Skip to main content
Announcements
Qlik Connect 2024! Seize endless possibilities! LEARN MORE

Qlik Sense Enterprise on Windows: Secure Cookie Flag Is Not Set

No ratings
cancel
Showing results for 
Search instead for 
Did you mean: 
ToniKautto
Employee
Employee

Qlik Sense Enterprise on Windows: Secure Cookie Flag Is Not Set

Last Update:

Jul 15, 2021 7:15:10 AM

Updated By:

Sonja_Bauernfeind

Created date:

May 15, 2020 5:04:46 AM

Qlik Sense session cookie does not have the Secure flag enabled. This may be reported as a potential vulnerability by security and penetration test tools. 

For example browser Dev Tools can be used to confirm session cookie settings:

Secure Cookie not set as seen in debug tool.png

 

Environment:

Qlik Sense Enterprise on Windows 

 

Resolution:


Qlik Sense Enterprise for Windows allows for secure HTTPS communication, including secure session cookies.

Qlik Sense Enterprise on Windows April 2020 and later

Qlik Sense Enterprise on Windows February 2020 and later

For deployments with reverse proxy between the client browser and Qlik Sense server, please validate that the reverse proxy also applies requires security attributes.


Tags (2)
Labels (1)
Contributors
Version history
Last update:
‎2021-07-15 07:15 AM
Updated by: