SameSite attribute on session cookies configuration in Web Agent
search cancel

SameSite attribute on session cookies configuration in Web Agent

book

Article ID: 367293

calendar_today

Updated On:

Products

CA Single Sign On Agents (SiteMinder) SITEMINDER

Issue/Introduction


Running a Web Agent, how to set the SameSite flag for the cookies?

What value of SameSite attribute is the most suitable for Identity Manager app (Strict, None, Lax)?

 

Resolution


The Web Agent should be the latest version 12.52SP1CR11 (1).

The documentation has sections related to the configuration of the SameSite flag (2)(3).

There's no specific recommendation from the documentation about the value to set to the Identity Manager.

Note that there's also a Web Agent version 12.8 which has the Same Site feature, but it's available only in 64 bits and protect only 64 bit applications (4)(5).

As per the General Announcement, and as per the documentation, the upgrade is possible from Web Agent 12.52SP1 to 12.8 as in-place upgrade strategy (6)(7).

 

Additional Information