duanpei8853 2013-09-13 13:04
浏览 575
已采纳

set-cookie标头不起作用

I'm developing a small site w/ Go and I'm trying to set a cookie from my server.

I'm running the server on localhost, with 127.0.0.1 aliased to subdomain-dev.domain.com on port 5080.

My When I receive the response for my POST to subdomain-dev.domain.com:5080/login I can see the set-cookie header. The response looks like this:

HTTP/1.1 307 Temporary Redirect
Location: /
Set-Cookie: myappcookie=encryptedvalue==; Path=/; Expires=Fri, 13 Sep 2013 21:12:12 UTC; Max-Age=900; HttpOnly; Secure
Content-Type: text/plain; charset=utf-8
Content-Length: 0
Date: Fri, 13 Sep 2013 20:57:12 GMT

Why isn't Chrome or Firefox recording this? In Chrome it doesn't show up in the Resources tab. In FF I can't see it either. And in neither do I see it in future Request headers.

  • 写回答

1条回答 默认 最新

  • dpx86402 2013-09-13 13:41
    关注

    See that Secure string in the cookie?

    Yeah, me too. But only after a few hours.

    Make sure you're accessing your site by SSL (https:// at the beginning of the URL) if you've got the Secure flag set.

    If you're developing locally and don't have a cert, make sure you skip that option.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论
编辑
预览

报告相同问题?