diff --git a/src/main/java/com/mpnp/baechelin/util/CookieUtil.java b/src/main/java/com/mpnp/baechelin/util/CookieUtil.java index a5bcc71..64e065a 100644 --- a/src/main/java/com/mpnp/baechelin/util/CookieUtil.java +++ b/src/main/java/com/mpnp/baechelin/util/CookieUtil.java @@ -1,5 +1,6 @@ package com.mpnp.baechelin.util; +import org.springframework.http.ResponseCookie; import org.springframework.util.SerializationUtils; import javax.servlet.http.Cookie; @@ -27,13 +28,23 @@ public static Optional getCookie(HttpServletRequest request, String name // 쿠키 생성 public static void addCookie(HttpServletResponse response, String name, String value, int maxAge) { - Cookie cookie = new Cookie(name, value); + ResponseCookie cookie = ResponseCookie.from(name, value) + .path("/") + .httpOnly(true) + .maxAge(maxAge) + .secure(true) + .sameSite("None") + .build(); - cookie.setPath("/"); - cookie.setHttpOnly(true); // XSS 공격을 막기 위한 설정 - cookie.setMaxAge(maxAge); - - response.addCookie(cookie); + response.addHeader("Set-Cookie", cookie.toString()); +// Cookie cookie = new Cookie(name, value); +// +// cookie.setPath("/"); +// cookie.setHttpOnly(true); // XSS 공격을 막기 위한 설정 +// cookie.setMaxAge(maxAge); +// cookie.setSecure(true); +// +// response.addCookie(cookie); } // 쿠키 삭제 @@ -46,6 +57,7 @@ public static void deleteCookie(HttpServletRequest request, HttpServletResponse cookie.setValue(""); cookie.setPath("/"); cookie.setMaxAge(0); + cookie.setSecure(false); response.addCookie(cookie); }