Are the two pages on the same server? when the main page knows its iframe will use cookies from a different domain, it can set p3p header to allow the cross domain cookie. Chrome's Changes Could Break Your App: Prepare for SameSite Cookie ... Cookies and Iframes. If your application runs inside an ... - Medium IFrame Cross-Domain issue - Javascript - Tek-Tips Iframes with React: Best Practices | by Andrea Perera - Medium this is the weirdest thing I have ever seen. Basically the scrollbar is used when the content is large than the Iframe Element. Session data is lost if you use InProc - ASP.NET | Microsoft Docs If they are loaded simultanously there comes to a problem with session variables getting lost. Type EnableDownloadConfigXml, and then press Enter to name the new entry. Alt: use javascript to check for session cookie, if none found, go get one from server; once session is in place . What's the best way to reload / refresh an iframe? The biggest one is probably clickjacking if all else is done correctly. If the user is logging in in the iFrame, once the page reloads it is logged out again. The report shown is an iframe created in the single configurator and it is embedded in an html-page with iframes from other sources. Search. However, what suprises me is that the cookie used by the login-status-iframe is not bound to the KEYCLOAK_IDENTITY cookie which seems to be used to maintain . The first option is to set both the new and old style cookies: Copy code.