RootCauseunvalidated
The session expiration is not stored inside the encrypted cookie payload; instead, Rack::Session uses the configured expire_after value to set the cookie's HTTP expires attribute in the Set-Cookie header when creating the response.
4e65dc3f-7aad-4ebb-9c85-88217de6f88f
The session expiration is not stored inside the encrypted cookie payload; instead, Rack::Session uses the configured expire_after value to set the cookie's HTTP expires attribute in the Set-Cookie header when creating the response.