Details
-
Improvement
-
Status: Closed
-
Minor
-
Resolution: Won't Do
-
3.3
-
None
-
MOODLE_33_STABLE
Description
After MDL-55273 cookiesecure now defaults to on. So secure cookies are used by default when using SSL. We should remove the setting unless there is a good use for turning it off when SSL is on.
Then the behaviour could be simple: Always use secure cookies when serving over SSL, and then never use secure cookies when not serving over SSL.