<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: HttpOnly Session Cookies using ActiveRecordStore in Rails 2.2</title>
	<atom:link href="http://www.scatmania.org/2008/12/29/httponly-session-cookies-using-activerecordstore-in-rails-22/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.scatmania.org/2008/12/29/httponly-session-cookies-using-activerecordstore-in-rails-22/</link>
	<description>Scatman Dan&#039;s stuff</description>
	<lastBuildDate>Mon, 08 Mar 2010 21:43:00 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=3.0-alpha</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Ægir</title>
		<link>http://www.scatmania.org/2008/12/29/httponly-session-cookies-using-activerecordstore-in-rails-22/#comment-2961</link>
		<dc:creator>Ægir</dc:creator>
		<pubDate>Wed, 24 Jun 2009 12:17:00 +0000</pubDate>
		<guid isPermaLink="false">http://blog.scatmania.org/?p=1449#comment-2961</guid>
		<description>Thanks for the patch.

I did a smal modifycation that uses the rails configuration.


class CGI::Cookie
  alias :original_initializer :initialize
  
  def initialize(name = &#039;&#039;, *value)
    http_only = Rails.configuration.action_controller[:session][:session_http_only].nil? ? true : Rails.configuration.action_controller[:session][:session_http_only]
    
    if name.kind_of?(String)
      original_initializer({&#039;name&#039; =&gt; name, &#039;value&#039; =&gt; value, &#039;http_only&#039; =&gt; http_only})
    else
      original_initializer(name.merge({&#039;http_only&#039; =&gt; http_only}))
    end
  end
end</description>
		<content:encoded><![CDATA[<p>Thanks for the patch.</p>
<p>I did a smal modifycation that uses the rails configuration.</p>
<p>class CGI::Cookie<br />
  alias :original_initializer :initialize</p>
<p>  def initialize(name = &#8221;, *value)<br />
    http_only = Rails.configuration.action_controller[:session][:session_http_only].nil? ? true : Rails.configuration.action_controller[:session][:session_http_only]</p>
<p>    if name.kind_of?(String)<br />
      original_initializer({&#8216;name&#8217; =&gt; name, &#8216;value&#8217; =&gt; value, &#8216;http_only&#8217; =&gt; http_only})<br />
    else<br />
      original_initializer(name.merge({&#8216;http_only&#8217; =&gt; http_only}))<br />
    end<br />
  end<br />
end</p>
]]></content:encoded>
	</item>
</channel>
</rss>
