HttpOnly Flag Being Sent To Applet When SAML2IdentityAsserter Is Used
Last updated on DECEMBER 12, 2017
Applies to:Oracle WebLogic Server - Version 10.3 and later
Information in this document applies to any platform.
Why does WebLogic Server append the HttpOnly flag to the response when using the SAML2IdentityAsserter, even though the cookie-http-only property is set to false in application's deployment descriptor?
Sign In with your My Oracle Support account
Don't have a My Oracle Support account? Click to get started
My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms