Once he gives successfully his credentials, I want him to get redirected
to www.site1.com
I would like to use cookie session store.
The problem is that when he gets redirected, he still is an anonymous
user. This is because when he logs in at site1.com.mainsite.com, the
session gets set for site1.com.mainsite.com and not for www.site1.com
Do you know of a solution around that or is it impossible to solve?
I wanted to set session[:domain] but I get a request forgery error.
Once he gives successfully his credentials, I want him to get redirected
to www.site1.com
I would like to use cookie session store.
The problem is that when he gets redirected, he still is an anonymous
user. This is because when he logs in at site1.com.mainsite.com, the
session gets set for site1.com.mainsite.com and not for www.site1.com
Do you know of a solution around that or is it impossible to solve?
I wanted to set session[:domain] but I get a request forgery error.
You could use an iframe so that the login is made in mainsite.com's
cookie domain.
Or your redirect could include username and password parameters,
suitably hashed and/or encrypted.