Network Management
Secure flags on cookies are missing in Orion
When ASP.NET_SessionID and .ASPXAUTH cookies do not have Secure flags, you might be notified about detected vulnerabilities on the server. This might be because you moved your Orion Web Console from HTTP to HTTPS. See possible resolutions.
First published date
Last published date
Overview
ASP.NET_SessionId and .ASPXAUTH cookies should obtain the Secure flag.
Product section
Cause
Resolution
- Change the server name.
- Make sure all users log out.
- Make sure all users clear browser cookies for Orion.
- Task 5: Complete the Configuration wizard in Install or upgrade products in an existing Orion deployment
- Configure the Orion Web Console to use SSL