secured
        connections. If <em>httponly</em> is set to 'true' or '1', the
        is set to 'secure', 'true' or '1', the cookie is only transmitted via secured
        connections. If <em>httponly</em> is set to 'HttpOnly', 'true' or '1', the
        <code>HttpOnly</code> flag is used, making the cookie inaccessible
        to JavaScript code on browsers that support this feature.</dd>

+6 −2
Changes for modules/mappers/mod_rewrite.c: 6 added lines, 2 removed lines.
Original line number Diff line number Diff line
@@ -2493,10 +2493,14 @@ static void add_cookie(request_rec *r, char *s)
                                 expires ? "; expires=" : NULL,
                                 expires ? exp_time : NULL,
                                 (secure && (!strcasecmp(secure, "true")
                                             || !strcasecmp(secure, "1"))) ?
                                             || !strcmp(secure, "1")
                                             || !strcasecmp(secure,
                                                            "secure"))) ?
                                  "; secure" : NULL,
                                 (httponly && (!strcasecmp(httponly, "true")
                                               || !strcasecmp(httponly, "1"))) ?
                                               || !strcmp(httponly, "1")
                                               || !strcasecmp(httponly,
                                                              "HttpOnly"))) ?
                                  "; HttpOnly" : NULL,
                                 NULL);