summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--php.ini-development3
-rw-r--r--php.ini-production3
2 files changed, 4 insertions, 2 deletions
diff --git a/php.ini-development b/php.ini-development
index a9d5c9b70e..2c39ece23c 100644
--- a/php.ini-development
+++ b/php.ini-development
@@ -1386,7 +1386,8 @@ session.cookie_domain =
session.cookie_httponly =
; Add SameSite attribute to cookie to help mitigate Cross-Site Request Forgery (CSRF/XSRF)
-; Current valid values are "Lax" or "Strict"
+; Current valid values are "Strict", "Lax" or "None". When using "None",
+; make sure to include the quotes, as `none` is interpreted like `false` in ini files.
; https://tools.ietf.org/html/draft-west-first-party-cookies-07
session.cookie_samesite =
diff --git a/php.ini-production b/php.ini-production
index 876b6143e9..4e946c8322 100644
--- a/php.ini-production
+++ b/php.ini-production
@@ -1390,7 +1390,8 @@ session.cookie_domain =
session.cookie_httponly =
; Add SameSite attribute to cookie to help mitigate Cross-Site Request Forgery (CSRF/XSRF)
-; Current valid values are "Lax" or "Strict"
+; Current valid values are "Strict", "Lax" or "None". When using "None",
+; make sure to include the quotes, as `none` is interpreted like `false` in ini files.
; https://tools.ietf.org/html/draft-west-first-party-cookies-07
session.cookie_samesite =