We use cookies to improve your experience. No personal information is gathered and we don't serve ads. Cookies Policy.

ExpressionEngine Logo ExpressionEngine
Features Pricing Support Find A Developer
Partners Upgrades
Blog Add-Ons Learn
Docs Forums University
Log In or Sign Up
Log In Sign Up
ExpressionEngine Logo
Features Pro new Support Find A Developer
Partners Upgrades
Blog Add-Ons Learn
Docs Forums University Blog
  • Home
  • Forums

Multiple csrf cookies - why?

Development and Programming

Happy Content's avatar
Happy Content
54 posts
6 years ago
Happy Content's avatar Happy Content

Running and EE5 site thru a high traffic caching server. The server admin tells me that one cookie is declared twice and causes a conflict which complicates caching. He’s since put in a workaround but is curious (for future reference) to know why there are two instances of the following cookie.

Set-Cookie: exp_csrf_token=deleted; expires=Thu, 01-Jan-1970 00:00:01 GMT; path=/; httponly

Set-Cookie: exp_csrf_token= 852215e8829b1bvd2wa6fh4c; expires=Thu, 03-Jan-2019 07:34:04 GMT; path=/; httponly

We’re guessing that the first instance kills any old versions that may be lurking in the user’s browser and the second one starts afresh.

       

Reply

Sign In To Reply

ExpressionEngine Home Features Pro Contact Version Support
Learn Docs University Forums
Resources Support Add-Ons Partners Blog
Privacy Terms Trademark Use License

Packet Tide owns and develops ExpressionEngine. © Packet Tide, All Rights Reserved.