~~~ Please read before posting. ~~~

Important: We need your Club Number at a minimum, and as many details as possible.
For further info please read This page before posting.

Can't log in: Maybe "Disabled Cookies" means no SSL. SameSite issue?

  • amardesi
  • amardesi's Avatar Topic Author
  • Offline
  • New Member
  • New Member
  • Posts: 3
  • Thanks: 0

Can't log in: Maybe "Disabled Cookies" means no SSL. SameSite issue?

4 years 11 months ago
#81355
I am running into the same issue that user 'dwdrain' posted about 2 weks and 4 days ago (around Augsut 25th perhaps?), titled "WE're getting a warning that our cookies are disabled". Login as member and as admin is failing using Chrome for me (and I suspect others).

I also notice that our toasthost site is not SSL enabled. How do I get one?

I did a little research, and I suspect you are not setting a 'SameSite' attribute in your cookies, which is affecting any sites that don't have SSL. Some more information about that is here:
web.dev/samesite-cookies-explained/

I set my "SameSite by default cookies" to disabled in my chrome flags and that fixed my login problem, so I'm guessing I might be on the right track about SSL being an issue here.

9389.toastmastersclubs.org/
alias: www.eastbaytoastmasters.com/

Andy M

Attachments:

The topic has been locked.
  • amardesi
  • amardesi's Avatar Topic Author
  • Offline
  • New Member
  • New Member
  • Posts: 3
  • Thanks: 0

Re: Can't log in: Maybe "Disabled Cookies" means no SSL. SameSite issue?

4 years 11 months ago
#81359
I am running into the same issue that user 'dwdrain' posted about 2 weeks and 5 days ago (around August 25th perhaps?), titled "WE're getting a warning that our cookies are disabled". Login as member and as admin is failing using Chrome for me (and I suspect others).

I also notice that our toasthost site is not SSL enabled. How do we get a certificate installed?

I did a little research, and I suspect you are not setting a 'SameSite' attribute in your cookies, which is affecting any sites that don't have SSL. Some more information about that is here:
web.dev/samesite-cookies-explained/

I set my "SameSite by default cookies" to disabled in my chrome flags and that fixed my login problem, so I'm guessing I might be on the right track about SSL being an issue for any club members trying to log in to a site that doesn't have https enabled.

Any help would be appreciated, thanks.

Andy M
www.eastbaytoastmasters.com/
9389.toastmastersclubs.org/

Attachments:

The topic has been locked.
  • SteveTheTechie
  • SteveTheTechie's Avatar
  • Offline
  • Administrator
  • Administrator
  • Posts: 11526
  • Thanks: 3050

Re: Can't log in: Maybe "Disabled Cookies" means no SSL. SameSite issue?

4 years 11 months ago - 4 years 11 months ago
#81360
We will only issue SSL certs for custom domains that are configured as in the following document:

support.toastmastersclubs.org/doc/item/dns-settings-overview
Last edit: 4 years 11 months ago by SteveTheTechie.
The topic has been locked.
Moderators: BrianJane AtkinsonPamrhtaylor3marc33NotLiablejgavinLcala305peterb323
Time to create page: 0.418 seconds