Skip to content

Commit 7a7026e

Browse files
authored
Merge pull request #92 from ON-GI/develop
쿠키 security 설정 변경 배포 (ssl 오류 fix)
2 parents 43d195f + 65a772d commit 7a7026e

File tree

1 file changed

+3
-2
lines changed

1 file changed

+3
-2
lines changed

src/main/java/com/ongi/backend/domain/auth/controller/AuthController.java

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -55,7 +55,7 @@ public CommonResponse<LoginResponse> refreshAccessToken(HttpServletRequest httpS
5555
private void setRefreshTokenCookie(HttpServletResponse response, String refreshToken) {
5656
Cookie cookie = new Cookie("refresh_token", refreshToken);
5757
cookie.setHttpOnly(true);
58-
cookie.setSecure(true);
58+
cookie.setSecure(false);
5959
cookie.setPath("/");
6060
cookie.setAttribute("SameSite", "None");
6161
cookie.setMaxAge((int) (REFRESH_TOKEN_EXPIRATION / 1000));
@@ -65,8 +65,9 @@ private void setRefreshTokenCookie(HttpServletResponse response, String refreshT
6565
private void deleteRefreshTokenCookie(HttpServletResponse response) {
6666
Cookie refreshTokenCookie = new Cookie("refresh_token", null);
6767
refreshTokenCookie.setHttpOnly(true);
68-
refreshTokenCookie.setSecure(true);
68+
refreshTokenCookie.setSecure(false);
6969
refreshTokenCookie.setPath("/");
70+
refreshTokenCookie.setAttribute("SameSite", "None");
7071
refreshTokenCookie.setMaxAge(0); // 쿠키 만료
7172
response.addCookie(refreshTokenCookie);
7273
}

0 commit comments

Comments
 (0)