diff --git a/src/Microsoft.AspNetCore.Session/SessionOptions.cs b/src/Microsoft.AspNetCore.Session/SessionOptions.cs index 9c9856f481..4d456b0f60 100644 --- a/src/Microsoft.AspNetCore.Session/SessionOptions.cs +++ b/src/Microsoft.AspNetCore.Session/SessionOptions.cs @@ -22,6 +22,7 @@ namespace Microsoft.AspNetCore.Builder /// defaults to . /// defaults to . /// defaults to true + /// defaults to false /// /// public CookieBuilder Cookie @@ -111,6 +112,8 @@ namespace Microsoft.AspNetCore.Builder SecurePolicy = CookieSecurePolicy.None; SameSite = SameSiteMode.Lax; HttpOnly = true; + // Session is considered non-essential as it's designed for ephemeral data. + IsEssential = false; } public override TimeSpan? Expiration