Skip to content

Commit 06ffb22

Browse files
klaascuvelierfabpot
authored andcommitted
[2.3][SECURITY] Add remember me cookie configuration
1 parent 2046a27 commit 06ffb22

File tree

1 file changed

+5
-2
lines changed

1 file changed

+5
-2
lines changed

RememberMe/AbstractRememberMeServices.php

Lines changed: 5 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -34,7 +34,10 @@ abstract class AbstractRememberMeServices implements RememberMeServicesInterface
3434
const COOKIE_DELIMITER = ':';
3535

3636
protected $logger;
37-
protected $options;
37+
protected $options = array(
38+
'secure' => false,
39+
'httponly' => true,
40+
);
3841
private $providerKey;
3942
private $key;
4043
private $userProviders;
@@ -65,7 +68,7 @@ public function __construct(array $userProviders, $key, $providerKey, array $opt
6568
$this->userProviders = $userProviders;
6669
$this->key = $key;
6770
$this->providerKey = $providerKey;
68-
$this->options = $options;
71+
$this->options = array_merge($this->options, $options);
6972
$this->logger = $logger;
7073
}
7174

0 commit comments

Comments
 (0)