Forum: Ruby on Rails Rack::SSL

8d85d54dfa0b9c3d3a8f2774d7610713?d=identicon&s=25 Jesse Knutsen (Guest)
on 2013-01-09 23:42
(Received via mailing list)
Hey All,

I have set up our site for https only using rack::ssl.

I also used it to secure our app's cookies.

# Enable SSL with secure cookies
   config.middleware.insert_before ActionDispatch::Cookies, Rack::SSL

however, there is one cookie that is set by a browser technology that we
will be sometimes using in our system that is never https_only. It seems
that now that our cookies are secured this cookie is unreadable by the
system.

Does anyone have any idea how I can force the reading of a insecure
cookie given this config?
Please log in before posting. Registration is free and takes only a minute.
Existing account

NEW: Do you have a Google/GoogleMail, Yahoo or Facebook account? No registration required!
Log in with Google account | Log in with Yahoo account | Log in with Facebook account
No account? Register here.