jolly-fall-64359
04/20/2023, 1:01 PM# SameSite=none requires HTTPS, so we need to disable dev mode:
dev: false
serve:
cookies:
same_site_mode: None
same_site_legacy_workaround: true
but we still have same issue as before and it looks like cookie settings has not been changed. SameSite cookie attribute is still set to Lax on Ory domain.
Possibly following Ory CLI command does not apply settings at once, maybe some caching exists?
ory update oauth2-config projectId --file /settings.json
Please advise.
Thanks!steep-lamp-91158
jolly-fall-64359
04/20/2023, 2:57 PMhigh-optician-2097
jolly-fall-64359
04/25/2023, 9:17 AM# SameSite=none requires HTTPS, so we need to disable dev mode:
dev: false
serve:
cookies:
same_site_mode: None
same_site_legacy_workaround: true
jolly-fall-64359
04/25/2023, 9:18 AMfast-lunch-54279
jolly-fall-64359
04/25/2023, 12:17 PMnarrow-van-43826
04/26/2023, 9:53 AMory patch identity-config --replace '/cookies/same_site="None"'
then the cookie with the csrf_token has a samesite attribute of "None".jolly-fall-64359
04/26/2023, 9:54 AMsteep-lamp-91158
jolly-fall-64359
04/26/2023, 9:55 AMnarrow-van-43826
04/26/2023, 9:59 AMnarrow-van-43826
04/26/2023, 9:59 AMjolly-fall-64359
04/26/2023, 9:59 AMsteep-lamp-91158
jolly-fall-64359
04/26/2023, 10:11 AMory patch identity-config uuid --replace '/session/cookie/same_site="None"'
ory patch identity-config --replace '/cookies/same_site="None"'
jolly-fall-64359
04/26/2023, 10:11 AMjolly-fall-64359
04/26/2023, 10:12 AMjolly-fall-64359
04/26/2023, 11:12 AMnarrow-van-43826
04/26/2023, 11:18 AMjolly-fall-64359
04/26/2023, 11:19 AMnarrow-van-43826
04/26/2023, 11:39 AMsteep-lamp-91158
narrow-van-43826
04/26/2023, 11:49 AMsteep-lamp-91158
narrow-van-43826
04/26/2023, 11:51 AMnarrow-van-43826
04/26/2023, 11:51 AMnarrow-van-43826
04/26/2023, 11:52 AMjolly-fall-64359
04/26/2023, 11:59 AMjolly-fall-64359
04/26/2023, 12:06 PMjolly-fall-64359
04/26/2023, 12:09 PMory update oauth2-config uuid --file /dev-oauth2-config.json
ory patch oauth2-config uuid --replace '/dev="false"'
ory patch oauth2-config uuid --replace '/dev=false'
jolly-fall-64359
04/26/2023, 12:09 PMnarrow-van-43826
04/26/2023, 12:30 PMjolly-fall-64359
04/26/2023, 12:47 PMjolly-fall-64359
04/26/2023, 1:28 PMnarrow-van-43826
04/26/2023, 1:30 PMjolly-fall-64359
04/26/2023, 1:32 PMjolly-fall-64359
04/26/2023, 1:33 PMjolly-fall-64359
04/26/2023, 1:33 PMnarrow-van-43826
04/26/2023, 1:56 PMnarrow-van-43826
04/26/2023, 1:57 PMnarrow-van-43826
04/26/2023, 1:57 PMjolly-fall-64359
04/26/2023, 1:57 PMjolly-fall-64359
04/26/2023, 1:58 PMnarrow-van-43826
04/26/2023, 1:58 PMjolly-fall-64359
04/26/2023, 1:59 PMjolly-fall-64359
04/27/2023, 10:14 AMsteep-lamp-91158
jolly-fall-64359
05/02/2023, 9:20 AMjolly-fall-64359
05/03/2023, 12:20 PMsteep-lamp-91158
steep-lamp-91158
steep-lamp-91158
jolly-fall-64359
05/03/2023, 2:09 PMjolly-fall-64359
05/04/2023, 9:38 AMsteep-lamp-91158
steep-lamp-91158
jolly-fall-64359
05/04/2023, 9:39 AMjolly-fall-64359
05/05/2023, 7:50 AMjolly-fall-64359
05/05/2023, 7:51 AMsteep-lamp-91158