3 ms·
so i guess the solution is to only use https://www.facebook.com/ https://www.facebook.com/ to login?
by mohawk 16y ago
so i guess the solution is to only use https://www.facebook.com/ https://www.facebook.com/ to login?
- mustpax 16y agoFacebook cookies are not marked SSL only. That would be a temporary and unreliable fix.
- mike-cardwell 16y agoPeople could use the HTTPS-Everywhere Firefox addon. HTTPS-Everywhere rulesets can also be configured to add the secure flag to cookies. The main Facebook ruleset doesn't do that because certain pages can't be accessed via HTTPS on Facebook still, however there is a second ruleset disabled by default which you can enable which adds the secure flag and breaks a few unimportant pages.