Cookie domains
You can configure cookie domains in Advanced Identity Cloud to control which applications have access to the cookies you create.
You may want to set the cookie domain configuration to a single subdomain (for example,
sso.mycompany.co.uk
) to ensure that a session cookie can be set or modified only by applications
running on that subdomain.
Alternatively, you may want to set the cookie domain configuration with more than one subdomain so
that you can set a session cookie on one subdomain (for example, sso.mycompany.co.uk
) but make
it available to an application running on a different subdomain (for example,
banking.mycompany.co.uk
).
You may also want to set the cookie domain configuration to a domain (for example,
mycompany.co.uk
) so that you can set a shadow session cookie at the domain level to make it
available to legacy applications that are yet to be migrated to Advanced Identity Cloud.
Learn how to set cookie domains in Manage cookie domains using the API.