Skip to content

CookiePolicyOptions sets minimumsamesitelevel to lax by default and that breaks oauth providers #4661

@javiercn

Description

@javiercn

This happens when you plug-in the cookie policy middleware on the app and use an oauth provider for authentication.

Metadata

Metadata

Assignees

Labels

DoneThis issue has been fixedNeeds: DesignThis issue requires design work before implementating.area-authIncludes: Authn, Authz, OAuth, OIDC, Bearerbreaking-changeThis issue / pr will introduce a breaking change, when resolved / merged.

Type

No type

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions