|
|
|
@ -9,7 +9,7 @@ export default (app) => { |
|
|
|
rolling: false, |
|
|
|
renew: false, |
|
|
|
secure: process.env.NODE_ENV === "production" && process.env.HTTPS_ENABLE === "on", |
|
|
|
sameSite: "lax", // https://scotthelme.co.uk/csrf-is-dead/
|
|
|
|
sameSite: "strict", // https://scotthelme.co.uk/csrf-is-dead/
|
|
|
|
}; |
|
|
|
return session(CONFIG, app); |
|
|
|
}; |
|
|
|
|