Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SameSite setting for ROUTERID-cookies

We seem to have some trouble with the SameSite setting missing in the ROUTERID-cookies used by the Webserver protection session stickiness. Since the introduction of Chrome 80 we see an increase of users not returning to the same real servers. This only seems to happen when the user returns to our domain via a POST-request from an external site and seems to has all to do with the defaulting to 'lax' by Chrome >80.

Does anybody also seen this or know how to work around this (other then hacking the httpd.conf files)? 



This thread was automatically locked due to age.
Parents Reply
  • Hello Martijn,

    Thank you for contacting the Sophos Community and the Link.

    If you haven't done the work around provided above your post, please do it for now, also if possible please send us the config file before and after the change. 

    And also do you have multiple real servers for the virtual server or is it just one and one?

    Regards,

Children