Skip to content

Make auth cookie stricter - #19973

Merged
roboquat merged 13 commits into
mainfrom
ft/playing-with-cookies
Jul 1, 2024
Merged

roboquat merged 13 commits into
mainfrom
ft/playing-with-cookies

Conversation

@filiptronicek

@filiptronicek filiptronicek commented Jun 26, 2024 •

Copy link
Copy Markdown
Member

Description

Make use of a host-only cookie for the main JWT.

Related Issue(s)

Related to https://gitpod.slack.com/archives/C079V6H3JSW.

How to test

https://ft-playing3314cc781a.preview.gitpod-dev.com

Documentation

Preview status

gitpod:summary

Build Options

Build
  • /werft with-werft
    Run the build with werft instead of GHA
  • leeway-no-cache
  • /werft no-test
    Run Leeway with --dont-test
Publish
  • /werft publish-to-npm
  • /werft publish-to-jb-marketplace
Installer
  • analytics=segment
  • with-dedicated-emulation
  • workspace-feature-flags
    Add desired feature flags to the end of the line above, space separated
Preview Environment / Integration Tests
  • /werft with-local-preview
    If enabled this will build install/preview
  • /werft with-preview
  • /werft with-large-vm
  • /werft with-gce-vm
    If enabled this will create the environment on GCE infra
  • /werft preemptible
    Saves cost. Untick this only if you're really sure you need a non-preemtible machine.
  • with-integration-tests=all
    Valid options are all, workspace, webapp, ide, jetbrains, vscode, ssh. If enabled, with-preview and with-large-vm will be enabled.
  • with-monitoring

/hold

@filiptronicek

filiptronicek commented Jun 26, 2024 •

Copy link
Copy Markdown
Member Author

Looks like logout still doesn't work :(

@filiptronicek

Copy link
Copy Markdown
Member Author

Ok, works now, time to 💤

geropl added 2 commits June 27, 2024 12:33
... by adding additional step so we can set the cookie for the base domain only
@roboquat roboquat added size/L and removed size/M labels Jun 27, 2024

@geropl geropl left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

✔️

@geropl

geropl commented Jul 1, 2024

Copy link
Copy Markdown
Member

/unhold

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants