Encryption & Signing
How It Works
Configuration
Session.configure do |config|
config.secret = ENV["SESSION_SECRET"] # 32+ characters recommended
config.digest_algorithm = :sha256 # HMAC algorithm
config.digest_fallback = true # Allow SHA1 fallback for migration
config.require_secure_secret = true # Raise if using default secret
endCookie Store
Redis Store
HMAC Digest Migration
Secret Key Requirements
Properties
Property
Type
Default
Description
See Also
Last updated
Was this helpful?