From 0a522709b161cba578908b425cec49424ffcc685 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Tue, 31 Dec 2024 14:44:10 +1100 Subject: [PATCH] Add FAQ on cookie setting change (#8805) (#8807) (cherry picked from commit 741994430156ca34e4871b8510e07e2bb51b238e) Co-authored-by: Oliver --- docs/docs/faq.md | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/docs/docs/faq.md b/docs/docs/faq.md index 4d9ea2bac1..05d109d66c 100644 --- a/docs/docs/faq.md +++ b/docs/docs/faq.md @@ -58,6 +58,13 @@ If you see this error, it means that the `INVENTREE_SITE_URL` environment variab If you have successfully started the InvenTree server, but are experiencing issues logging in, it may be due to the security interactions between your web browser and the server. While the default configuration should work for most users, if you do experience login issues, ensure that your [server access settings](./start/config.md#server-access) are correctly configured. +### Session Cookies + +The [0.17.0 release](https://github.com/inventree/InvenTree/releases/tag/0.17.0) included [a change to the way that session cookies were handled](https://github.com/inventree/InvenTree/pull/8269). This change may cause login issues for existing InvenTree installs which are upgraded from an older version. System administrators should refer to the [server access settings](./start/config.md#server-access) and ensure that the following settings are correctly configured: + +- **INVENTREE_SESSION_COOKIE_SECURE**: `False` +- **INVENTREE_COOKIE_SAMESITE**: `False` + ## Update Issues Sometimes, users may encounter unexpected error messages when updating their InvenTree installation to a newer version.